logo

How to Crack Office Passwords with a Dictionary

ID: c04cc5ba-2ca3-5a4d-9585-5aa21003913e

STIX ID: report--c04cc5ba-2ca3-5a4d-9585-5aa21003913e

Feed Name: Black Hills Infosec Blog

Date Published: 2018-05-10

Date Updated: 2026-04-27

Author: BHIS

...
...

**Executive summary:** This blog-style write-up demonstrates practical methods to recover passwords from Microsoft Office encrypted documents by extracting Office hashes (office2john.py), converting them for Hashcat, and using targeted custom dictionaries (generated with CeWL and expanded with hashcat-utils) plus hybrid attacks to achieve vastly faster recovery than brute-force; the author also validates the approach against the LinkedIn SHA-1 hash dump to show real-world effectiveness.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.