Computer Forums

Member Login

Remember Me? Sign Up! | Forgot Password
 
Slogan
 
Closed Thread
Old 11-11-2004, 07:09 PM   #1 (permalink)
 
Junior Techie

Join Date: Dec 2003

Posts: 54

Borgmeister

Send a message via AIM to Borgmeister
Default Please read ahead>

A colleague from work, managed to break into my linux box, and he wont tell me how, he did not knwo the password, but somehow managed to get into the machine, how could he do this, and he didnt have access to bootable media, because the bios is locked(on a laptop)
__________________
My \'Rig\' (how ghey does that sound?

AMD Athlon 2500+ Mobile@ 2400Mhz
1024 Mb Corsair XMS 3200 DDR RAM(the stufff with the activity LEDs)
ABIT Radeon 9550(water cooling accident)
Jeantech Butterfly V2 Easy maintainence case
Abit AN7 \"guru\" Motherboard
2x 160Gb Samsung SP160N HDD
DVD-RW
DVD-ROM
Netgear 802.11g Wireless Network/Gigabit Ethernet.

Mail me on Borgmeister(at)Gmail(dot).com for invites if you want!
Borgmeister is offline  
Old 11-11-2004, 07:44 PM   #2 (permalink)
 
Master Techie

Join Date: Apr 2004

Posts: 2,534

horndude is on a distinguished road

Default

probably guessed your password, social engineering is always the most effective hack

bios settings set up for boot only from hard drive?
horndude is offline  
Old 11-11-2004, 07:45 PM   #3 (permalink)
 
Master Techie

Join Date: Apr 2004

Posts: 2,534

horndude is on a distinguished road

Default

or he removed your hard drive and got in that way, that isnt tough to do, especially on a laptop
horndude is offline  
Old 11-12-2004, 12:56 AM   #4 (permalink)
 
Super Techie

Join Date: Jul 2004

Posts: 309

s0me0ne

Send a message via AIM to s0me0ne Send a message via Yahoo to s0me0ne
Default

was this all on a local lan? did you check your loggs? are you running an exploitable service maybe? does he have an account on your box anyway and just gained root? am I asking to many questions right now? haha
__________________
Anal nerd who can\'t spell.
s0me0ne is offline  
Old 11-12-2004, 01:18 AM   #5 (permalink)
 
Ultra Techie

Join Date: Jun 2004

Posts: 973

intercodes

Send a message via Yahoo to intercodes
Default

Borgmeister

Yea, he should have probably run 'lopht crack' or 'john the ripper' to get the root password. There are already 50 known expliots to get the root password in a linux box. He would have searched for such an exploit and executed in your system.
Thou I couldn't figure out the BIOS breaking? ..removing the BIOS battery...removes the password protection..rite??

Sign
Codes

intercodes is offline  
Old 11-12-2004, 09:57 AM   #6 (permalink)
 
Junior Techie

Join Date: Dec 2003

Posts: 54

Borgmeister

Send a message via AIM to Borgmeister
Default

Hmm, i am runnign ubuntu, and the screen was locked, (xfree86) my password is not guessable(alpha numeric jumble), and it was not connectedd to a network at the time. He said he got in via the screen saver, and did not drop out to the terminal. Cheers guys
__________________
My \'Rig\' (how ghey does that sound?

AMD Athlon 2500+ Mobile@ 2400Mhz
1024 Mb Corsair XMS 3200 DDR RAM(the stufff with the activity LEDs)
ABIT Radeon 9550(water cooling accident)
Jeantech Butterfly V2 Easy maintainence case
Abit AN7 \"guru\" Motherboard
2x 160Gb Samsung SP160N HDD
DVD-RW
DVD-ROM
Netgear 802.11g Wireless Network/Gigabit Ethernet.

Mail me on Borgmeister(at)Gmail(dot).com for invites if you want!
Borgmeister is offline  
Old 11-13-2004, 12:17 AM   #7 (permalink)
Qiranworms's Avatar
 
Monster Techie

Join Date: Mar 2003

Posts: 1,637

Qiranworms is on a distinguished road

Default

Quote:
Originally posted by Borgmeister
Hmm, i am runnign ubuntu, and the screen was locked, (xfree86) my password is not guessable(alpha numeric jumble), and it was not connectedd to a network at the time. He said he got in via the screen saver, and did not drop out to the terminal. Cheers guys
Maybe you thought you loaded xfree86 and didn't...and this person knows that it's your habit to use it...and he saw you forgot, and figured it was a mistake. Thus he could have taken advantage and pretended to have broken in. Just an idea that's to be considered along with these hacking theories.

All I know is people in my house could NEVER break my xfree86, so I'm safe here :laughing:. ****...nobody even broke the Windows XP 'lock screen'...actually, I don't think anyone ever tried. Someone starts a conversation on MSN that might have some sort of private info...and if I'm not there...and someone glances at the screen...can't risk that.
__________________
-->Marc
Error: Keyboard not attached. Please press F1 to continue. <pre>-------OS----------Gentoo Linux-------<br>------Browser-----Mozilla Firefox-----</pre><form action="http://www.srsyo.org/tfsearch.php" method="get"><input type="text" name="search"> <input type="submit" name="submit" value="Search the Forums, thanks to Emily"></form>

|||Official Forum Rules|||<hr>
Qiranworms is offline  
Old 11-13-2004, 12:31 AM   #8 (permalink)
 
Junior Techie

Join Date: Jul 2004

Posts: 56

NoodleKnight

Default

Not sure how easy this would be, or if it actually works. If you can get access into the hard drive (like attatching it to another computer as a slave drive) then deleting the password file (something like .pwd or .passwd) then you should be able to log into root with a blank password. Though, I hear that for some versions of linux this doesn't work.
NoodleKnight is offline  
 
Closed Thread

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On