OWASP/IoTGoat

Unable to find iotgoathardcodedpassword file

abhigyan17 opened this issue · 2 comments

Dear Team,

Tried alot but unable to locate the file where hard coded password is kept.

Hi @abhigyan17,
If you are having a rough time and need some assistance finding solutions, please check out our wiki section :) Ill give you a hint, its in the /etc/ directory

IoTGoat's hardcoded credentials are MD5 hash values in /etc/shadow -

root:$1$Jl7H1VOG$Wgw2F/C.nLNTC.4pwDa4H1:18145:0:99999:7:::