June 14, 2022 at 5:03 PM
Suggestion:
1) Similar to the Official Databases (https://breached.co/Announcement-Database-Index) I think we should have an organized section for Official Combo-Lists OF Official Database Leaks.
- Right now it's pretty haphazard (random threads throughout BF) usually including only an Email, Password (rarely contains the original hash)
- Lack of Quality Control: Someone could literally strip out the email address from an existing DB and put a random word list next to each email address (i.e. garbage) and upload the junk combo list for credits or sales
- If I want to find by buddy's password in the Parkmobile DB, I can't tell if existing combo-lists have it already (unless the user notes it somewhere so I can do a search)
2) The Official Combo-List should include the Percentage % cracked, the actual Combo-list AND the hashcat potfile (otherwise the thread gets frozen by moderators until its provided).
- Providing the hashcat potfile means that it can be *easily* checked because hashcat looks at the potfile before it starts hashing and discards the known hashes before launching the dehashing.
- Competition by % hashed => if there are competing hash lists for the same DB, then a new thread can only be opened when the percentage is higher than the existing one
