Thank you for sharing.

This works on a Lenovo T61.

I was about to give up after trying the method elsewhere on the internet, relating to reading the password from the 24rf08 eeprom chip.
I read the 1024 bytes of eeprom data, but the password at 0x338 was garbage. un-typeable.
It turns out that if the TPM security chip is turned on, you cannot read the password from the eeprom.

Your method of shorting out the SCL and SDA, (pins 5&6) on the 24RF08 chip worked like a charm.

Job done in less than 5 minutes, after faffing about with serial ports and terminal software for hours.

Thank you