[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-ID: <1979382312.20031031001147@SECURITY.NNOV.RU>
From: 3APA3A at SECURITY.NNOV.RU (3APA3A)
Subject: W2k users, local admin rights and GPOs
Dear Sergey V. Gordeychik,
There are more ways to stop GPs from applying. For example see
http://www.security.nnov.ru/search/news.asp?binid=1613
--Wednesday, October 29, 2003, 5:48:01 PM, you wrote to security@...m.dyndns.org:
SVG> So, I got an idea.
SVG> Everybody, who can drop pings, or SMB commutations, from his local
SVG> machine to DC can prevent GPO updates!
SVG> User can use IPSec policy (sic!) to do it :-)
SVG> So, Laura right :-)
SVG> And I'm wrong :-(
SVG> _______________________________________________
SVG> Full-Disclosure - We believe in it.
SVG> Charter: http://lists.netsys.com/full-disclosure-charter.html
--
~/ZARAZA
?? ? ? ?????, ??????, ??????? ?????? - ????? ??????
??? ????? ??????? ????????, ?????? ???????. (????)
Powered by blists - more mailing lists