[Bounty] First person to share how to break into DSM 7.2 Encryption keys (stored on box) gets a DS923+

As per Will’s suggestion, it’s also possible to - instead of creating a reverse shell - reset the admin password or to create a new admin user. If your admin user is named “admin” then you could f.e replace the cronjob shell command with:

 /usr/syno/sbin/synouser --setpw admin 1

To set the password of the user admin to 1.

1 Like