RE: Windows 2003 Server - MS Rulez?

From: Kelly Fuller (kelly_at_ccgsecurity.com)
Date: 05/23/03

  • Next message: Steve: "Re: Windows 2003 Server - MS Rulez?"
    Date: Fri, 23 May 2003 16:02:23 -0400
    To: "Street" <streetseeker@mail.ru>, <focus-ms@securityfocus.com>
    
    

    The hash (most commonly MD5 or SHA) is known as a one-way algorithm and
    is very difficult to reverse. I would think this method is rather secure
    in that respect.

    Kelly B. Fuller
    Network Security Engineer
    Continental Consulting Group
     
     

    -----Original Message-----
    From: Street [mailto:streetseeker@mail.ru]
    Sent: Friday, May 23, 2003 6:02 PM
    To: focus-ms@securityfocus.com
    Subject: Windows 2003 Server - MS Rulez?

    Hello list. Today I have attended to official presentation of Microsoft
    Windows 2003 Server. And the representatives of Microsoft gave to my
    organisation an evaluation version of 2003 Server. That thing looks very
    secure, i.e. known methods of attack did not gave a damn thing. Also I
    learned an interesting feature - prohibition of launch of any program is
    not made by its exe name - it makes a hash from the body of program and
    politics are applied using this hash. I wonder whether this method is
    secure and if there are any ways to defeat it.

    Any thoughts? Thank you in advance.

    -- 
    Best regards,
     Street                          mailto:streetseeker@mail.ru
    ------------------------------------------------------------------------
    -----
    *** Wireless LAN Policies for Security & Management - NEW White Paper
    *** Just like wired networks, wireless LANs require network security
    policies that are enforced to protect WLANs from known vulnerabilities
    and threats. 
    Learn to design, implement and enforce WLAN security policies to
    lockdown enterprise WLANs.
    To get your FREE white paper visit us at: 
    http://www.securityfocus.com/AirDefense-focus-ms
    ------------------------------------------------------------------------
    ------
    -----------------------------------------------------------------------------
    *** Wireless LAN Policies for Security & Management - NEW White Paper ***
    Just like wired networks, wireless LANs require network security policies
    that are enforced to protect WLANs from known vulnerabilities and threats. 
    Learn to design, implement and enforce WLAN security policies to lockdown enterprise WLANs.
    To get your FREE white paper visit us at: 
    http://www.securityfocus.com/AirDefense-focus-ms
    ------------------------------------------------------------------------------
    

  • Next message: Steve: "Re: Windows 2003 Server - MS Rulez?"

    Relevant Pages

    • Re: Pen test courses
      ... Taliskers Network Security Tools ... wireless LANs require network security policies ... > that are enforced to protect WLANs from known vulnerabilities and threats. ... implement and enforce WLAN security policies to lockdown enterprise WLANs. ...
      (Pen-Test)
    • Re: Owl Intranet Engine - bypass admin
      ... Which version of Owl are you referring to? ... wireless LANs require network security policies ... > that are enforced to protect WLANs from known vulnerabilities and threats. ...
      (Pen-Test)
    • USB/PCMCIA 802.11b card to use with airsnort/wepcrack, etc?
      ... At work part of my responsibility is network security. ... WLANs on our network, and I've been tasked with seeing if they're ... secure. ... In any case, I need an 802.11b or 802.11g device, preferably USB but can ...
      (RedHat)
    • RE: A question for the list...
      ... >> evolution of the network ... implement and enforce WLAN security policies ... >> enterprise WLANs. ... implement and enforce WLAN security policies to ...
      (Incidents)
    • Re: [ANNOUNCE] protocol watcher
      ... attack, which is known to be a SYN attack! ... wireless LANs require network security policies ... > that are enforced to protect WLANs from known vulnerabilities and threats. ... implement and enforce WLAN security policies to lockdown enterprise WLANs. ...
      (Incidents)