[IMail Forum] [Fwd: IpSwitch IMail Server = ver 8.1 User Password Decryption]

2004-08-17 Thread Russ Uhte
Forwarded from bugtraq/full-disclosure. Thought it may be of some interest here. -Russ Original Message Subject: IpSwitch IMail Server = ver 8.1 User Password Decryption Date: Mon, 16 Aug 2004 23:18:53 +0600 (KGST) From: Adik [EMAIL PROTECTED] To: [EMAIL PROTECTED] CC: [EMAIL

Re: [IMail Forum] [Fwd: IpSwitch IMail Server = ver 8.1 User Password Decryption]

2004-08-17 Thread Eric Shanbrom [Ipswitch]
Subject: [IMail Forum] [Fwd: IpSwitch IMail Server = ver 8.1 User Password Decryption] Forwarded from bugtraq/full-disclosure. Thought it may be of some interest here. -Russ Original Message Subject: IpSwitch IMail Server = ver 8.1 User Password Decryption Date: Mon, 16

RE: [IMail Forum] [Fwd: IpSwitch IMail Server = ver 8.1 User Password Decryption]

2004-08-17 Thread Markus Gufler
This assumes that the intruder has access to the IMail machine's registry...IMHO if this is so I would think you have bigger problems than just grabbing passwords.. Eric S Is it true that extractusers.exe will not work anymore above Imail v7.xx ? If not, with this code it should be easy

RE: [IMail Forum] [Fwd: IpSwitch IMail Server = ver 8.1 User Password Decryption]

2004-08-17 Thread Dmitri Elgin
] [Fwd: IpSwitch IMail Server = ver 8.1 User Password Decryption] This assumes that the intruder has access to the IMail machine's registry...IMHO if this is so I would think you have bigger problems than just grabbing passwords.. Eric S Is it true that extractusers.exe will not work anymore

Re: [IMail Forum] [Fwd: IpSwitch IMail Server = ver 8.1 User Password Decryption]

2004-08-17 Thread Larry Craddock
that it's a simple matter of a packet sniffer to harvest passwords. Larry Craddock - Original Message - From: Dmitri Elgin [EMAIL PROTECTED] To: [EMAIL PROTECTED] Sent: Tuesday, August 17, 2004 10:27 AM Subject: RE: [IMail Forum] [Fwd: IpSwitch IMail Server = ver 8.1 User Password Decryption

RE: [IMail Forum] [Fwd: IpSwitch IMail Server = ver 8.1 User Password Decryption]

2004-08-17 Thread Matthew Hiltner: oliveJar Support
To: [EMAIL PROTECTED] Subject: RE: [IMail Forum] [Fwd: IpSwitch IMail Server = ver 8.1 User Password Decryption] This assumes that the intruder has access to the IMail machine's registry...IMHO if this is so I would think you have bigger problems than just grabbing passwords.. Eric S

RE: [IMail Forum] [Fwd: IpSwitch IMail Server = ver 8.1 User Password Decryption]

2004-08-17 Thread Dave Riddle
: [IMail Forum] [Fwd: IpSwitch IMail Server = ver 8.1 User Password Decryption] This assumes that the intruder has access to the IMail machine's registry...IMHO if this is so I would think you have bigger problems than just grabbing passwords.. Eric S Is it true that extractusers.exe will not work

Re: [IMail Forum] [Fwd: IpSwitch IMail Server = ver 8.1 User Password Decryption]

2004-08-17 Thread Russ Uhte
Eric Shanbrom [Ipswitch] wrote: This assumes that the intruder has access to the IMail machine's registry...IMHO if this is so I would think you have bigger problems than just grabbing passwords.. Obviously ;) I was seeing it as some value to those who have a legit reason for wanting the

Re: [IMail Forum] [Fwd: IpSwitch IMail Server = ver 8.1 User Password Decryption]

2004-08-17 Thread Sanford Whiteman
Forwarded from bugtraq/full-disclosure. Thought it may be of some interest here. So-called hackers have thought this is cool for about 10 years. It's not a hack. The algorithm was never claimed to offer anything but mild obscurity to a casual Registry browser, and has been owned by