AOA AOA AOA Folding For Team 45 AOA Files Home Front Page Become an AOA Subscriber! UserCP Calendar Memberlist FAQ Search Forum Home


Go Back   AOA > Software > Data Security

Data Security Viruses, Firewalls and Safe computing

Reply
 
LinkBack Thread Tools Rate Thread
  #1 (permalink)  
Old 16th November, 2007, 11:26 AM
Daniel ~'s Avatar
Chief BBS Administrator
 
Join Date: September 2001
Location: Seattle Wa.
Posts: 40,427

Microsoft exec calls XP hack 'frightening'

Written by Daniel
Friday, 16 November 2007
Microsoft exec calls XP hack 'frightening'
By Tom Espiner
Special to CNET News.com
Published: November 13, 2007, 6:56 AM PST


A Microsoft executive calls the ease with which two British e-crime specialists managed to hack into a Windows XP computer as both "enlightening and frightening." ..... Front Page
__________________
"Though all men live in ignorance before mystery,
they need not live in darkness...
Justice is foundation and ETERNAL
."
DKE

"All that we do is touched by Ocean
Yet we remain on the shore of what we know."
Richard Wilbur


Subscribers! Ask Pitch about a Custom Sig Graphic

Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #2 (permalink)  
Old 16th November, 2007, 11:45 AM
Áedán's Avatar
Chief Systems Administrator
 
Join Date: September 2001
Location: Europe
Posts: 12,248

My intepretation of what occured: SOCA connected to a wireless network, fished around for other machines using a copy of "ping". (ARP scanner would have been faster though). They used a copy of Nessus and ran that against the machine. They then proceeded to use a copy of Metasploit to exploit one of the many holes there are in an unpatched Windows XP system. That provided a nice shell for them (VNC's another option too), and they used TFTP to download code to the machine. That and they did it in six minutes.

That's fairly slow, but it was for demonstration purposes. I'm not sure why the MS exec called it "frightening" - none of this is news.
__________________
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #3 (permalink)  
Old 16th November, 2007, 11:52 AM
danrok's Avatar
AOA Front Page Managing Editor in Chief
 
Join Date: March 2003
Location: Great Britain
Posts: 16,702

Sounds like, they're trying to scare people in to buying Vista.
__________________
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #4 (permalink)  
Old 16th November, 2007, 11:53 AM
Member
 
Join Date: April 2005
Location: AZ
Posts: 2,171

If you actually use XP in that configuration you should be hacked and have your surfing privileges revoked.
__________________
Biostar TForce X58 - Core i7 920 - 6GB Corsair Dominator DDR3 - XFX 9800GTX 512MB - PCP&C 750W - 1 X 36GB Raptor, 1 X 200GB Sata2, 3 X 320GB Sata2 - Dual boot, Gentoo Linux/WinXP

Last edited by ccperf721p; 16th November, 2007 at 11:54 AM.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #5 (permalink)  
Old 16th November, 2007, 12:09 PM
dsio's Avatar
Possum Hater
 
Join Date: October 2002
Location: Brisbane, QLD, Australia
Posts: 7,701

Quote:
Originally Posted by Áedán View Post
My intepretation of what occured: SOCA connected to a wireless network, fished around for other machines using a copy of "ping". (ARP scanner would have been faster though). They used a copy of Nessus and ran that against the machine. They then proceeded to use a copy of Metasploit to exploit one of the many holes there are in an unpatched Windows XP system. That provided a nice shell for them (VNC's another option too), and they used TFTP to download code to the machine. That and they did it in six minutes.

That's fairly slow, but it was for demonstration purposes. I'm not sure why the MS exec called it "frightening" - none of this is news.
Do you time yourself?
__________________
Notebook: Dell XPS M1330 Running Fedora 11 Linux (Leonidas)
Desktop: ASUS Rampage Formula X48
Intel Core 2 Quad Q9450 (Yorkfield) @ 3.51Ghz
4GB DDR2-800 PNY
Albatron 8800GT 512MB
Corsair HX-620 PSU
Running Fedora 11 Linux (Leonidas)
Dual Dell 2407WFP


Drivers, Games, Demos, Mods and Overclocking Tools At AOAFiles
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #6 (permalink)  
Old 16th November, 2007, 12:10 PM
Daniel ~'s Avatar
Chief BBS Administrator
 
Join Date: September 2001
Location: Seattle Wa.
Posts: 40,427

Quote:
Originally Posted by Áedán View Post
My intepretation of what occured: SOCA connected to a wireless network, fished around for other machines using a copy of "ping". (ARP scanner would have been faster though). They used a copy of Nessus and ran that against the machine. They then proceeded to use a copy of Metasploit to exploit one of the many holes there are in an unpatched Windows XP system. That provided a nice shell for them (VNC's another option too), and they used TFTP to download code to the machine. That and they did it in six minutes.

That's fairly slow, but it was for demonstration purposes. I'm not sure why the MS exec called it "frightening" - none of this is news.
My guess? They say that so that we will feel they share in the anguish they've created for us to enjoy...That they as well as we are the victims here....rather than the real perps... Just a guess.":O}
__________________
"Though all men live in ignorance before mystery,
they need not live in darkness...
Justice is foundation and ETERNAL
."
DKE

"All that we do is touched by Ocean
Yet we remain on the shore of what we know."
Richard Wilbur


Subscribers! Ask Pitch about a Custom Sig Graphic

Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #7 (permalink)  
Old 16th November, 2007, 12:26 PM
Gizmo's Avatar
Chief BBS Administrator
BassTeroids Champion, Global Player Champion, Aim & Fire Champion, Puzzle Maniax Champion, Othello Champion, Canyon Glider Champion, UFO Shoot Out Champion, Unicycle Challenge Champion, Zed Champion
 
Join Date: May 2003
Location: Webb City, Mo
Posts: 14,946
Send a message via ICQ to Gizmo Send a message via AIM to Gizmo Send a message via MSN to Gizmo Send a message via Yahoo to Gizmo Send a message via Skype™ to Gizmo

Quote:
Originally Posted by Daniel ~ View Post
My guess? They say that so that we will feel they share in the anguish they've created for us to enjoy...That they as well as we are the victims here....rather than the real perps... Just a guess.":O}
Gee, sounds just like a politician!
__________________
Avatar and sig graphic by Pitch. Subscribers!
Ask about a custom graphic or avatar today!
 
Later,
Gizmo
Thermal Diode Mod and Direct-Die Water Block
8-Cheetah 18GiB U-2 SCSI
MegaRAID Enterprise 1500/128MiB
Samsung SyncMaster 955DF
TTGI/Superflower TTS-520 PSU
 

 
AOA Team filesAOA Team wcgAOA Team fah
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #8 (permalink)  
Old 16th November, 2007, 02:53 PM
cloasters's Avatar
Asst. BBS Administrator
 
Join Date: September 2001
Location: Location, Location
Posts: 16,113

Quote:
Originally Posted by danrok View Post
Sounds like, they're trying to scare people in to buying Vista.

That wouldn't surprise me at all.
__________________
When the world was better.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply



Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
Microsoft Confirms Effectiveness of Windows Vista OEM Hack danrok OS, Software, Firmware, and BIOS 1 16th April, 2007 07:39 AM
Senior Samsung exec pleads guilty to price fixing Gizmo Random Nonsense! 7 30th December, 2006 12:57 PM
Microsoft Decries Vista PatchGuard Hack Gizmo Data Security 4 26th October, 2006 05:12 PM
POSIX calls in Linux Kaitain Programming and Assembly Language 6 17th November, 2004 07:34 PM
Been making some phone calls... danrok Mookydooky's Just for laughs! 5 24th October, 2004 12:10 PM


All times are GMT -5. The time now is 11:20 PM.


Copyright ©2001 - 2009, AOA Forums

Search Engine Friendly URLs by vBSEO 3.3.0