OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
From: Patrick S. Harper (listsinternetsecurityguru.com)
Date: Thu Jan 10 2002 - 15:20:50 CST

  • Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]

    With the following registry key:

    HKEY_LOCAL_MACHINE\System\CurrentControlSet\Control\LSA Name:
    RestrictAnonymous Type: REG_DWORD Value: 1.

    There are a bunch of thing you need to do to a default install. I would
    suggest reading form the following docs:

    http://www.labmice.net/articles/securingwin2000.htm

    http://nsa1.www.conxion.com/index.html

    http://www.microsoft.com/technet/security/tools/w2kprocl.asp?frame=true

    http://www.microsoft.com/technet/treeview/default.asp?url=/technet/secur
    ity/tools/c2config.asp

    Also depending on what you use to scan (retina and stat for example) the
    program might answer these questions for you.

    Remember that for now MS products are shipped in the most open
    configuration and it is up to the users and admins to secure the boxes.

    Patrick S. Harper | MCSE ISS
    mailto:patrickinternetsecurityguru.com
    http://www.internetsecurityguru.com

    How do I set a laser printer to stun?

    -----Original Message-----
    From: Kenneth Christensen [mailto:kcproff-art.dk]
    Sent: Thursday, January 10, 2002 1:28 PM
    To: focus-mssecurityfocus.com
    Subject: Huge security breach in standard w2k install

    Hi!

    having installed the network scanner recommend in the mails on this
    thread, I discovered something horrific .. my own workstations at the
    office apperently expose both shares AND users/groups on the machines (
    W2K Pro )

    how on earth can i disable this HUGE security hole ?

    Yours Truely
            Kenneth Christensen