Jump to content
Hak5 Forums


  • Content count

  • Joined

  • Last visited

About prophet

  • Rank

Recent Profile Visitors

The recent visitors block is disabled and is not being shown to other users.

  1. prophet

    SanDisk Connect 32GB Wireless Media Drive root

    I seriously doubt it's running Windows. That DLL name contains Silverlight which can be used for media playback. Most likely it's for Windows client to use for playing media files through the web interface.
  2. prophet

    SanDisk Connect 32GB Wireless Media Drive root

    So it seems to be out of stock everywhere in states=high price. But here it is https://www.amazon.com/SanDisk-Connect-Wireless-Smartphones-Tablets/dp/B00DR8LAE2 The device has all the script ready for dropbear but the binary is missing. So if someone wants ssh. Compile dropbear and ftp it to the device with root access and it should work.
  3. Hi I googled a bit and tried to see if anyone would have tried to hack this older model of SanDisk Connect. Anyways the search turned out empty so here is what I did to gain root access. Device has telnet on even the latest firmware. You can connect to it and login with you admin account and password. After that I had access to the shadow file and then I just brute forced the password. Anyways after that I can login to the telnet session with root and used this password: "sqn1351" That password also allows root access to FTP. This site seemed to popup when I googled so if anyone else wants to have a go on this device let me save you some time and there should be the password. I'd be interested to hear from others if they too have this hardcoded password for root. I assume for at least this device the password is the same. TBH I would also try on the newer stick models. Quickly about the device: It's 32GB or 64GB wifi storage device with full size SD card slot. It runs Linux and has 128mb of ram. It's Armv7 device. I bought new for 15€ so they are really neat devices now since they are so cheap. Ps. I don't know if this is the right place to post this so sorry about if I posted to wrong place.