19.04.2013 Views

2KKUU7ita

2KKUU7ita

2KKUU7ita

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Figure 11-10:<br />

Using<br />

LanGuard’s<br />

share finder<br />

to seek out<br />

Windows<br />

shares.<br />

Testing<br />

Chapter 11: Windows<br />

Assessing your share permissions is a good way to get an overall view of who<br />

can access what. This testing shows how vulnerable your network shares —<br />

and sensitive information — can be. You can find shares with default permissions<br />

and unnecessary access rights enabled. Trust me; they’re everywhere!<br />

The best way to test for share weaknesses is to log in to the Windows system<br />

via a standard local or domain user with no special privileges and run an enumeration<br />

program so you can see who has access to what.<br />

LanGuard has a built-in share finder tool for uncovering unprotected shares,<br />

as shown in Figure 11-10.<br />

The Everyone group has full share and file access to the LifeandHealth share<br />

on the THINKPAD host. I see situations like this all the time where someone<br />

shares their local drive so others can access it. The problem is they often<br />

forget to remove the permissions and leave a gaping hole for a security<br />

breach. I outline how to uncover sensitive information in unstructured files<br />

on shares and other storage systems in Chapter 15.<br />

215

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!