Penetration Testing mailing list archives

RE: Mitigate FTP


From: "Gary E. Miller" <gem () rellim com>
Date: Thu, 16 Oct 2008 22:41:58 -0700 (PDT)

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Yo Pete!

On Thu, 16 Oct 2008, Pete.LeMay wrote:

The other password option is to make the users accounts Active Directory
based. I've only seen dictionary attacks against local accounts...

How does the attacker see AD passwords different than local passwords?

All the ftp attacker sees is a username/password prompt.

RGDS
GARY
- ---------------------------------------------------------------------------
Gary E. Miller Rellim 109 NW Wilmington Ave., Suite E, Bend, OR 97701
        gem () rellim com  Tel:+1(541)382-8588

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.3 (GNU/Linux)

iD8DBQFI+CWpBmnRqz71OvMRAmMwAJ9RMZ8k7yHb/07kNuB/dkFP0GviegCdG1r/
XlaVNyBs5x2fv7a/N9S71hA=
=hMm7
-----END PGP SIGNATURE-----


------------------------------------------------------------------------
This list is sponsored by: Cenzic

Security Trends Report from Cenzic
Stay Ahead of the Hacker Curve!
Get the latest Q2 2008 Trends Report now

www.cenzic.com/landing/trends-report
------------------------------------------------------------------------


Current thread: