Full Disclosure mailing list archives
Re: [normal] Re: MS RPC remote exploit. What about DCOMbobulator?
From: Patrick Brauch <pab () heisec de>
Date: Thu, 9 Oct 2003 23:22:50 +0200 (CEST)
On Thu, 9 Oct 2003, opticfiber wrote:
It's come to my attetion that disablinf DCOM in windows is near impossible without a regedit.
That's usually not what you want anyways. There are ways to disable RPC/DCOM completely, but systems might not run as they should anymore. the list of incompatibilities is long and not worth discussing; if you use windows server as a productive system (i.e. running webserver or alike) you generally can't just "deactivate" DCOM to be fine -- it just won't work. Anyways, while being here, did anyone succeed in proofing that the k-otik exploit a) compiles and b) really works universal? cheers, -- Patrick Brauch <pab () heisec de> heise security http://www.heisec.de c't Magazin fuer Computertechnik http://www.heise.de/ct PGP-Fingerprint: 8366 03AC D702 F2BB C617 E6BC 1811 950E _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html
Current thread:
- MS RPC remote exploit. Sudharsha Wijesinghe (Oct 09)
- Re: MS RPC remote exploit. Patrick Brauch (Oct 09)
- Re: [normal] Re: MS RPC remote exploit. What about DCOMbobulator? opticfiber (Oct 09)
- Re: [normal] Re: MS RPC remote exploit. What about DCOMbobulator? Russell Fulton (Oct 09)
- Re: [normal] Re: MS RPC remote exploit. What about DCOMbobulator? Vladimir Parkhaev (Oct 09)
- Re: [normal] Re: MS RPC remote exploit. What about DCOMbobulator? Patrick Brauch (Oct 09)
- Re: [normal] Re: MS RPC remote exploit. What about DCOMbobulator? opticfiber (Oct 09)
- Re: MS RPC remote exploit. Kilian CAVALOTTI (Oct 09)
- RE: MS RPC remote exploit. Nathan (Oct 09)
- Re: MS RPC remote exploit. Stephen (Oct 09)
- RE: [inbox] Re: MS RPC remote exploit. Curt Purdy (Oct 09)
- SV: MS RPC remote exploit. Peter Kruse (Oct 09)
- Re: SV: MS RPC remote exploit. Telefónica Deutschland (Oct 09)
- <Possible follow-ups>
- RE: MS RPC remote exploit. Trey Mujakporue/UK/Tesco (Oct 10)
- Re: MS RPC remote exploit. Patrick Brauch (Oct 09)