Re: RE: Scripted Software removal (Encrypting Credentials)

ajb_at_blyler.cc
Date: 06/13/05

  • Next message: Kern, Tom: "RE: DHCP database"
    Date: 13 Jun 2005 20:24:37 -0000
    To: focus-ms@securityfocus.com
    
    
    ('binary' encoding is not supported, stored as-is) You can also use the Windows API [0] to create a process with a different set of credentials. There are some good examples [1] out there on how to do this.

    Since the application would be written in a compiled language someone would have to disassemble it in order to obtain the credentials.

    - Andy

    [0] http://msdn.microsoft.com/library/default.asp?url=/library/en-us/dllproc/base/createprocessasuser.asp
    [1] http://www.andreavb.com/forum/viewtopic_4543.html

    ---------------------------------------------------------------------------
    ---------------------------------------------------------------------------


  • Next message: Kern, Tom: "RE: DHCP database"

    Relevant Pages

    • RE: [Full-disclosure] Phishing attack. Basic encoding
      ... > characters that instruct the mail program to display the characters in ... > website for phishing credentials. ... it uses a google redirector and a encoding scheme in order to slip past ...
      (Full-Disclosure)
    • Hiding links based on access privilege
      ... view, they can press the link to it, and the site asks for their login ... credentials. ... Andy ... Prev by Date: ...
      (microsoft.public.sharepoint.portalserver)
    • Re: RRAS Interface keeps failing
      ... Ill try but its failing on the credentials stored not the dialling bit. ... >> enabled and configured to act as a VPN server, ... >> Andy C ...
      (microsoft.public.backoffice.smallbiz2000)
    • Re: The great Paul Thomas
      ... Yes Andy, I make spelling errors. ... to demand the credentials of all statesman that claim to be facts" ...
      (misc.taxes)