[Home]  [Headlines]  [Latest Articles]  [Latest Comments]  [Post]  [Sign-in]  [Mail]  [Setup]  [Help] 

Status: Not Logged In; Sign In

76% of Honey at Stores is Fake

"225,000 Ukrainians have now DESERTED the war" Ukraine is in a death spiral Col. Dan Davis

The New York Times Finally Stops Avoiding The G-Word

The Gaza Water Massacre: What Israel Just Confessed About Shooting Children

Powerful ERUPTION spit out volcanic mud and debris - Army Personnel ran for their lives

Another 'Conspiracy Theory' Comes True: California Bill Passes To Buy Fire-Ravaged Palisades For Low-Income Apartments

A 1,600-year-old church in the Holy Land has been torched. But not by ISIS.

More civilians have been killed while seeking aid in Gaza than were killed on 7 October.

MORE TRANS VIOLENCE

WAYNE ROOT: Here’s How Trump Turns the Epstein List Fiasco into Home Run

Maxwell Says Epstein Client List Implicates Top Democrats

Medical Record Review Of the Twins Who Died After Vaccination

New federal secrets exposed as Republican unravels Lee Harvey Oswald's hidden ties to CIA

Protest outside migrant hotel in Essex erupts into violence

Congressman Faces Eviction Over $85k Back-Rent For Luxury DC Penthouse

This Is Not Normal! We Just Had Four “1-In-1,000-Year Storms” In A Single Week!

Dr. Fauci referred to top prosecutor for criminal charges after bombshell Biden autopen pardon revelation

Panama hit by 6.2 magnitude earthquake

Why Labour REALLY Supports Genocide

Police Name Brigitte Macron as 'Suspect' in Murder of Doctor Who Exposed Transgender Past

The Treasury General Account Refill will Force the Fed to Cut Rates and Restart QE

Silver surges above $39 for the first time since the first US downgrade in Aug 2011.

Breaking Ukraine’s Backbone: Russia’s Offensive Severing Strategic Supply Routes

Tucker Carlson: Hunting with Dogs is Transcendent

Earthquake Swarms Increasing ! Islands Pulled 4 INCHES APART -Unprecedented

Project Veritas: Text Messages Show Secret Service Agent Disclosing Operational Details to Stranger,

Chinese Drug Cartels Taking Oer Maine Due to lax Immigration Rules

Bitcoin Bitcoin hits new high above $120,000 as U.S. lawmakers begin ‘Crypto Week’

How I Reversed an "Irreversible" Condition With Stem Cell Therapy

Trump's Missile Deal $$$$


Science/Tech
See other Science/Tech Articles

Title: Phone root password cracked in three days
Source: Builder.Au
URL Source: http://www.builderau.com.au/blogs/b ... b/viewblogpost.htm?p=339270810
Published: Jul 3, 2007
Author: Nick Gibson
Post Date: 2007-07-04 20:29:26 by boonie rat
Keywords: None
Views: 141
Comments: 1

Phone root password cracked in three days By Nick Gibson | 2007/07/03 16:56:16

It's been out just three days, but already the Apple iPhone has been taken apart both literally and figuratively. The latest: inquisitive Apple fans have hacked into the firmware and discovered the master root password to the smart phone.

The information came from an an official Apple iPhone restore image (rename as a zip file and extract). The archive contains two .dmg disk images: a password encrypted system image and an unencrypted user image. By delving into the unencrypted image inquisitive hackers were able to discover that all iPhones ship with predefined passwords to the accounts 'mobile' and 'root', the last of which being the name of the privileged administration account on UNIX based systems.

Hackers used the simple UNIX program 'strings' to extract a list of human readable character strings from the disk image, which contained a list of user accounts and their corresponding encrypted passwords (equivalent to the /etc/passwd file on UNIX and Linux systems). A call was then made out on the Full Disclosure mailing list for someone to run the popular password cracking tool John the Ripper on the encrypted passwords.

It took one replier just sixteen seconds to extract the passwords for both accounts -- both passwords were simple six letter words of lower case letters.

Having the passwords will not do anybody any good for the moment. The iPhone has no console or terminal access, so there is no way to log in as either account. In fact, nobody even seems certain that the accounts access the machine at all, some Internet commentators suggesting that the password file was left over from early development work, or was intentionally included to throw hackers off the scent.


Poster Comment:

For Jobs said that the Iphone was good and it shall be good, Amen.

Post Comment   Private Reply   Ignore Thread  


TopPage UpFull ThreadPage DownBottom/Latest

#1. To: boonie rat (#0)

Isn't it curious that so many devices, such as the iPhone and routers, are using a unix/linux operating system rather than a proprietary system?

...with the power of conviction, there is no sacrifice.

rack42  posted on  2007-07-04   22:06:19 ET  Reply   Trace   Private Reply  


TopPage UpFull ThreadPage DownBottom/Latest


[Home]  [Headlines]  [Latest Articles]  [Latest Comments]  [Post]  [Sign-in]  [Mail]  [Setup]  [Help]