Richard "mtfnpy" Harman · @xabean
585 followers · 549 posts · Server infosec.exchange

  • Reboot by whatever means
  • From the bootloader, add to the kernel command line: init=/bin/bash
  • mount / -o remount,rw
  • vi /etc/shadow to blank out the root password: root:::0:99999:7:::
  • mount / -o remount,ro
  • exec /sbin/init

Then at the login: prompt, just type root and press enter.

No encrypted password means you just get to log in. Please set the root password immediately! :)

Total downtime is basically how long it takes for one reboot, and to type the above commands.

#linux #server #physicalaccess #compromise #howto

Last updated 2 years ago

ITSEC News · @itsecbot
687 followers · 32461 posts · Server schleuss.online