The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Exploit devastates WinNT/2K security
Time: 09:26 EST/14:26 GMT | News Source: The Register | Posted By: Robert Stein

An application called SMBRelay, written by cDc's Sir Dystic, exploits a design flaw in the SMB (Server Message Block) protocol on Win NT/2K boxes, easily enabling an attacker to interpose himself between the client and the server.

The program enables access to the server using the client's authentication by acting as a 'man in the middle' to both. For this reason it's quite difficult to defend against, unless a user blocks port 139 -- which is needed for NetBIOS sessions and therefore not practical for networked boxes -- or by using NTLMv2 which employs 128bit encrypted keys and eliminates LANMAN (NT LAN Manager, or NTLM) hashes for NT clients.

Write Comment
Return to News

  Displaying 501 through 501 of 501
Prev | First
  The time now is 2:20:54 PM ET.
Any comment problems? E-mail us
#501 By 4240821 (142.111.246.151) at 4/25/2025 12:08:56 AM
https://telegra.ph/Dodgers-vs-Cubs-The-Curse-of-the-Goat-04-22
https://telegra.ph/Scott-Steiner-Wrestling-Career-Overview-04-21
https://telegra.ph/Secret-Government-Experiment-Gone-Wrong-04-23
https://telegra.ph/Alex-Caruso-Traded-to-Knicks-in-Blockbuster-Deal-04-20
https://telegra.ph/Grizzlies-Triumph-Over-Thunder-in-Epic-Battle-04-20
https://telegra.ph/Chet-Holmgren-The-NBAs-Rising-Unicorn-04-20
https://telegra.ph/Jan-Schakowsky-Progressive-Advocate-for-Change-04-23
https://telegra.ph/Damian-Lillard-Sets-NBA-Three-Point-Record-04-23
https://telegra.ph/Delta-Plane-Fire-at-Orlando-Airport-Inquiry-04-22
https://telegra.ph/Netflix-Confirms-Heartstopper-Movie-Premiere-04-22

Write Comment
Return to News
  Displaying 501 through 501 of 501
Prev | First
  The time now is 2:20:54 PM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *