Nessus question

From: Sam Pro (spro1_at_uic.edu)
Date: 05/28/03


Date: 27 May 2003 19:30:44 -0700

Okay, I have been put in charge of doing a security audit on our
network because of a recent rash of IRC bots eating up bandwidth. I
have setup a Linux box and ,among a few other tools, installed Nessus.
 I have been doing some preliminary scans over a few test machines.
It is doing a great job of identifying compromised machines, and
showing some holes that need to be covered. However, I am conserned
mostly with NT boxes with blank/weak passwords. Can Nessus do this?
I have tried enabling all the plugins, but it just isn't alerting me
of accounts with blank passwords. I would really like Nessus to
enumerate netBIOS accounts and then use a dictionary attack against
them. Am I going to have to write my own plugin? Maybe something
other then Nessus will work better for this?

Also, does anyone know what minimum conditions need to be present on
the target machine for a hacker to pull account names and then be able
to gain full access through a dictionary/brute attack?

Thanks....



Relevant Pages

  • Nessus
    ... I have been doing some preliminary scans over a few test machines. ... Can Nessus do this? ... of accounts with blank passwords. ... enumerate netBIOS accounts and then use a dictionary attack against ...
    (comp.security.misc)
  • Re: Nessus
    ... > I have been doing some preliminary scans over a few test machines. ... Can Nessus do this? ... > of accounts with blank passwords. ... > the target machine for a hacker to pull account names and then be able ...
    (comp.security.misc)
  • Re: Local Accounts
    ... All 3 users had accounts on all 3 computers. ... Well maybe true but when the client machines were not in a domain we had sofware installed that we did not want to reinstall when on the domain. ... The local admin account can be useful for some system changes, ...
    (microsoft.public.windows.server.sbs)
  • Re: Crypt questions
    ... For the right account it can be decrypted if both accounts have ... If the machines are not both ... If I encrypt the harddrives on ... will a theif be able to decrypt the data? ...
    (microsoft.public.windowsxp.security_admin)
  • Re: Disabling Interactive Logon Against Security Group
    ... Essentially this is to secure half a dozen guest accounts on domain of ... question "disable interactive logon privilages against specific OU/User ... Where I follow least privilege this is a total non-issue, as the machines ... If you set this in a GPO then the list that is to be denied that you ...
    (microsoft.public.security)