Re: More vulnerabilities from Micros~

From: Alun Jones (alun@texis.com)
Date: 02/16/03


From: alun@texis.com (Alun Jones)
Date: Sun, 16 Feb 2003 20:05:37 GMT


In article <eZCa8sU1CHA.360@TK2MSFTNGP11.phx.gbl>, QUAD <nomail@noplace.com>
wrote:
>Hey, want to crack into WinXP, get yourself a win2k cd
>
>http://www.briansbuzz.com/w/030213/

Is this supposed to be news? That you can access the hard drive without using
the operating system if you have physical access to the machine?

Same goes for NTFSDOS, or any other tool that allows you to boot and read NTFS
files [and it's one reason why some like to use EFS on their sensitive files,
or simply lock their servers away in a closed room].

Whoop-de-fricking-doo. If this is the best you can come up with as a major
vulnerability, then perhaps Microsoft's code is very secure. Name me a major
OS (i.e. not a research project - something a company might actually _use_)
that prevents file access when the machine is subject to physical access.

Alun.
~~~~

[Please don't email posters, if a Usenet response is appropriate.]

-- 
Texas Imperial Software   | Try WFTPD, the Windows FTP Server. Find us at
1602 Harvest Moon Place   | http://www.wftpd.com or email alun@texis.com
Cedar Park TX 78613-1419  | VISA/MC accepted.  NT-based sites, be sure to
Fax/Voice +1(512)258-9858 | read details of WFTPD Pro for XP/2000/NT.


Relevant Pages

  • Re: Crashing Unix
    ... overflow, parameter error, running an aliased command while setuid root, etc ... Texas Imperial Software | Try WFTPD, the Windows FTP Server. ... Fax/Voice +1258-9858 | read details of WFTPD Pro for NT. ...
    (comp.security.unix)
  • Re: IP ADDRESS
    ... >much data will be sent once the connection is established. ... Initial Sequence Numbers in many operating systems of the past have been ... Texas Imperial Software | Try WFTPD, the Windows FTP Server. ... Fax/Voice +1258-9858 | read details of WFTPD Pro for NT. ...
    (comp.security.misc)
  • Re: Fixable
    ... >user can get to his windows, which basically means all applications the ... on what you mean by "background user". ... Texas Imperial Software | Try WFTPD, the Windows FTP Server. ... Fax/Voice +1258-9858 | read details of WFTPD Pro for XP/2000/NT. ...
    (comp.security.misc)
  • Re: Privilege-escalation attacks on NT-based Windows are unfixable
    ... >the heap non-executable is like locking the back door. ... Texas Imperial Software | Try WFTPD, the Windows FTP Server. ... Fax/Voice +1258-9858 | read details of WFTPD Pro for XP/2000/NT. ...
    (comp.security.misc)
  • Re: WHAT IS TOP POSTING
    ... As to why this is bad, consider the following, in top-post style: ... >> Doctor. ... Texas Imperial Software | Try WFTPD, the Windows FTP Server. ... Fax/Voice +1258-9858 | read details of WFTPD Pro for XP/2000/NT. ...
    (microsoft.public.security)

Quantcast