Dailydave mailing list archives

Re: Sending remote procedure calls through e-mail(RPC-Mail)


From: Sandino Araico Sánchez <sandino () sandino net>
Date: Wed, 20 Oct 2004 18:26:15 -0500

Frank Knobbe wrote:

lol.... nah, I'm not that easy to get with SSH... :)

But a DoS through RSTs seems to be something every TCP based service is
vulnerable to. Anyway, drifting off-topic. Back to mail-based protocols
;)
You should be able to use one time keys to encrypt and sign the commands in the proposed model. The execution helper should decrypt and verify everything it receives before executing anything.

The same execution helper could be used in combination with a port knocking gateway instead of an email gateway.

-Frank

------------------------------------------------------------------------

_______________________________________________
Dailydave mailing list
Dailydave () lists immunitysec com
http://www.immunitysec.com/mailman/listinfo/dailydave


--
Sandino Araico Sánchez
-- ... there's no spoon ...

_______________________________________________
Dailydave mailing list
Dailydave () lists immunitysec com
http://www.immunitysec.com/mailman/listinfo/dailydave


Current thread: