Re: The way to hack ?

From: Mariusz Pekala (skoot@poczta.onet.pl)
Date: 08/15/02


From: Mariusz Pekala <skoot@poczta.onet.pl>
To: <security-basics@securityfocus.com>
Date:	Thu, 15 Aug 2002 03:28:14 +0200


> The second part of my question was :
>
> Am I completely safe (i.e nobody can penetrate my lan) if my firewall (that
> is not buggy) forbid any incomming connections and allow only outgoing HTTP
> connections ?
>
> Here the answer I was expected was : No your are no safe because Tcp
> Highjaking can enable... or somethink like that.

No you are not safe because... You may download a trojan horse by HTTP and
this trojan may open connections to HTTP ports on cracker's machine,
bypassing your firewall's rules.
...and a few more possibilities.

You are never safe. :-)



Relevant Pages

  • Re: Printer/Scanner FTP Firewall alerts
    ... so seeking help from norton or the printer vendor would be best. ... my Norton Personal Firewall alerts me that MS Internter ... Am I safe in telling it to "accept all connections on any port?" ...
    (microsoft.public.inetserver.iis.ftp)
  • Re: trojan horse (new)?
    ... I recommend that you restart into safe mode. ... this Trojan Horse. ... Microsoft MVP - Windows Security ... > it was detected by nortan but cant be repaired or deleted, ...
    (microsoft.public.security.virus)
  • Re: netstat makes a Firewall redundant?
    ... calls from people running laptops with modems that though they were safe ... A modem doesn't look any different than any other connection to the ... internet, it's just slower, and people target slower connections less ...
    (comp.security.misc)
  • Re: netstat makes a Firewall redundant?
    ... calls from people running laptops with modems that though they were safe ... A modem doesn't look any different than any other connection to the ... internet, it's just slower, and people target slower connections less ...
    (comp.security.firewalls)
  • Re: i have a virus on a windows pre fetch file! please help :)
    ... my computer has detected a trojan horse and it appears that is on a ... > 'windows pre fetch file'. ... but usually pre-fetch files are safe to delete ...
    (microsoft.public.windowsxp.general)