The second type of attack is the brute force attack. If the attacker doesn't know the password, he can try every single possible password to get a match. These systems are often called automated systems. Some people call the brute force attack the dictionary attack as it uses the dictionary file or a list of words to try and get a match. The internet dictionary is the database of words and phrases that human may have developed over the years. A list of passwords that an attacker could create from this database is called a dictionary. These dictionaries are usually either text files that are placed in the directory of the computer, or online dictionaries that can be accessed via the Internet. Online dictionaries are also called brute-force, trial and error, or dictionary attack.
The brute-force attack is one of the oldest and hardest attacks to crack. The brute force attack does not use any form of authentication. The method of guessing the passphrase by using a list of passwords is called a dictionary attack. The term is used to refer to methods that try every possible word of a passphrase. When using a dictionary attack, the attacker obtains a list of possible passphrases that may be the user's password. The attacker then tries to type each passphrase into the password field of the account. When a match is found, the attacker has the username and password for the target account.
Worst of all, this isnt even the most dangerous attack. It is actually one of the easiest, and most dangerous ones you can do. This attack involves the a user going to the web site, and trying to log in through the website. In other words, the attacker just types the right username and password on a web site, and the victim believes that it is legitimate.