RE: Hacked NT/2K box

From: Ashwin Sharma (ashwins@webcentral.com)
Date: 07/24/01


Message-ID: <415DD4BF903BD311A3D900A0C99F902208F13159@bnc.webcentral.com.au>
From: Ashwin Sharma <ashwins@webcentral.com>
To: 'H C' <keydet89@yahoo.com>, lynch00@msn.com, focus-ms@securityfocus.com
Subject: RE: Hacked NT/2K box
Date: Tue, 24 Jul 2001 09:39:04 +1000


 
>
> > Essentially, you are correct in saying that you
> > cannot establish a
> > remote console session. But you can with trojan
> > programs. Well, NT
> > has this capability built-in, but there isn't a way
> > to exploit it
> > unless you have Terminal Services installed and
> > running.

Only NT server, Terminal Server Addition, has this capability or win2k
servers. But netmeeting will do just as well for remote console access??

> > Also, with XP being released, there would be no
> > reason to say that a
> > hacker wouldn't be able to use an XP box for DDoS
> > attacks. Because,
> > XP will have RAW Sockets, instead of the
> > conventional NT-based W32
> > Sockets.

yes but once you have rooted a box - you don't really care whether it has
raw sockets support or not - because you can install any program on the box
to do anything. The focus should be on preventing anyone rooting the box
in the first place??



Relevant Pages

  • C# Raw Sockets
    ... I am to move an existing socket application to use raw sockets. ... my application is essentially a port forwarder. ... connection, it will open a connection to an "internal" server and simply ...
    (microsoft.public.dotnet.languages.csharp)
  • Re: Using raw sockets to forward data
    ... Only issue with using the CreateIpForwardEntry, is that I am actually forwarding to two different locations (from data incoming over ... From the first packet received, I can determine which service the connection was intended for, and then I forward ... the rest of that data to the appropriate server. ... > but be aware that on XP from SP2 impossible to send data using raw sockets ...
    (microsoft.public.win32.programmer.networks)
  • Re: [opensuse] How upgrade from 10.1 to 10.3 with only ssh available? Resolved
    ... After reboot the linuxrc complained "No Repository Found" ... and the server was not remotely reachable anymore. ... With the 'remote console' i could see this error and try to convince linuxrc ... i have a root server hosted somewhere, ...
    (SuSE)
  • Re: Using raw sockets to forward data
    ... but be aware that on XP from SP2 impossible to send data using raw sockets ... app sends that to the server; ... > my app sends that to the client). ...
    (microsoft.public.win32.programmer.networks)
  • Changing the IP Address on a Solaris 10 Server
    ... US IS Unix Server Services ... SUN SOLARIS Administrators: ... I've been assigned the task of moving two SUN ... to plug in all the new IP Addresses for the Remote Console. ...
    (SunManagers)