+ Reply to Thread
Results 1 to 8 of 8

Thread: Acquired admin access on my new emac in 2 mins

  1. #1
    Sweet Stuffed Pastry ´Silæs has much to be proud of ´Silæs's Avatar
    Join Date
    November 2005
    Location
    Denmark
    Posts
    4,026
    Points
    -336,747.23

    Acquired admin access on my new emac in 2 mins

    So basically thanks to some really awesome guy, I had admin access within a few minutes

    Assuming this is YOUR machine you are trying to break into, the procedure here does not work under Tiger. I used to do the following procedure for Tiger.......It should work still under the latest update. It will basically make your machine think it's had OSX installed on it just now.

    1) Boot your machine into Single user mode by holding down Command-S (apple-S).
    2) Issue the following commands (without double quotes), followed by Enter:
    "mount -uaw"
    "cd /var/db"
    "rm .applesetupdone"
    3) This "hidden" file (.applesetupdone) we just deleted tells OSX that the initial setup has already been done. By deleting it, we are "forcing" OSX to do the initial setup process all over again. During this process we create a "dummy" user account. This dummy account will have admin privileges, so we can use it to RESET the password on the other account (the account you can't remember the password for).

    So Reboot the machine (using "reboot" command or "shutdown -h now") and setup your dummy account, reset the "real" accounts password and optionally delete the dummy account once you get access to the "real" account.

    Have Fun,
    Many
    That is so awesome =D

    [RIGHT]

  2. #2
    <span style='color: #9ACD32'><span class='glow_FFFF00'>™</span></span> is offline
    Shinryuuken! <span style='color: #9ACD32'><span class='glow_FFFF00'>™</span></span> has a brilliant future<span style='color: #9ACD32'><span class='glow_FFFF00'>™</span></span> has a brilliant future
    Join Date
    June 2004
    Posts
    10,879
    Points
    1,289.24
    Blog Entries
    9
    pretty lame security measure

  3. #3
    Sweet Stuffed Pastry ´Silæs has much to be proud of ´Silæs's Avatar
    Join Date
    November 2005
    Location
    Denmark
    Posts
    4,026
    Points
    -336,747.23
    Quote Originally Posted by View Post
    pretty lame security measure
    I'm a bit surprised it was that easy

    [RIGHT]

  4. #4
    Another Canadian <span style='color: #9ACD32'>SonicDaMan</span> is surrounded by a spectacular aura <span style='color: #9ACD32'>SonicDaMan</span>'s Avatar
    Join Date
    November 2009
    Location
    Ottawa, Canada
    Posts
    125
    Points
    1,407.93
    When I first got my MacBook, I forgot my login password a day later. Popped in the install disc, opened up Keychain and changed the password with no hassle. Too easy!

  5. #5
    <span style='color: #9ACD32'><span class='glow_FFFF00'>™</span></span> is offline
    Shinryuuken! <span style='color: #9ACD32'><span class='glow_FFFF00'>™</span></span> has a brilliant future<span style='color: #9ACD32'><span class='glow_FFFF00'>™</span></span> has a brilliant future
    Join Date
    June 2004
    Posts
    10,879
    Points
    1,289.24
    Blog Entries
    9
    Hmm, well, now that i think of it, its not a security measure rather than a security flaw. Usually in web application installations, you delete a 'setup' folder that removes the ability to start the configuration/installation process again, the one on your system is kind of backwards

  6. #6
    Rusketusraidat hinarei has a brilliant futurehinarei has a brilliant future hinarei's Avatar
    Join Date
    March 2004
    Location
    in a box beside Su's bed
    Posts
    19,653
    Points
    23,211.54
    Blog Entries
    255
    Quote Originally Posted by View Post
    Hmm, well, now that i think of it, its not a security measure rather than a security flaw. Usually in web application installations, you delete a 'setup' folder that removes the ability to start the configuration/installation process again, the one on your system is kind of backwards
    yes it's a flaw o_O that'd be a nightmare for administration purposes, so you'd hope that network admins had the foresight to clear this sort of thing up.

    You delete the initial folder of forum installs like vBulletin and phpBB, don't you? The install instructions make you disable the install folder and then delete it once you're done, otherwise the whole process can be initiated again and lead to a possibly buggered board. That does seem backwards on Mac, but only the file naming

    Quote Originally Posted by ´Silæs View Post
    So basically thanks to some really awesome guy, I had admin access within a few minutes
    nifty. Always a pain to crack a Windows box when the admin password's different to the normal ones we use at work, and I've never tried this on a Mac. Never needed to, but nice to know

    Quote Originally Posted by Crono View Post
    [...]pretty epic in terms of epicness

  7. #7
    <span style='color: #9ACD32'><span class='glow_FFFF00'>™</span></span> is offline
    Shinryuuken! <span style='color: #9ACD32'><span class='glow_FFFF00'>™</span></span> has a brilliant future<span style='color: #9ACD32'><span class='glow_FFFF00'>™</span></span> has a brilliant future
    Join Date
    June 2004
    Posts
    10,879
    Points
    1,289.24
    Blog Entries
    9
    Theres this utility hinarei, that gives you the password for windows machines. A friend brought it to work one day when a computer didn't have the widely used admin password. I don't remember the name of thing at the moment, i'll ask him when i see him.

  8. #8
    Rusketusraidat hinarei has a brilliant futurehinarei has a brilliant future hinarei's Avatar
    Join Date
    March 2004
    Location
    in a box beside Su's bed
    Posts
    19,653
    Points
    23,211.54
    Blog Entries
    255
    OphCrack? Used that, but it's still a pain to work around If there was something in the OS that allowed a quickboot like Silas has listed here for his Mac, it'd solve a few problems (although it'd generate a load more, probably... -_- )

    Quote Originally Posted by Crono View Post
    [...]pretty epic in terms of epicness

+ Reply to Thread

Thread Information

Users Browsing this Thread

There are currently 1 users browsing this thread. (0 members and 1 guests)

     

Posting Permissions

  • You may not post new threads
  • You may not post replies
  • You may not post attachments
  • You may not edit your posts