Re: ZoneAlarm backdoor / GRC.com?

From: C.S Hithe (just@chickensh1t.com)
Date: 09/23/02


From: C.S Hithe <just@chickensh1t.com>
Date: Mon, 23 Sep 2002 20:19:49 +0000 (UTC)

On 23 Sep 2002 03:30:20 GMT, Maxx Pollare <spamail@dragonfur.ca> wrote:

>"C.S Hithe" wrote
<SNIP>
>> Some months later, an exploit was discovered for ZoneAlarm where the
>> hacker could identify all open ports on a system with ZoneAlarm
>> installed, by pinging a certain port.

 Maxx Pollare <spamail@dragonfur.ca> wrote:
>As for the scan of all ports of a host at once, that tech is
>NanoProbes (http://grc.com/np/np.htm), it's what he uses in his new
>and much faster Shields-Up scanner. This technology will never be
>sold or distributed.
<SNIP>

So doesn't that suggest some form of complicity then, between those two?
If 'NanoProbes' was around before, and the statements are "i've recently found a way to scan all
open ports at once", and "i recommend Zonealarm", doesn't it suggest complicity, and an accidental,
boastful slip re: the new hacking skills?

Im sure ZA has fixed it in more recent versions. I wouldnt actually know.

again, im just here for the free flow of information. i have no vendetta or bias.



Relevant Pages

  • Pinging in XP
    ... The site is behind a fire wall (Zonealarm). ... pinging operation so that it would seek one of the open ports and register? ... Steve Kimball ...
    (microsoft.public.windowsxp.general)
  • Re: Closing Open Ports
    ... "timmi" wrote in message ... > Here are the open ports: ... It's been quite a while since I looked at ZoneAlarm, so I don't know how to ... (i.e. OutlookExpress will need to make a connection in order for you to read ...
    (alt.computer.security)
  • Re: AS 2005 browse cube problem
    ... I solved the problem by shutting down the firewall (I ... use ZoneAlarm too)! ... I suppose that you have already tried to open ports 1433-1437, ...
    (microsoft.public.sqlserver.olap)