Skip to main content

Documentation Index

Fetch the complete documentation index at: https://wiki.krkn.tech/llms.txt

Use this file to discover all available pages before exploring further.

Logo Full

Hashcrack.ing — Hash Cracking Platform

Hashcrack.ing is an invitation-only platform for sharing cracked and uncracked password hashes, wordlists, optimized rulesets, and hash cracking tools. Built for cybersecurity professionals, researchers, and offensive security practitioners.

What Hashcrack.ing Does

FeatureDescription
Hash DatabaseStructured hash storage by format, type, and target with plaintext lookups
Hash SearchSingle, bulk, and file-based hash lookups against the shared database
Hash SubmissionUpload cracked hashes to contribute to the community database
WordlistsUpload, download, and share password wordlists
RulesetsShare optimized Hashcat rule files
Hash ListsUpload and monitor hash lists for collaborative cracking
Hash IdentificationAutomatic hash type detection (500+ Hashcat format definitions)
Secrets Dump ParserParse Windows secretsdump.py output (SAM, DCC2, LSA, DPAPI, Kerberos)
LeaderboardTrack contributor rankings by submissions
Discord IntegrationBot commands, alerts, approval workflows, real-time crack notifications

Feature Overview

Search & Submit

Hash lookup, bulk search, file upload, cracked hash submission

Resources

Wordlists, rulesets, hash lists, and monitoring

Tools

Hash identification, secretsdump parser, potfile processing

Platform Overview

Hashcrack.ing operates as a community-driven hash intelligence platform:
  1. Invitation-only access — new users must receive a registration token from an admin or existing member
  2. Quality control — uploads are processed asynchronously with format validation and deduplication
  3. Structured storage — hashes are stored with Hashcat type codes, metadata tags, and plaintext associations
  4. Collaborative cracking — upload uncracked hash lists, monitor progress, and receive notifications when hashes are cracked
  5. Contributor tracking — leaderboard ranks users by submission volume and quality

Security Model

LayerProtection
RegistrationInvitation-only with expiring registration tokens
PasswordMinimum 20 characters
MFATOTP-based multi-factor authentication (enforced)
PasskeysWebAuthn/FIDO2 passwordless authentication support
SessionsToken-based with MFA verification state tracking
API KeysSeparate keys for CLI, API, and Discord integration
Access ControlRole-based ACL (admin, member, contributor)
Account LockoutAutomatic lockout after failed authentication attempts
Email VerificationRequired for account activation