Linux Reset User Credential: Bypass Root Shell Give Password for Maintenance (Abuse dpkg details)

preview_player
Показать описание
So this video I'll show you guys how to bypass the "Give root password for maintenance" when you want to drop into root shell from the recovery menu. We will abuse one of the famous Linux local privilege escalation technique to spawn us a root shell in order to bypass the root password for maintenance restriction.
Рекомендации по теме
Комментарии
Автор

Very good. You can also use init=/bin/bash in the GRUB startup menu. But this seems like another decent technique for Ubuntu. If you had an encrypted GRUB boot loader could you still leverage this exploit or no?

For those who are wondering why you can inject a command using dpkg? The presenter of the video is using apt which similar to other programs like systemctl and less, it’s a pager. You’re able to interact with the system using pagers. What we’ve seen here is /bin/bash being locally launched and the root password overwritten. But this is a worthy method to deploy payloads for initial access, I consider what we saw here as a PoC. Not to devalue the content, but to stress the fact that this down to the point video only gives you the tip of the iceberg.

Once again, great content and keep up your efforts!

aqeebhussain
Автор

Woke up to this. What a wonderful day

jamesvandamere
Автор

This is it!!! You know your sh*t to well. I pray to the Gods you have a well paying salary sir. I wish this society would reward people for what they know. Thank you!!!!❤️❤️❤️❤️❤️

YouDontKnowMetx
Автор

After trying many other methods, this worked for me, Many Thanks!

yaseralosh
Автор

Thanks for your video! Yesterday late night I was worry and this video calm me down. Works like a charm!

Javier
Автор

Thanks a lot, u just addressed a problem in a super manner!

diogob
Автор

You are second to none! Thank you for your help!

nickstruk
Автор

You saved my life, thank you so much!

qidewjv
Автор

Really Great and Informative Video !! Keep up <3

uhh
Автор

Great video!!! This save my life :) Tnx!

stefanikolic
Автор

what exactly did you enter as new password. I tried "root" "1234", and it saying, "the password is shorter than 8 characters

benedictmbanefo
Автор

I was wondeirng if you teach how to use linux, ive been using windows all my life and i want to learn the directories for linux but i dont want to mess up my conputer. Is there a way ?

YouDontKnowMetx
Автор

after writing reboot, how do you open that new page where you write again?

hearttomouth
Автор

You video save my ubuntu! Thank you very much sir!

tariqkhamlaj
Автор

God Bless You! How i can send you 100$. You literally saved my ass

scrooge
Автор

when choose dpkg then stuck on mountall : mount /mnt/nfs/home [1795] terminated with status 32

mozuconfig