John the Ripper is a free multi-platform password-cracking software. This article is not intended to be a comprehensive guide to jtr, rather a quick how-to. Starting with version 1.7.9, jumbo patch 6, jtr supports password recovery for Office 2007/2010. In the example below, I will compile jtr from source with OpenMP support to take advantage of a multi-CPU server running CentOS 6.

Install OpenMP support and some useful performance-monitoring tools:

Download and compile jtr version 1.7.9, jumbo patch 7:

Install jtr from standard CentOS repo and copy some missing files:

Install office2john Python script to extract hashes from Office files:

Process an Office file:


