[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Full-Disclosure] local SYSTEM on Windows vs. local root on Unix
- To: "KF" <dotslash@snosoft.com>
- Subject: Re: [Full-Disclosure] local SYSTEM on Windows vs. local root on Unix
- From: "Erik van Straten" <emvs.fd.3FB4D11C@cpo.tn.tudelft.nl>
- Date: Tue, 20 Jan 2004 19:08:49 +0100
On Mon, 19 Jan 2004 16:20:58 -0500 KF wrote:
> I am currious to know what you folks think the differences are between
> obtaining local SYSTEM on a win32 box and obtaining root on a Unix machine.
They are equivalent.
However, there are very many more ways to become SYSTEM on an average
W32 box, than on a Linux box.
Which *IS* an advantage, because if you harden a W32 box, provided
you did a good job, typically morons will have to spend *A* *LOT*
more time to find the holes you overlooked (likely they'll give up
and try Annie's box next door).
With Linux, the first thing they'll do is see if you've patched your
kernel (which I, honestly, have not done on all boxes).
Erik (using both)
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html