Camelia, the Perl 6 bug

IRC log for #motoactv, 2012-06-11

| Channels | #motoactv index | Today | | Search | Google Search | Plain-Text | summary

All times shown according to UTC.

Time Nick Message
00:09 mathnathan I've got a few questions about implementing the zergRush eploit
00:09 mathnathan Does anyone have a minute or two to discuss them?
01:24 CEnnis91 [mbm]: aroudn?
01:35 [mbm] .
01:36 CEnnis91 ever hear of an ereader called literati
01:36 [mbm] nope
01:37 CEnnis91 runs linux
01:37 CEnnis91 and the firmware seems to be just a tgz
01:38 CEnnis91 http://download.kobobooks.com/firmwares/merchs​ource/2-0/KoboRoot.tgzhttp://download.kobobook​s.com/firmwares/merchsource/2-0/KoboRoot.tgz
01:38 CEnnis91 oops
01:38 CEnnis91 http://download.kobobooks.com/firm​wares/merchsource/2-0/KoboRoot.tgz
01:38 CEnnis91 has busybox in it too
01:39 CEnnis91 seems to have been a few kernel hacks so far, nothing major thou
01:40 [mbm] oh, think I've actually seen those thigns in stores
01:40 CEnnis91 but they would enable terminal access
01:40 CEnnis91 ive never seen this thing before, gfs brother won it somewhere
01:41 CEnnis91 looks like the software is based on qt
01:42 CEnnis91 hahaha lolwat
01:42 [mbm] last time I saw them in stores was several years ago which makes me think the hardware has got to be pretty obsolete by now
01:42 CEnnis91 ./etc/passwd
01:42 CEnnis91 root:$1$$qRPK7m23GJusamGpoGLby/:0:0:root:/:/bin/sh
01:42 CEnnis91 ftp::14:50:FTP User:/var/ftp:
01:42 CEnnis91 bin:*:1:1:bin:/bin:
01:42 CEnnis91 daemon:*:2:2:daemon:/sbin:
01:42 CEnnis91 messagebus:*:30:30:messagebus::/bin/false
01:42 CEnnis91 nobody:*:99:99:Nobody:/:
01:42 CEnnis91 admin:$1$$CoERg7ynjYLsj2j4glJ34.:0:0:Linux User,,,:/home/admin:/bin/sh
01:44 CEnnis91 [mbm]: yea the software on this thing said oct 2010
01:45 [mbm] root::0:0:root:/:/bin/sh
01:45 [mbm] ftp:NO PASSWORD:14:50:FTP User:/var/ftp:
01:45 [mbm] admin:admin:0:0:Linux User,,,:/home/admin:/bin/sh
01:45 [mbm] ^ cracked passwords :P
01:46 CEnnis91 cracked passwords?
01:46 CEnnis91 export KERNEL="2.6.18 (build Aug 01)"
01:47 [mbm] yeah, I just ran that passwd file through john the ripper, took it a split second to generate that output
01:48 CEnnis91 oh, hmmm cool
01:48 CEnnis91 never heard of that
01:49 CEnnis91 root didnt return a password/
01:49 [mbm] password there is literally 'enter'
01:50 [mbm] high security
01:50 CEnnis91 haha
01:50 CEnnis91 anything else youj want me to look at?
01:51 [mbm] what's /proc/cpuinfo say?
01:51 CEnnis91 dont have terminal
01:51 [mbm] guessing arm, 600Mhz or less
01:53 CEnnis91 [mbm]: is john the ripper a tool that would be able to crack those linkedin hashes that were leaked?
01:53 [mbm] yep
01:53 * CEnnis91 downloads
01:53 CEnnis91 =P
01:53 [mbm] iirc there was even a set of patches to allow it to crack that file directly without changing the format
01:54 [mbm] anyway, it's just a brute force util
01:54 CEnnis91 thought so
01:54 [mbm] tries various combinations of common passwords
01:55 CEnnis91 hmmm weird the newer software hides the file now
01:55 CEnnis91 i bet you could still firmware upgrade by just placing the file
01:55 CEnnis91 device.salt.conf: [General]
01:55 CEnnis91 salt="@ByteArray(\x19v\x85,\xa1\xf8​\xf0\x93\x4W\xaf\xc2\x94\xdaZ\xa4)"
01:56 CEnnis91 no idea what salt is
01:58 CEnnis91 [mbm]: is there any way i would be able to access terminal?
01:58 CEnnis91 likely no i would think
02:13 CEnnis91 [mbm]: http://elinux.org/Literati
02:15 CEnnis91 and http://nightflyertechblog.blogspot.com/
02:18 CEnnis91 i really need to get into kernel hacking
02:18 CEnnis91 would open up quite a few doors for me
10:48 Snoothy joined #motoactv
14:20 CEnnis91 joined #motoactv
17:19 dproldan joined #motoactv
18:21 dproldan joined #motoactv
18:51 dproldan joined #motoactv
19:03 dproldan joined #motoactv
22:36 _ilbot joined #motoactv
22:36 Topic for #motoactv is now MotoACTV Development. Channel logs at http://irclog.perlgeek.de/motoactv/
23:46 CEnnis91 [mbm]: whats the diff between jack the ripper pro and free

| Channels | #motoactv index | Today | | Search | Google Search | Plain-Text | summary