Re: Where are Windows "Enforce password history" passwords stored?

From: James Leighe (jamesleighe@gmail.com)
Date: Tue Aug 30 2005 - 10:48:15 EDT


It's stored as a hash, so if you find out how to access them, you
would have to crack it. So basically, it's not worth the time when an
attacker could just go for the current password.

On 28/08/05, Charles Gillman <charles.gillman@gmail.com> wrote:
> Can anyone tell me where the "remembered" passwords are stored when
> the "Enforce password history" is set in Group Policy?
>
> If this setting is set to its maximum value of 24 then I would expect
> 24 password hashes are stored for each account for the setting to
> work. But where?
>
> More importantly are there any tools/techniques for accessing the
> "remembered" passwords?
>
> Thanks
> CG
>



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:54:48 EDT