Everybody knows that you can open a file. But did you know if you open the file: C:\$Secure:$ATTRIBUTE_LIST:$ATTRIBUTE_LIST with FILE_READ_ATTRIBUTES your system will lock totally up? The sharedFcb lock get aquired twice resulting in death of the system.
-
Show this thread
-
-
-
Replying to @jonasLyk
So a remote DOS for any Windows machine in the network? Do you even need credentials for that?
2 replies 0 retweets 1 like -
Replying to @mkolsek
very much- even when password less sharing is used you can only access: C:\users\public c:\users\default if visual studio is installed also any user: C:\Users\%user%\AppData\Local\Temp\VSRemoteControl
1 reply 0 retweets 3 likes -
Replying to @jonasLyk
At least that. But anyone in a Windows domain can essentially DOS all Windows machines in the same domain accessible via SMB? Is Microsoft aware of this yet?
1 reply 0 retweets 2 likes
they did not care when you could bsod any machine by memory mapping the mailslot device- and my outgoing vulnerability queue is full untill they pay me some of the ~ 60.000$ they owe me already in bounties..
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.