|
-
August 16th, 2005, 01:32 PM
#2
Since security is in File System, if you delete an user/group, the rights will still remain on file system. Windows identify users by an internal identification instead the account name. SID is dynamically generated to avoid collisions (in a scope).
If you have a tool that can change an account SID to a deleted one, this account will have access to those files. Period.
BTW, leaving rights on directory (or resources) of dead users is the most stupid way to administer security. So, you can use this "exploit" only against dumb administrators.
And against those guys, you can get access on an easy way, such "standard" passwords, or even basic social engineering
Meu sítio
FORMAT C: Yes ...Yes??? ...Nooooo!!! ^C ^C ^C ^C ^C
If I die before I sleep, I pray the Lord my soul to encrypt. If I die before I wake, I pray the Lord my soul to brake.
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules
|
|