Totpark (Was New "worst nightmare" for network admins)
- From: chilly8@xxxxxxxxxxx
- Date: 21 Sep 2006 16:51:54 -0700
X-No-Archive: Yes
Sebastian Gottschalk wrote:
chilly8@xxxxxxxxxxx wrote:
You have been here before spouting the same tripe. Any network admin can
spot an unusual stream of encrypted data flowing to and from a workstation.
Depending on the environment, that can be an instant tip off that the user
is up to no good. An admin can also use tools to see what applications are
running on a workstation. Again, anything that looks out of the ordinary is
a red flag.
And you keep forgetting the admins ability to remotely view the screen of
any workstation, and the keystroke logging programs used by many companies
to give them hard copies of the legal backing for firing someone.
And there are programs on the market that can hunt down and destroy
these things. here are a number of anti-spyware programs that can hunt
down and destroy any keyloggers, application monitors, screen monitors,
etc, etc, placed on your machine.
And why should a user be able to execute such applications in first place?
Just remove exec rights globally (trivial on security-enhanced Linux,
trivial on Windows XP with Software Restriction policies, trivial with
certain third-party security solutions for Windows 2000 and NT4), and only
allow execution of all relevant applications.
And why should a user be granted with administrative privileges that are
required to shut down privileged daemons or to run such programs which
simply require administrative privileges to shut down privileged daemons?
All a big non-issue.\
However, there is a new browser that some hacker have released
called TorPark, which does not have to be installed on any machine. You
can carry it on one of these USB drives that fit on your keychain, and
plug that into any USB port and run the
executable. TorPark conneccts to the Tor network without having to
download and install the Tor software. It comes pre-configured to surf
via the Tor network. Its desinged to run in "restricted" enfiroments
where one does not have priveleges to install the Tor software. Whoever
came out with that browser will be the network admins WORST NIGHTMARE
COME TO LIFE.
.
- Follow-Ups:
- Re: Totpark (Was New "worst nightmare" for network admins)
- From: DevilsPGD
- Re: Totpark (Was New "worst nightmare" for network admins)
- References:
- New "worst nightmare" for network admins
- From: Chilly8
- Re: New "worst nightmare" for network admins
- From: chilly8
- New "worst nightmare" for network admins
- Prev by Date: NAting and Port forwarding
- Next by Date: Re: Difference between the older NetScreen-5XP an the current -5XT
- Previous by thread: Re: New "worst nightmare" for network admins
- Next by thread: Re: Totpark (Was New "worst nightmare" for network admins)
- Index(es):
Relevant Pages
|