Re: Using Null Session information from NAT.EXE

From: Bikar Dude (bika@nuclear.biodome.org)
Date: 10/31/01


Date: Tue, 30 Oct 2001 20:03:03 -0500 (EST)
From: Bikar Dude <bika@nuclear.biodome.org>
To: <pen-test@securityfocus.com>
Subject: Re: Using Null Session information from NAT.EXE
Message-ID: <Pine.LNX.4.33.0110302001480.2446-100000@nuclear.biodome.org>

Compile a modified smbclient with gcc/cygwin on win32. smbclient will
use it's own stack - this usually fixes a lot of problems with the "net
use" approach with respect to confused user context, existing sessions
to a system and LM authentication levels.

Another fun thing to do with smbclient: Read MS00-072. Laugh. Write
your own exploit.

-b

----------------------------------------------------------------------------
This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
Service. For more information on SecurityFocus' SIA service which
automatically alerts you to the latest security vulnerabilities please see:
https://alerts.securityfocus.com/



Relevant Pages

  • Re: Using Null Session information from NAT.EXE
    ... Using Null Session information from NAT.EXE ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • Re: Using Null Session information from NAT.EXE
    ... Using Null Session information from NAT.EXE ... NAT is cleaning up it's connections so you don't ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • RE: Using Null Session information from NAT.EXE
    ... Using Null Session information from NAT.EXE ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ... This list is provided by the SecurityFocus Security Intelligence Alert ...
    (Pen-Test)
  • Re: Using Null Session information from NAT.EXE
    ... Using Null Session information from NAT.EXE ... > This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ... This list is provided by the SecurityFocus Security Intelligence Alert ...
    (Pen-Test)
  • Using Null Session information from NAT.EXE
    ... Using Null Session information from NAT.EXE ... Running NAT.EXE on a machine my local network gives me the following results ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)