OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [Full-Disclosure] Unsecure file permission of ZoneAlarm pro.

From: Barry Fitzgerald (bkfsecsdf.lonestar.org)
Date: Fri Aug 20 2004 - 11:19:52 CDT


Todd Towles wrote:

>Sounds like it about as easy to shutdown as Microsoft's SP2 firewall...
>
>Overwrite a file, it fails integrity checks and the firewall will fail
>closed. There is something to add to a dropper program.
>
>
>

This by itself would make an effective short-term DoS of a consumer PC.

          -Barry

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html