IBM

Breaking in to an inherited AIX installation

As mentioned in another thread, I picked up an IBM RS/6000 7043-140, a 266MHz based 604e, and it came with an install of AIX 4.2 on a hellaciously-loud 4GB SCSI-II drive. I'd like to know if there's any equivalent in AIX-land to what I would do under Linux to recover root access to a machine, eg interrupt boot loader, add "single init=/bin/sh" to the bootargs, and then modify /etc/password and/or shadow.

Suggestions?
iirc even booting into single user requires the root password.

Do you have the media disks?
-----------------------------------------------------------------------
Hey Ho! Pip & Dandy!
:Octane2: :Octane2: :O2: :Indy: loft => :Indigo: :540: :Octane: :Octane: :Indy:
Crazy question, but... Can you mount the disk in another machine and hack the password file that way?
Yes.

Full instructions are in the Wiki .
Systems in use:
:Fuel: - Lithium : R14000 600MHz CPU, 4GB RAM, V10 Graphics, 36GB 15k HDD & 300GB 10k HDD, New/quiet fans, IRIX 6.5.30
:Indigo2IMP: - Nitrogen : R10000 195MHz CPU, 384MB RAM, SolidIMPACT Graphics, 36GB 15k HDD & 300GB 10k HDD, New/quiet fans, IRIX 6.5.22
Other systems in storage: :O2: x 2, :Indy: x 2
Trippynet wrote: Yes.

Full instructions are in the Wiki .

this is about irix, not aix
r-a-c.de
Same would apply if you have another AIX box able to take said drive. I don't think shadow password malarkey was too strong in 4.x ???
-----------------------------------------------------------------------
Hey Ho! Pip & Dandy!
:Octane2: :Octane2: :O2: :Indy: loft => :Indigo: :540: :Octane: :Octane: :Indy:
sure, the general concept goes for all. usually comes down to either booting with the os cd or putting the disk into another machine
r-a-c.de
There are a couple of local attacks you can mount, but you need to have *a* login (I broke into one of my old systems this way when I forgot what the root password was). I believe there are some CDE attacks you can try too, but since you have a real IBM machine, better just to get an AIX disc. You'll need it sooner or later anyway.
smit happens.

:Fuel: bigred , 900MHz R16K, 4GB RAM, V12 DCD, 6.5.30
:Indy: indy , 150MHz R4400SC, 256MB RAM, XL24, 6.5.10
:Indigo2IMP: purplehaze , R10000, Solid IMPACT
probably posted from Image bruce , Quad 2.5GHz PowerPC 970MP, 16GB RAM, Mac OS X 10.4.11
plus IBM POWER6 p520 * Apple Network Server 500 * HP C8000 * BeBox * Solbourne S3000 * Commodore 128 * many more...
foetz wrote: this is about irix, not aix


Whoops, so it is. My bad :(
Systems in use:
:Fuel: - Lithium : R14000 600MHz CPU, 4GB RAM, V10 Graphics, 36GB 15k HDD & 300GB 10k HDD, New/quiet fans, IRIX 6.5.30
:Indigo2IMP: - Nitrogen : R10000 195MHz CPU, 384MB RAM, SolidIMPACT Graphics, 36GB 15k HDD & 300GB 10k HDD, New/quiet fans, IRIX 6.5.22
Other systems in storage: :O2: x 2, :Indy: x 2