From 870201de14fef6fda99cf29c26a3a9358f22ab6a Mon Sep 17 00:00:00 2001 From: sullo Date: Thu, 12 Sep 2013 09:30:23 -0400 Subject: [PATCH] Don't skip passwords that start with a hash. This is fairly common (see RockYou list for example). --- lib/common/models/wp_user/brute_forcable.rb | 2 -- 1 file changed, 2 deletions(-) diff --git a/lib/common/models/wp_user/brute_forcable.rb b/lib/common/models/wp_user/brute_forcable.rb index 828112e8..2f79e469 100644 --- a/lib/common/models/wp_user/brute_forcable.rb +++ b/lib/common/models/wp_user/brute_forcable.rb @@ -141,8 +141,6 @@ class WpUser < WpItem opt += ':UTF-8' if charset != 'UTF-8' File.open(wordlist, opt).each do |line| - next if line[0,1] == '#' - passwords << line.strip end elsif wordlist.is_a?(Array)