|
Posted by Steven L Umbach on May 4, 2006, 3:02 pm
Please log in for more thread options Thanks Roger. Makes sense. I will check it out. --- Steve
>I believe the intent was simply advisory, that apps like nmap, ethereal
> are now useful as a pre-penetration tool (assuming some credentialled
> login) rather than only post-elevation whence drivers could be loaded.
>
>> And your point is?? If this is considered a risk in your environment
>> implement Software Restriction Policies [XP Pro/W2003] so that only
>> authorized applications can be run. --- Steve
>>
>>
>>> Security applications such as namp and ethereal are appearing that run
>>> straight from a thumb drive and packet capture, detection and injection
>>> tools no longer require the installation of WinPCap or other
>>> third-party packet capture drivers.
>>>
>>> Link:
>>> http://ttcom.blogspot.com/2006/04/list-of-hacking-applications-that-run.html
>>>
>>
>>
>
>
|