Quick block post about a stupid, probably not exploitable, bug in NTFS still present in Windows 10 2004. https://www.tiraniddo.dev/2020/05/writing-windows-file-system-drivers-is.html …
-
-
Replying to @tiraniddo
Microsoft still hasn't yet fixed all of the fuzzed NTFS cases I sent them a year ago. Possibly because they were also deemed to be not exploitable. But it still sort of sucks that a standard USB mass storage device can panic a system when plugged in.pic.twitter.com/Ia4gmwh97Z
4 replies 2 retweets 20 likes -
Replying to @wdormann @tiraniddo
maybe try fuss .iso files, they can be mounted as standard user. That at least removes the requirement of a physical usb stick. Or, maybe its possible to somehow use the RDP forward device technology to fake a usb drive somehow? Anybody else got an idea?
1 reply 0 retweets 0 likes -
Replying to @jonasLyk @tiraniddo
Will Dormann Retweeted Will Dormann
VHD and VHDX files work fine for this purpose. https://insights.sei.cmu.edu/cert/2019/09/the-dangers-of-vhd-and-vhdx-files.html … And yes, RDP servers with RemoteFX enabled allow connecting USB devices without physical access.https://mobile.twitter.com/wdormann/status/1088152028252119041 …
Will Dormann added,
1 reply 0 retweets 1 like -
Replying to @wdormann @tiraniddo
but can you mount vhd without admin access?
1 reply 0 retweets 0 likes
and I was thinking more about if you could locally use the rdp forwarding somehow to fake the device
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.