Re: how can one breach a Win 2k DC using only NetBIOS?



No one would do that when there are much more attractive alternatives with
TCP/IP, like www.metasploit.org and you cannot disable TCP/IP and still have
the server function.

No service packs = dead duck. Use Metasploit to get local admin access and
then make yourself a domain admin.

Ray

"kc" <kc@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:1E010BFF-75B4-47A0-B496-73E26C7847F7@xxxxxxxxxxxxxxxx
'How can an intruder using only NetBIOS engage in an enumeration
activity against a Windows 2000 Server that is functioning as a domain
controller'?

Assumptions already made- :

· IP address of the Windows 2000 Advanced Server is
192.168.204.13

·The Windows 2000 Server is not making use of IP-Sec or
Kerberos.

·No service packs have been applied to the Windows 2000
Advanced Server.




.



Relevant Pages

  • SecurityFocus Microsoft Newsletter #154
    ... MICROSOFT VULNERABILITY SUMMARY ... ISS RealSecure Server Sensor SSL Denial Of Service Vulnerabi... ... Roger Wilco Remote Server Side Buffer Overrun Vulnerability ... available for Microsoft Windows operating systems. ...
    (Focus-Microsoft)
  • SecurityFocus Microsoft Newsletter #49
    ... Subject: SecurityFocus Microsoft Newsletter #49 ... Microsoft Windows NNTP Denial of Service Vulnerability ... Microsoft IIS SSI Buffer Overrun Privelege Elevation Vulnerability ... Microsoft ISA Server H.323 Memory Leak Denial of Service... ...
    (Focus-Microsoft)
  • ~~~~~~~~~~~~~~~ CANNOT FIND ~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~
    ... cannot find server or dns error ... windows cannot find null ... windows cannot find the network path ... cannot find internet explorer on computer ...
    (comp.protocols.snmp)
  • Questions Relating to Administering Windows 2000 Server
    ... installed the network client on the target computer. ... Sarah has been attempting to install Windows 2000 ... Server for two days. ... Sarah has checked the cables and hard drives. ...
    (microsoft.public.cert.exam.mcse)
  • pqv¼Ò¹ÚÇÑ ²Þ@mBGRx
    ... O-009¹Ù¢Ã MS Windows 2000 Datacenter Server -2¸¸¿ø ... Main Application (Borland C++ Builder 6 Enterprise Edition) ... Y-166¢Ã Sex Starved Sluts 1 (Divx) ...
    (FreeBSD-Security)