Re: how can one breach a Win 2k DC using only NetBIOS?



How? Just by asking the server.

Google for the winfingerprint tool that shows you different information
about the server [instead of about the user] that can be enumerated via
Netbios. [Be careful, I can't remember if everything in Winfingerprint is
gotten only through NetBIOS.]

Also, go to www.securityfriday.com to read some information on how user
account enumeration can be done, as well as the getacct tool to test.




"kc" <kc@xxxxxxxxxxxxxxxxxxxxxxxxx> wrote in message
news:1E010BFF-75B4-47A0-B496-73E26C7847F7@xxxxxxxxxxxxxxxx
'How can an intruder using only NetBIOS engage in an enumeration
activity against a Windows 2000 Server that is functioning as a domain
controller'?

Assumptions already made- :

· IP address of the Windows 2000 Advanced Server is
192.168.204.13

·The Windows 2000 Server is not making use of IP-Sec or
Kerberos.

·No service packs have been applied to the Windows 2000
Advanced Server.




.



Relevant Pages

  • SecurityFocus Microsoft Newsletter #154
    ... MICROSOFT VULNERABILITY SUMMARY ... ISS RealSecure Server Sensor SSL Denial Of Service Vulnerabi... ... Roger Wilco Remote Server Side Buffer Overrun Vulnerability ... available for Microsoft Windows operating systems. ...
    (Focus-Microsoft)
  • SecurityFocus Microsoft Newsletter #49
    ... Subject: SecurityFocus Microsoft Newsletter #49 ... Microsoft Windows NNTP Denial of Service Vulnerability ... Microsoft IIS SSI Buffer Overrun Privelege Elevation Vulnerability ... Microsoft ISA Server H.323 Memory Leak Denial of Service... ...
    (Focus-Microsoft)
  • Questions Relating to Administering Windows 2000 Server
    ... installed the network client on the target computer. ... Sarah has been attempting to install Windows 2000 ... Server for two days. ... Sarah has checked the cables and hard drives. ...
    (microsoft.public.cert.exam.mcse)
  • Questions Relating to Administering Windows 2000 Server
    ... installed the network client on the target computer. ... Sarah has been attempting to install Windows 2000 ... Server for two days. ... Sarah has checked the cables and hard drives. ...
    (microsoft.public.cert.exam.mcse)
  • pqv¼Ò¹ÚÇÑ ²Þ@mBGRx
    ... O-009¹Ù¢Ã MS Windows 2000 Datacenter Server -2¸¸¿ø ... Main Application (Borland C++ Builder 6 Enterprise Edition) ... Y-166¢Ã Sex Starved Sluts 1 (Divx) ...
    (FreeBSD-Security)