RE: WINNT security priviledge escalation attack

From: Corey Snow (Corey.Snow@us.logical.com)
Date: 10/30/02


Date: Wed, 30 Oct 2002 11:18:17 -0600
From: "Corey Snow" <Corey.Snow@us.logical.com>
To: <focus-ms@securityfocus.com>


> -----Original Message-----
> From: Jason Lopes [mailto:Jason@rga.com]
> Sent: Tuesday, October 29, 2002 8:59 AM
> To: focus-ms@securityfocus.com
> Subject: RE: WINNT security priviledge escalation attack
>
>
> I believe that if you format the drive during OS installation
> the default
> is:
>
> Quote --
> WINNT is writeable by Power Users and
> Administrators, while normal users have only read and execute
> access. Similarly, on a Win2K server I just checked out,
> Server Operators and Administrators have write access, but
> again normal users can only read and execute.
> End Quote --
>
> but if you install the OS as a fat partition and convert it I
> believe Everyone gets full control across the board.
>

Installing Win2K or WinNT on a FAT partition is just a Bad Idea(tm) if
you want your system to be secure. This isn't the only issue that
converting from FAT or having FAT partitions on your system creates.

Bottom line is for a secure Windows server or workstation, FAT is right
out. The operating system can't protect resources properly on a FAT
partition.

Regards,

Corey Snow



Relevant Pages

  • Re: Install W2KPro
    ... Run WINNT from the i386-folder on your CD. ... installation will take forever. ... I can boot from the Win98 Start-up ... >W2K Pro on a recent MSDN CD. ...
    (microsoft.public.win2000.setup)
  • what is winnt /r?
    ... Question 1: Typing winnt /? ... in the installation disk). ... It says /r is for creating an "optional folder". ... it designed for installation, like those for WinNT4? ...
    (microsoft.public.win2000.setup)
  • Re: From Win NT to Win XP
    ... You did a new installation, not an upgrade. ... open Windows Explorer and delete the system folders for the ... I though you said WinNT? ...
    (microsoft.public.windowsxp.newusers)
  • Re: lost admin passwords
    ... from it and then copy the I386 folder from the Windows XP installation disk ... to his hard drive and install it using the winnt command on the laptop. ... Boot from the receiving station and reformat. ...
    (microsoft.public.windowsxp.security_admin)
  • Re: Rebuilding a Dell PC (Laptop)
    ... The FAT partition contains hardware diagnostics, ... > Recently I rebuilt/reinstalled my Windows XP Operating system on my Dell ... > either during or after the installation for authentication. ...
    (alt.sys.pc-clone.dell)