OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Brett Harmond (brett_harmondyahoo.com)
Date: Fri Sep 28 2001 - 16:45:43 CDT

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    Windows NT Server

    Since I can't delete the Guest account, I would like
    to use the Guest account as a "honeypot" Administrator
    account. Thus, I have already renamed my
    Administrator account to something else and I will be
    renaming my Guest account to "Administrator".
    Idealistically, I'd like this account to be disabled,
    have a really good password, and essentially no
    rights. If the account is disabled, can anyone trying
    to break into the system detect that the account is
    disabled and thus immediately detect that this is not
    the real Administrator account? In general, without
    logging into a system, what information about user
    accounts can be determined? Are there any tools out
    there to query account information from outside the
    system?

    Thanks in advance.

    __________________________________________________
    Do You Yahoo!?
    Listen to your Yahoo! Mail messages from any phone.
    http://phone.yahoo.com