Re: [Full-disclosure] Abusing Windows 7 Recovery Process

2013-07-14 Thread Moshe Israel
And dont forget the logs/audits etc... On Jul 14, 2013, at 9:27 AM, Moshe Israel wrote: > My response was to "how many system implement such controls". > > You could however (since u have access) disconnect the network cable, replace > magnify wt cmd etc. add admin, re

Re: [Full-disclosure] Abusing Windows 7 Recovery Process

2013-07-14 Thread Moshe Israel
t; On Sat, 13 Jul 2013 22:13:38 +0300, Moshe Israel said: >> All secured/regulated systems as required by most >> certifications/standards/best practices. > > You're new in the industry, aren't you? :) > > The point you're missing is that the vast majority

Re: [Full-disclosure] Abusing Windows 7 Recovery Process

2013-07-14 Thread Moshe Israel
All secured/regulated systems as required by most certifications/standards/best practices. On Jul 13, 2013, at 8:52 PM, valdis.kletni...@vt.edu wrote: > On Sat, 13 Jul 2013 13:23:18 +0200, Alex said: >> This one is a classic, but it will fail integrity checks of >> tripwire/ossec/whatever you

Re: [Full-disclosure] New Internet Explorer code-execution

2010-03-10 Thread Moshe Ben Abu
Metasploit exploit module now available: http://www.rec-sec.com/2010/03/10/internet-explorer-iepeers-use-after-free-exploit/ On Wed, Mar 10, 2010 at 8:29 PM, Pradip Sharma wrote: > Online thugs are exploiting a security bug in earlier versions of Internet > Explorer that allows them to remotely

[Full-disclosure] Cisco IOS Shellcode Presentation

2005-08-01 Thread moshe
hi to all can someone send me the famous Cisco IOS Shellcode Presentation ?? please.. my mail is [EMAIL PROTECTED] ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored