WonderHowTo Microsoft Office files can be password-protected in order to prevent tampering and ensure data integrity. But password-protected documents from earlier versions of Office are susceptible to having their hashes extracted with a simple program called office2john. Those extracted hashes can then be cracked using John the Ripper and Hashcat. Extracting the hash from a password-protected Microsoft Office file takes only a few seconds with the office2john tool.
It specifically deals with cracking WPA2 keys with Hashcat, but the techniques described in that article regarding phone numbers, wordlists, and modifiers are all relevant here. My previous article that covers creating custom wordlists may be of assistance as well. Extracting the Password Hash from the Office Document In order to use Hashcat to attack the hash stored in a Microsoft Office document, we first must extract the hash. For ease of use, remember, the Office document should be in the same directory. It comes installed with Kali by default.

