

It’s extremely quick in that it scans /24’s in less than a minute and class B’s in about an hour. Today, we are releasing a new tools called the Dell Drac and Chassis Scanner for Default Credentials v0.1a which will scan CIDR notations look for default installations. When the DRAC interface is installed, it installs with default credentials of username “root” and password of “calvin”. During a penetration test, the Dell DRAC installations (web interface) can lead to an entire compromise of the overall infrastructure and ultimately own everything else. Each blade has its own web interface that gets installed by default on 443 (HTTPS).

When a new Dell Chassis hardware infrastructure is installed, a web interface is also present to help with management of the Chassis. By David Kennedy in Penetration Testing, Security Testing & Analysis
