Full Disclosure mailing list archives

corrected statement / question LEAP/Radius


From: "_MAX_" <mmo () remote-exploit org>
Date: Tue, 9 Sep 2003 13:44:45 +0200 (CEST)

Ehmm.. maybe i asked the wrong way around.

I know the leap dictionary attack problem, and also know the anwrapper code.

I'm more interressted in "how was ist deployed in the real world" and
"what was is look like in the pen-test scenario" (Timeing etc)
Personally i dont see that NT-Account lockout is activated, when
barcodescanning is used, because no one wants that the scanners don't work
anymore in the warehouses.
Are there automated tools for the Radius part? I can handle a sniffer,
but maybe there is an easier way, that i dont know.

I don't want a guide what you are doing, more like what it os really look
like.
Greetings

Max



_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: