You can access \\http://live.sysinternals.com \ from Windows Explorer and run Sysinternals tools live in memory w/o touching disk HT @mikelosspic.twitter.com/2dmDcJmEUD
You can add location information to your Tweets, such as your city or precise location, from the web and via third-party applications. You always have the option to delete your Tweet location history. Learn more
How is this authenticated? Just by DNS? Sounds like a great way to get ppl to run arbitrary code as admin...
https://live.sysinternals.com - have a squiz at the certificate i suppose?
Does smb/cifs/whatever authenticate the server to the client in any way?
yes it does, but this isn’t SMB/CIFS, it’s WebDAV.
Since when are \\ paths webdav? Traditionally were smb. Admittedly I'm not a Windows guy...
Windows explorer tries SMB first then falls back to webdav.
So if someone provides fake dns result pointing to a host serving smb...
well yeah, if someone is in a position to mess with your DNS there’s a millionty-thousand and one ways for them to fuck with you.
Not if you haven't been taught to execute programs from unauthenticated servers... This is equiv to downloading sw over plain http.
It's a handy trick full stop! WebDAV is an http extension so this is simply a web server serving files over WebDAV for anon users.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.