The invention relates to the technical field of
information security. The invention discloses an L2TP /
IPSEC cracking method and
system based on high-
performance computing. The
cracking method comprises the steps of
cracking a pre-shared key, cracking a login
password and realizing
encryption information decryption in combination with data flow redirection. The cracking
system comprises a traffic intercepting and forwarding module, a man-in-the-middle
server management end and a man-in-the-middle
server proxy end. According to the invention, man-in-the-middle
attack is adopted firstly and thena violent cracking mode is adopted; the
weakness of Diffie-Hellman is utilized to carry out man-in-the-middle
attack for three times; the cracking of the pre-shared key is completed by the first man-in-the-middle
attack; the second man-in-the-middle attack completes cracking of the login
password, the third man-in-the-middle attack is combined with data flow redirection to achieve
encryption information decryption, in the
password cracking process, a user can normally access
the Internet, and the method is a cracking method which is free of
perception and does not have influence on the user touse the VPN.