Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Bugtraq: Re: security enforcement - new monitor for winnt

Re: security enforcement - new monitor for winnt

From: Amir Mohammadkhani-Aminabadi <amir.mohammadkhani_at_einsurance.de>
Date: Tue, 30 Mar 2004 18:53:45 +0200

Please take a look at:
http://www.heise.de/ct/ftp/projekte/iecontroller/

Its open source and seems to do the same thing.

----- Original Message -----
From: "Liu Die Yu" <liudieyuinchina_at_yahoo.com.cn>
To: <bugtraq_at_securityfocus.com>
Sent: Tuesday, March 30, 2004 6:34 AM
Subject: security enforcement - new monitor for winnt

>
>
> i want to stop ie:
> writing EXE/CAB/LNK ... files,
> calling MSHTA.EXE to parse remote web pages,
> accessing files outside "favorites" and cache("content.ie5").
>
> i want to stop WSCRIPT.EXE from parsing files inside TEMP and cache.
>
> i want to stop the system running executable files located in TEMP and
cache.
>
> afaik, i can stop ie 0day exploits by doing these things.
>
> so, i made this:
> http://umbrella.name/winblox/
> of course, free. and you can define your own rules easily(assuming you
guys know a bit about regular expression).
>
> it's totally a new idea(afaik). so, not for operational uses.
>
Received on Mar 30 2004

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]