[Home]  [Headlines]  [Latest Articles]  [Latest Comments]  [Post]  [Sign-in]  [Mail]  [Setup]  [Help] 

Status: Not Logged In; Sign In

Karmelo Anthony’s Parents KICKED OUT From Mansion After $30M in Debt

European Countries That Will COLLAPSE (Due To Immigration)

Netanyahu Gov't CRASHES as IDF Soldiers Turn on Each Other in Tel Aviv!

Two Tier UK: 'Cut Throats' Councilor Freed, While Mother Who Tweeted Still In Prison

Closest Thing We Have to a Fountain of Youth

The ultimate American inner city showdown

Israel Is So Evil That It Has A Military Unit Dedicated To Excusing Atrocities

42 Million Chinese Forced to Cut Social Security, Youth Begin Full Rebellion Against Old Leaders

Walmart Leaves Chicago, Closes 4 Stores After Community Steals Them Blind, Losing Millions

ICE Agents RAID California Costco Warehouse — 900+ Illegals Captured in Minutes!

Mexicans WANT Trump to invade to stop the cartels

Lee Rodgers and Melanie Morgan Interview a "Turkey Tugger"

Sounding the Alarm On Transformer Shortage Amid AI Data Center Boom

Peter Zeihan: China’s Fall, America’s Rise, and the End of the World Order

6 Year Old Black Girl Helps Solve A Double Homicide

Associated Press Tried to Fact-Check Trump on DC Crime and Accidentally Proved He Was Right All Along

The Sinking of IJN Musashi — How Airpower Crushed the World’s Largest Battleship

Young Woman’s Mockery of the Left’s ‘No Kings’ Hypocrisy Racks Up Millions of Views

Israel Alarmed Over Suspected Chinese Support For Iranian Missile Program

Seth Harp Exposes the Murder & Drug Trafficking Taking Place Inside America’s Largest Military Base

Holy SH*T Their planning WHAT in Gaza???!!! This explains EVERYTHING

Crowds on Demand CEO provides insight as paid protester requests up 400% under Trump

Cash Jordan: Looters 'Wipe Out' 37 DC Stores... Mayor FLEES as Trump SEIZES Capital

MAHA Advocates Urge Trump To Block Immunity For Pesticide And Chemical Manufacturers

EVERYTHING IS STUPID!! - (Republican Town Hall edition)

Obama Called: Mamdani is Democrats' Future!

ICE Agents SHUTS DOWN Denver Hotel — Illegals Removed from Staff and Guests!

Cash Jordan: Homeless HORDE 'Digs In'... as Trump's 'Removal Unit' LEVELS DC Vagrant Village

AI-Powered Radar Can Now Spy On Your Phone Calls From 10 Feet Away

Water crisis grips Hebron after Israel chokes West Bank supply


Science/Tech
See other Science/Tech Articles

Title: Phone root password cracked in three days
Source: Builder.Au
URL Source: http://www.builderau.com.au/blogs/b ... b/viewblogpost.htm?p=339270810
Published: Jul 3, 2007
Author: Nick Gibson
Post Date: 2007-07-04 20:29:26 by boonie rat
Keywords: None
Views: 220
Comments: 1

Phone root password cracked in three days By Nick Gibson | 2007/07/03 16:56:16

It's been out just three days, but already the Apple iPhone has been taken apart both literally and figuratively. The latest: inquisitive Apple fans have hacked into the firmware and discovered the master root password to the smart phone.

The information came from an an official Apple iPhone restore image (rename as a zip file and extract). The archive contains two .dmg disk images: a password encrypted system image and an unencrypted user image. By delving into the unencrypted image inquisitive hackers were able to discover that all iPhones ship with predefined passwords to the accounts 'mobile' and 'root', the last of which being the name of the privileged administration account on UNIX based systems.

Hackers used the simple UNIX program 'strings' to extract a list of human readable character strings from the disk image, which contained a list of user accounts and their corresponding encrypted passwords (equivalent to the /etc/passwd file on UNIX and Linux systems). A call was then made out on the Full Disclosure mailing list for someone to run the popular password cracking tool John the Ripper on the encrypted passwords.

It took one replier just sixteen seconds to extract the passwords for both accounts -- both passwords were simple six letter words of lower case letters.

Having the passwords will not do anybody any good for the moment. The iPhone has no console or terminal access, so there is no way to log in as either account. In fact, nobody even seems certain that the accounts access the machine at all, some Internet commentators suggesting that the password file was left over from early development work, or was intentionally included to throw hackers off the scent.


Poster Comment:

For Jobs said that the Iphone was good and it shall be good, Amen.

Post Comment   Private Reply   Ignore Thread  


TopPage UpFull ThreadPage DownBottom/Latest

#1. To: boonie rat (#0)

Isn't it curious that so many devices, such as the iPhone and routers, are using a unix/linux operating system rather than a proprietary system?

...with the power of conviction, there is no sacrifice.

rack42  posted on  2007-07-04   22:06:19 ET  Reply   Trace   Private Reply  


TopPage UpFull ThreadPage DownBottom/Latest


[Home]  [Headlines]  [Latest Articles]  [Latest Comments]  [Post]  [Sign-in]  [Mail]  [Setup]  [Help]