Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Penetration Testing: Re: USB delivered attacks

Re: USB delivered attacks

From: Gadi Evron <ge_at_linuxbox.org>
Date: Tue, 01 Jun 2004 19:22:12 +0200

> In order to put some 'practice' on this attack, I ve been trying this night
> to effectively use autorun mechanisms and see what could be possible.
>
> After reading the MSDN specs about autorun.inf file creation, I added
> an autorun.inf into my USB device along with a little batch script whose
> purpose was to copy the 'SAM' table and copy of the 'SET' command
> result into a specific folder on the usb device.
>
> Nothing happens... Even after being sure auto-run is enabled. Something
> should be missing... are there specific operating systems that disable
> auto-run by default ? (I am using windows 2000)
>
> However, burning the batch + autorun file onto a cd-rom and inserting
> it into the tray makes the auto-run sequence loading...
>
> So 2-cents question: which os'es do really use USB devices auto-run
> and on which USB devices does it work ? (not a usb hard-disk key it
> seems)...

USB devices install a driver, nothing to do with autorun.inf that I know
of.. You mis-understood.

As your test suggested, it does work when using a CD.
:)

        Gadi.

-- 
Email: ge_at_linuxbox.org.  Work: gadie_at_cbs.gov.il. Backup: ge_at_warp.mx.dk.
Phone: +972-50-428610 (Cell).
PGP key for attachments: http://vapid.reprehensible.net/~ge/Gadi_Evron.asc
ID: 0xD9216A06 FP: 5BB0 D3E2 D3C1 19B7 2104  C0D0 A7B3 1CF7 D921 6A06
GPG key for encrypted email: 
http://vapid.reprehensible.net/~ge/Gadi_Evron_Emails.asc
ID: 0x06C7D450 FP: 3B88 845A DF1F 4062 E5BA  569A A87E 8DB7 06C7 D450
Received on Jun 01 2004
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]
edgeos