Re: [Full-disclosure] Re: It's not that simple...

From: Florian Weimer (fw_at_deneb.enyo.de)
Date: 08/18/05

  • Next message: Jean-Baptiste Marchand: "NULL sessions on Windows 2000 systems [Was: Re: [Full-disclosure] Re: It's not that simple...]"
    To: jasonc@science.org
    Date: Thu, 18 Aug 2005 07:14:16 +0200
    
    

    * Jason Coombs:

    > Kurt Seifried wrote:
    >> Actually it really is that simple. Disabling Null sessions is
    >> entirely possible, quite easy, and doesn't break a lot (at least in
    >> my previous
    >
    > Then why doesn't Microsoft provide these instructions in the workarounds
    > section of the vulnerability announcement?

    Attacks using proper accounts are still possible, AFAIK. These days,
    it's hard to explain such fine points in advisories because all the
    useful details have been eliminated and vendors fear to give away too
    much information. In the present case, it didn't help to delay the
    exploit, of course.

    > I'm supposed to do Microsoft's job for them? No way.

    Well, it's your computers that are potentially compromised, not
    theirs.
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.grok.org.uk/full-disclosure-charter.html
    Hosted and sponsored by Secunia - http://secunia.com/


  • Next message: Jean-Baptiste Marchand: "NULL sessions on Windows 2000 systems [Was: Re: [Full-disclosure] Re: It's not that simple...]"

    Relevant Pages

    • Re: eventid 1164
      ... Before i disabled the Information Store scan the number of sessions had ... disabling the scan) and it remained at the same number all day and its ... I have bit the bullet and given Sophos a call..... ... Sessions and Sophos/Pure Message. ...
      (microsoft.public.exchange.admin)
    • Re: Linux and Windows - Do I need more than Samba ?
      ... you can use nautilus (gnome) ... Nautilus is *NOT* your friend. ... background all the time in most Gnome based X sessions, ... Disabling it means ...
      (comp.protocols.smb)
    • Re: [Full-disclosure] Re: Its not that simple...
      ... Disabling Null Sessions is recommended security practice. ... Hosted and sponsored by Secunia - http://secunia.com/ ...
      (Full-Disclosure)
    • Re: Problem with sessions
      ... > I'm finishing up a site I built. ... It uses sessions for a simple login ... Try disabling this value: ...
      (alt.php)