Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Focus on Microsoft
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
RE: Attacking EFS through cached domain logon credentials Jan 21 2003 06:32AM
John Howie (JHowie securitytoolkit com)
Todd (and lists),

You wrote:

>
> This is not completely correct, and I wanted to clarify how an attack
> against a domain-member's EFS encrypted files can work. The threat
> model is this:
>

It is important to distinguish between a weakness in EFS (there is none,
as described here) and the ris...

[ more ]  





 

Privacy Statement
Copyright 2009, SecurityFocus