|
-
August 25th, 2003, 02:20 PM
#1
Remote And Local Access Explained
This tutorial will basically cover the differences between Local And Remote Access , because I know it can be quite a confusing subject at first for newbies. I think these two concepts are vital to understand because if your testing an exploit on your server and you need to run it locally , after reading this you will understand that you need to have some insider privelege before you run it.
ok lets get going
LOCAL ACCESS
Local Access is described as being logged into a shell. Or logged on as a user in the system.
For Example , lets say you wanted to rob a house (Just An example my friend) , There would be no point in breaking down a window if somebody gave you a key and said come back anytime right ? Right.
So it would be easier if you already could get inside without setting off alarms , then scope things out. Local access is also referred to as 'Privelege Escalation' Attacks. Because then the attacker would go from a legitimate user to uid0 (root)
REMOTE ACCESS
Remote Access is Described as having a connection via a network daemon or listening service at the application layer. (telnetd , SSH , FTP , rlogin) Sometimes there are flaws in ftp daemons and such , and to be exploited they need to be exploited remotely. This is sometimes where the confusion of how exploits work come around because newbies don't yet understand the difference of local and remote access , hopefully they will have an understanding after they read this tutorial. But anyway as I described before on insider access , and the analogy I used on robbing a house im going to try to do it again here to make it more clearly. ok you don't have a key , you don't have any access at all to this house and nobody will give you insider priveleges so you must try to get in remotely. Im still using analogy. Your typical Script Kiddie will throw every kind of rock and stone at this house to try to make a window shatter open alerting police and alarms all over the county and not even know why this worked. But a more clever person will go around knock on the window , see what type of glass it is. When the person leaves & comes home. Then after careful planning will get insider privileges and go from there. See what I am saying now ?
So basically what it comes down to is that REMOTE ACCESS means via a network daemon or some other communications channel. But LOCAL ACCESS means that you have privilege to that system already. Generally attackers exploit remotely to get local privileges.
And in my analogies and such , this tutorial did by no means hint malicious activities going on etc.I simply said what I said to help the people reading to grasp it more fundamentally.
Most of these concepts were taught to me by Hacking Exposed 2nd edition , and other google sources that I can't quite remember.
I worked really hard on this tutorial and did my best to make it come out clean.
But it is only my second one so if it needs any work at all , somebody PM me and let me know.
Good Day......
"Serenity is not the absence of conflict, but the ability to cope with it."
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules
|
|