An error in the implementation of the Cryptsetup utility used for encrypting hard drives allows an attacker to bypass the authentication procedures on some Linux systems just by pressing the Enter key for around 70 seconds. This results in the attacked system opening a shell with root privileges.

Source: You Can Bypass Linux Disk Encryption Authentication by Pressing the Enter Key for 70 Seconds

Posted: November 15, 2016 in Computer, Operating Systems, Security