OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Andrew Barkley (andrew.barkleyusa.net)
Date: Thu Feb 28 2002 - 22:33:50 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    Hi ...

    Scanning hosts running the Tiny Personal Firewall (2.0.15a) on W2K
    workstations that have been locked (ctl + alt + del)

    The popup alert/dialogue jumps to the foreground, thus open to accept
    permit/deny input from the local console, even when the workstations are
    locked (ctl + alt + del). Thus an untrusted individual whom has local access
    to individuals workstations can scan a workstation/network, wait for the popup
    alert dialogue and enter "permit" on unattended (locked workstations) without
    the owners permission/knowledge, No need to first unlock (ctl + alt + del)
    ...

    CHEERS ...