lock down personal Win XP workstation



Hi colleague,

Sometimes I am forced to use Windows XP. I only run a Usenet, web,
IRC, mail, ssh client and music player. I regularly check for security
fixes.

To lock down my workstation I enable "Windows Firewall" to block all
traffic expect the applications mentioned above. I enabled "Automatic
Updates". Additionally I use "Security Configuration and Analysis" MMC
console and apply the predefined security template called hisecws.inf.
I don't use a virus scanner because I am not a license owner.

How secure is this setup? Are there ways an attacker can break my
system? Where are vulnerabilities? How would you break my system?

Nico

---------------------------------------------------------------------------
This list is sponsored by: Norwich University

EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The NSA has designated Norwich University a center of Academic Excellence in Information Security. Our program offers unparalleled Infosec management education and the case study affords you unmatched consulting experience. Using interactive e-Learning technology, you can earn this esteemed degree, without disrupting your career or home life.

http://www.msia.norwich.edu/secfocus
---------------------------------------------------------------------------



Relevant Pages

  • Re: lock down personal Win XP workstation
    ... Description of the Guidance for Securing Microsoft Windows XP Systems ... > console and apply the predefined security template called hisecws.inf. ... > EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE ... > The NSA has designated Norwich University a center of Academic ...
    (Security-Basics)
  • RE: A degree in MSIA - the various programs
    ... I am a 2005 graduate of the Norwich University Information Assurance ... Norwich is the well-known Information Security Specialist, ...
    (Security-Basics)
  • [NT] Cumulative Security Update for Internet Explorer (MS04-025)
    ... Get your security news from a reliable source. ... * Microsoft Windows NT Workstation 4.0 Service Pack 6a ... Navigation Method Cross-Domain Vulnerability ...
    (Securiteam)
  • How to get into Penetration testing?
    ... I think it is very good for a pen tester to have programming ... security company's position. ... EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE ... The NSA has designated Norwich University a center of Academic Excellence ...
    (Security-Basics)
  • RE: Please help: spyware in my machine...
    ... 1)Did you try remove these in windows security mode? ... Sent from the Security Basics mailing list archive at Nabble.com. ... EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE ... The NSA has designated Norwich University a center of Academic Excellence ...
    (Security-Basics)