Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: Question: FTP via alternate port |
|---|---|
| Date: | Sat, 28 Jan 2006 10:35:58 -0600 |
Niels Taylor wrote:
Hello list, I hope this question is not too "newbie," and I am sure if it isWhile the stock ftp.exe that is on my Win2K box does not provide for changing the port used, that doesn't prevent other applications from doing so. Since it is a common security practice to run such things as sshd on non-standard ports, there's every reason for a trojan, worm, or virus to use the same technique to avoid the usual roadblocks or detection techniques based on port.
I will find out quickly. I am interested in ways an attacker could
circumvent outbound FTP restrictions on a FW. I have researched this a bit
but the information I am seeing is ambiguous, so I thought I'd take it
straight to the experts.
I hope this answers your question.
Good luck.
Mark Stingley
-- Excellence in InfoSec and Linux http://www.altsec.info
http://www.securityfocus.com/sponsor/pen-test_050831 -------------------------------------------------------------------------------
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Re: Active Directory user enumeration, MOpsitos |
|---|---|
| Next by Date: | RE: Article: "Security Testing Demystified", david |
| Previous by Thread: | Re: Question: FTP via alternate port, Jason Baeder |
| Next by Thread: | ANN: New release of CORE FORCE free endpoint security package, Core FORCE team |
| Indexes: | [Date] [Thread] [Top] [All Lists] |