hydra -S -l "$email" -P w_file -V -s 465 smtp.gmail.com smtp
其中email
只有一个是我的 gmail 帐户,并且w_file
是一个包含三个错误密码和一个正确密码的文件(karina6c
最后一行是正确的密码。Hydra 无法恢复密码,我得到以下输出:
Hydra v9.2 (c) 2021 by van Hauser/THC & David Maciejak - Please do not use in military or secret service organizations, or for illegal purposes (this is non-binding, these *** ignore laws and ethics anyway).
Hydra (https://github.com/vanhauser-thc/thc-hydra) starting at 2024-01-04 12:33:21
[INFO] several providers have implemented cracking protection, check with a small wordlist first - and stay legal!
[WARNING] Google Mail and others have bruteforce and hydra detection and send false positives. You are not doing anything illegal right?!
[WARNING] !read the above!
[DATA] max 4 tasks per 1 server, overall 4 tasks, 4 login tries (l:1/p:4), ~1 try per task
[DATA] attacking smtps://smtp.gmail.com:465/
[ATTEMPT] target smtp.gmail.com - login "*******@gmail.com" - pass "jdut" - 1 of 4 [child 0] (0/0)
[ATTEMPT] target smtp.gmail.com - login "*******@gmail.com" - pass "kdfsknf" - 2 of 4 [child 1] (0/0)
[ATTEMPT] target smtp.gmail.com - login "*******@gmail.com" - pass "krege" - 3 of 4 [child 2] (0/0)
[ATTEMPT] target smtp.gmail.com - login "*******@gmail.com" - pass "karina6c" - 4 of 4 [child 3] (0/0)
1 of 1 target completed, 0 valid password found
Hydra (https://github.com/vanhauser-thc/thc-hydra) finished at 2024-01-04 12:33:27
我的脚本是否因为访问第三方应用和设备而失败不再是一种选择用 Gmail 可以吗?还是我的脚本有问题?
答案1
非答案但实际为正确答案:
你不知道。
这是因为暴力破解密码是恢复账户的一种方法 -甚至你自己的账户- 违反大多数主要电子邮件提供商的条款和条件。
您唯一允许恢复帐户的方法是借助支持渠道。