    Software called "kon-boot" supposed to be able to log into most Linux and Windows versions without password.
    Is this thing a fake or for real? I don't have a free computer to try it out on at the moment so was hoping to find some discussion about it but there isn't much that I can find so far.
    If this is for real then everyone needs to start using BIOS passwords ASAP. Better yet, Full Disk Encryption. Can you say TrueCrypt? (or Bitlocker if you can afford it)
  2. Apparently for real:


    Local security is a joke anyway though, IMHO; the only way to have good local security is to prevent physical access to your machine by unwanted persons in the first place. Disk encryption can be broken (I hear the NSA is quite good at that), bootloader passwords bypassed, BIOS passwords cleared or worked around... Which in the end means that the best defense against local intrusion is to keep your computer under literal lock and key.

    I have to say though, this is a pretty neat (and nasty) trick.
    I looks like it is similar to the CDs that Sun provided for emergency bypass access to the Solaris boxes back in version 7 and 8... (and maybe the later versions too, just haven't played with those)...

    Thing is... once you have access to a physical console, you own the box... This has been true for all operating systems down through the years...

    Here's an article on putting Kon-Boot ISO onto a USB flash drive. I've not tried it so your on your own if you try it.

    More Kon-Boot info.
    Kon-Boot: Bypass Windows Login Security (and some helpful blocking solutions)

