|
-
May 17th, 2003, 06:08 AM
#7
NetBIOS
There are sveral weaknesses in NetBIOS. The one the uber hacker was refering to is most likely what is called a Null session (or The Holy Grail of Hacking to the ScrpKd's). This allows annonymous shares to systems resources. If you are not using an internal LAN I would disable NetBios (Under networkadapters/protcols - remove) if you are, and your using Win 2000 or better(which you should) make sure you use NetBios over TCP/IP if all machines are 2000 or better and dont use the pre-windows 2000 compatiblity unless you need to. To disable Null Sessions in Win2000 Go to Administrative Tools --> Local Security Settings --> Local Policies --> Security Options, Select "Additional restrictions of anonymous connections" in the Policy pane on the right. From the pull down menu labeled "Local policy setting", select "No access without explicit anonymous permissions".Click OK the reboot. For other versions of Win, google 'NetBios null sessions' Oh, yeah and get a firewall. Hope this helps.
-Maestr0
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules
|
|