Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | RE: Windows wireless flaw... |
|---|---|
| Date: | Tue, 17 Jan 2006 09:25:36 +1000 |
Thanks Harlan--I feel slightly chastised by your post ;-) But still, I wondered what would happen if those steps weren't in place--ie users who have the ability to turn off their firewalls/connect to non-infrastructure networks. I'm wondering if there is a deeper way to solve this--obviously turning off the zero config is a start. Regards Murad Talukdar -----Original Message----- From: Harlan Carvey [mailto:keydet89@yahoo.com] Sent: Tuesday, January 17, 2006 1:55 AM To: Murad Talukdar; focus-ms@securityfocus.com Subject: Re: Windows wireless flaw... Murad,
Has anyone tested this out? If so, what are you thinking about doing to prevent it?
RTFB (ie, "Read The Fun Blog"), my friend: "Anyway, you might be wondering now how you can make sure your Windows laptop is protected from this.....er, feature. First of all, if you are running any kind of network firewall -- including the firewall that comes built in to Windows XP -- you won't have to worry about some stranger connecting to your laptop. In fact, I had to shut down my firewall for both of us to successfully conduct our test." ...and... "Another good idea is to change the setting on the computer's wireless card to connect only to "infrastructure networks"..." ...and, oh, yeah... "...Microsoft has acknowledged this vulnerability and says it plans to change the default configuration in the next service packs..." Hope that helps... ------------------------------------------ Harlan Carvey, CISSP "Windows Forensics and Incident Recovery" http://www.windows-ir.com http://windowsir.blogspot.com ------------------------------------------ --------------------------------------------------------------------------- ---------------------------------------------------------------------------
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | RE: Windows wireless flaw..., Michael.Wade |
|---|---|
| Next by Date: | Re: Windows wireless flaw..., Aaron Phillips |
| Previous by Thread: | Re: Windows wireless flaw..., Harlan Carvey |
| Next by Thread: | Re: Windows wireless flaw..., jeff |
| Indexes: | [Date] [Thread] [Top] [All Lists] |