[3668] in bugtraq

home help back first fref pref prev next nref lref last post

BoS: Magic password of some linux-box(Hardware..) (fwd)

daemon@ATHENA.MIT.EDU (sameer)
Fri Nov 22 04:21:44 1996

Date: 	Thu, 21 Nov 1996 12:48:45 -0800
Reply-To: sameer <sameer@c2.net>
From: sameer <sameer@c2.net>
To: Multiple recipients of list BUGTRAQ <BUGTRAQ@NETSPACE.ORG>

----- Forwarded message from Eugene Bradley -----
[. . .] Complex plan elided
----- End of forwarded message from Eugene Bradley -----

        That's not nearly necessary. All they need to do is embed a
secret key. The same secret key would work fine, I think, it isn't all
that high security. Then if someone wants to break the bios pw they
enter something like 'BreakPW' - then the BIOS spits out a random
string. User calls the 800 number, tells the 800 number the challenge
string. the 800 number then encrypts the challenge string with the
secret key and then theuser enters it.

        simple and effective. Not exportable though. =)

--
Sameer Parekh                                   Voice:   510-986-8770
President                                       FAX:     510-986-8777
C2Net
http://www.c2.net/                              sameer@c2.net

home help back first fref pref prev next nref lref last post