Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Penetration Testing: Re: Kaseya

Re: Kaseya

From: H D Moore <sflist_at_digitaloffense.net>
Date: Thu, 29 May 2008 17:42:59 -0500

Running psexec against a rogue node, with domain admin credentials, will
get your the domain controller pwned (via relay attacks). It sounds like
the agent install is not automatic for remote machines, but in the case
of a manual install against a rogue system, it is an issue.

On Thursday 29 May 2008, Kevin Reiter wrote:
> Another thing to note is the fact that psexec is used for remote tasks.
>  psexec lives only on the server, which is located at the MSP's data
> center/NOC, and communications between the agent and the server are
> encrypted.  Sniff away..

------------------------------------------------------------------------
This list is sponsored by: Cenzic

Top 5 Common Mistakes
in Securing Web Applications
Find out now! Get Webinar Recording and PPT Slides

www.cenzic.com/landing/securityfocus/hackinar
------------------------------------------------------------------------
Received on May 29 2008

[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]