Re: Protection from Hackers

From: Dennis Houchin (Dennis@_NOSPAM_adhocis.com)
Date: 11/29/02


From: "Dennis Houchin" <Dennis@_NOSPAM_adhocis.com>
Date: Fri, 29 Nov 2002 12:33:29 -0800

Hi Carl,

In order to successfully accomplish this, the 'attacker' has to have
physical access to the system. You protect against this sort of attack by
denying physical access. Lock the server, Lock the server room, use logs
and other measures to monitor and control access to the room.

The bottom line is that once your attacker has physical access, any other
protection measures are essentially nullified.

Dennis Houchin

In news:#XBtFt9lCHA.1324@tkmsftngp04,
Carl Hilton <noone@nospam.com> typed:
> I saw a demo of a bootable floppy that launched into LINUX then the
> user was able to reset the Administrator Password on the NT boot
> drive. Now I know that one aspect of NT security is to rename the
> Administrator account, but this program showed ALL accounts and you
> could select which to change.... How can we protect ourselves from
> this type of breach?
>
> Carl



Relevant Pages

  • Re: Root boot/mount Password?
    ... I would like to put a password when booting/mounting mi Freebsd box. ... You cannot protect the machine if an attacker has physical access. ...
    (freebsd-questions)
  • Re: How good an encryption algorithm is this?
    ... > find out his colleague's SQL server password by running the "crack ... protect against this attack. ... One of the benefits it offers is that an attacker would ... to run this 'crack program' while logged in under her colleague's user ...
    (microsoft.public.dotnet.languages.csharp)
  • Re: How good an encryption algorithm is this?
    ... > find out his colleague's SQL server password by running the "crack ... protect against this attack. ... One of the benefits it offers is that an attacker would ... to run this 'crack program' while logged in under her colleague's user ...
    (microsoft.public.vc.language)
  • RE: Password "security" - was"Passwords with Lan Manager (LM) under Windows" and
    ... > protect the cache entries stored on the laptops. ... Without the SYSKEY ... > that booting with another OS would not give the attacker access to the ... files encrypted on NTFS partitions created in Windows 2000, ...
    (Pen-Test)
  • Re: boot -s - can i detect intruder
    ... I know that if someone have physical access to my servers can penetrade into ... > attacker is at all sophisticated, but if the attacker is really clueless, ... the user could select a shell of his own. ...
    (FreeBSD-Security)