🔑Cracking Windows Hashes 🕵

Robert Scocca
6 min readJun 16, 2020

In this step by step guide, you’ll learn how to grab Windows 10 hashes then recover the password with various hash cracking techniques. The toolset included in this guide is Kali Linux, Mimikatz, Hypervisors, Hashcat and Johnny.

Bypass the paywall with this link.

There are plenty of guides out there for cracking Windows hashes. However many of them are outdated because Windows is making it more difficult to recover hashes. I wish to share the method that works with a modern Windows 10 system.

This guide assumes you have physical access to a Windows 10 computer and wish to bypass the operating system password. To begin you’ll need a few common gadgets ready so take note you have the following:

What you need to get started:

  1. Physical access to Windows 10 Target
  2. Kali Bootable USB
  3. USB external storage drive
  4. Another computer running as a Linux host w/ Windows VM or Windows host w/ Linux VM

Finding the Hashes

Plug in your Kali bootable USB to the target Windows system and boot from the USB instead of the Windows hard drive. This usually involves starting up the computer while spamming F keys, but you can look up your specific computer models BIOS boot-up key(s) and how to navigate their BIOS.

--

--