Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | Re: Boot floppy |
|---|---|
| Date: | Sat, 14 Apr 2007 06:53:24 -0600 |
Then you have the original machine to image the drive at your leisure.
---
Tremaine Lea Network Security Consultant
Be in pursuit of equality, but not at the expense of excellence.
On 13-Apr-07, at 8:40 AM, Thor (Hammer of God) wrote:
I don't think anyone's missing the statement -- people are just (in my mind rightfully) suspicious of these types of scenarios where there are a million other things that could be done that actually solve the problem. It's the company's computer. They think this guy is stealing from them like someone else already did. But, even though the OP's the administrator of a computer his company owns, he has no access to it and the admin account is disabled, and they can't get the guy to run a rootkit any other way. So they want to figure out how to root the box without any boot tools, auto-runs, reboots, or anything else while the guy is taking a whiz so they can see if he is stealing intellectual property all because they are worried about hurting his feelings. It just doesn't sound right.
Seize the box and perform forensics on it and be done with it. Then have a set policy put in place to keep stupid things like that from happening again.
t
----- Original Message ----- From: "Shreyas Zare" <shreyas@technitium.com>
To: "Pen-Testing" <pen-test@securityfocus.com>
Sent: Thursday, April 12, 2007 8:47 AM
Subject: Re: Boot floppy
Hi,
Everyone almost is missing Mifa's statement which is, "Any other ideas
how we maight gain access? It has to be fast (bathroom breaks ect). I
dont have time to load a live cd. Further, robooting would cause the
user to loose work."
This means he has to do it quickly without rebooting the machine and no live CDs as rebooting would make the target suspicious of the act. So social engineering will work better in this case.
If he has enough powers, he can trojan the machine as its company's property. And the target may be a real danger for the company's security, who knows ?
---------------------------------------------------------------------- --
This List Sponsored by: Cenzic
Are you using SPI, Watchfire or WhiteHat? Consider getting clear vision with Cenzic See HOW Now with our 20/20 program!
http://www.cenzic.com/c/2020
---------------------------------------------------------------------- --
------------------------------------------------------------------------ This List Sponsored by: Cenzic
Are you using SPI, Watchfire or WhiteHat? Consider getting clear vision with Cenzic See HOW Now with our 20/20 program!
http://www.cenzic.com/c/2020 ------------------------------------------------------------------------
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | Retrieving Cached Domain Credentials from Vista, Ben Nell |
|---|---|
| Next by Date: | FireCAT Firefox Catalog of Auditing exTensions V1.0 Released, SD List |
| Previous by Thread: | Re: Boot floppy, Thor (Hammer of God) |
| Next by Thread: | Re: Boot floppy, Morning Wood |
| Indexes: | [Date] [Thread] [Top] [All Lists] |