[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]
Re: [Full-disclosure] Re: Google Talk cleartext credentials in processmemory
- To: full-disclosure@xxxxxxxxxxxxxxxxx
- Subject: Re: [Full-disclosure] Re: Google Talk cleartext credentials in processmemory
- From: Colin <colweb@xxxxxxxxx>
- Date: Thu, 1 Dec 2005 11:06:13 +0000
On 01/12/05, pagvac <unknown.pentester@xxxxxxxxx> wrote:
> Even in corp environments you still see some users running admin
> privileges. Yes, I agree, it doesn't happen as often as in home
> environments, but it *does* happen.
Our corporate environment is almost completely full of administrators.
The EMEA region is tighter, but ASIAPAC and AMERICAS regions and
basically 100% admins. Management dont see the point "if the machine
can just be re-imaged".... god save us. Mind you our EMEA region
everyone is a "Power User" which as most will know can get Admin
rights in about 1 minute.
More worrying was the Domain Admins logging onto their PCs every day
with those privs.. omg
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/