USB delivered attacks
From: Jerry Shenk (jshenk_at_decommunications.com)
Date: 05/28/04
- Previous message: Al Smolkin: "RE: Wireless wep crackin on windows"
- In reply to: Alfred Huger: "List Closure From May 28 - May 30"
- Next in thread: Yonatan Bokovza: "RE: USB delivered attacks"
- Maybe reply: Yonatan Bokovza: "RE: USB delivered attacks"
- Reply: Gadi Evron: "Re: USB delivered attacks"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
To: <pen-test@securityfocus.com> Date: Thu, 27 May 2004 22:06:00 -0400
I recently inserted some guy's USB drive into a machine and was a but
surprised when it went into an auto-run sequence. I think turning off
auto-run is a REALLY good idea. On a USB drive, it seems like it could
be really dangerous. Has anybody messed with this?
One possible scenario:
- Have a USB drive with a few tools on it.
- Have an auto-run configured to run pwdump and dump the SAM to the USB
drive
It seems that this attack would work with a machine that was locked from
the console. Does 'autorun' still work under a locked screen? With
this USB drive being writeable, it would seem that some scripted attack
to extract information from a machine could be amazingly fruitful....the
possibilities are almost endless.
- Previous message: Al Smolkin: "RE: Wireless wep crackin on windows"
- In reply to: Alfred Huger: "List Closure From May 28 - May 30"
- Next in thread: Yonatan Bokovza: "RE: USB delivered attacks"
- Maybe reply: Yonatan Bokovza: "RE: USB delivered attacks"
- Reply: Gadi Evron: "Re: USB delivered attacks"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]