没有合适的资源?快使用搜索试试~ 我知道了~
Hardening-Systems-Windows-NT完整.pptx
0 下载量 64 浏览量
2022-11-14
15:17:26
上传
评论
收藏 616KB PPTX 举报
温馨提示
试读
88页
Hardening-Systems-Windows-NT完整.pptx
资源推荐
资源详情
资源评论
NuGenSoft
Hardening Systems:
Windows NT
Presented to CERTConf 2000
September 28, 2000
Stephen M. Nugen, CISSP
NebraskaCERT
smnugen@nugensoft.com
CERTConf 2000 | HardenedNT
1
Introduction
•Purpose
NuGenSoft
–Discuss Windows NT-specific InfoSec issues
–Provide pointers to specific checklists, etc.
–Focus
•Windows NT 4.0
–Still outselling Windows 2K
–Next year: Windows 2K and/or Whistler (-> .NET)
–ServerServerandWorkstationversionsandWorkstationversions
•Broad rather than deep...
–Consider multiple areas of vulnerability
–Some topics just too hard or too site-specific to cover with everything
else...
•Understanding the “why” behind the vulnerability, mitigation
–Preparing for multiple variations on a theme
–InfoSec is the journey that never ends
CERTConf 2000 | HardenedNT
2
Introduction cont’d
•Caveat
NuGenSoft
–Presenting and discussing information gleamed from multiple sources
•Sources believed to be reliable
•Some sources old... some details may be OBE depending on what
service packs, patches, hot-fixes have been installed at your site
–Some, but not all of these have been tested
–Limitations of any single presenter...
–IMPORTANT
• USE THESE NOTES ONLY AS
–IDEAS FOR FURTHER STUDY
–POINTS OF REFERENCE... KEYWORDS FOR SEARCHING
TECHNET, MSDN, ETC.
• CHANGES TO REGISTRY VERY DANGEROUS
–BACKUP REGISTRY FIRST
–EXPLORE WITH REGEDT32.EXE... USE OPTIONS | READ-ONLY
–DON’T TRUST NUGEN’S SPELLING, TYPE, OR VALUE FOR ANY
PARTICULAR REGISTRY KEY, ETC.... LOOK IT UP
CERTConf 2000 | HardenedNT
3
Introduction cont’d
•Assumed
NuGenSoft
–Already understand InfoSec basics
–Already understand Windows NT basics
•Style
–Very informal
–Questions and suggestions welcome anytime
•Now
•Later
•If need the source for any specific suggestion/topic, send email to
nt-sec@nugensoft.com
–Ask about abbreviations... like
•HKLM = HKEY_LOCAL_MACHINE
•HKCU = HKEY_CURRENT_USER
CERTConf 2000 | HardenedNT
4
Introduction cont’d
•Structure
NuGenSoft
–Accounts
–Resources
–Auditing
–Services
–Network
–Other
–OBE Exploits
–Sources
CERTConf 2000 | HardenedNT
5
剩余87页未读,继续阅读
资源评论
zzzzl333
- 粉丝: 687
- 资源: 7万+
上传资源 快速赚钱
- 我的内容管理 展开
- 我的资源 快来上传第一个资源
- 我的收益 登录查看自己的收益
- 我的积分 登录查看自己的积分
- 我的C币 登录后查看C币余额
- 我的收藏
- 我的下载
- 下载帮助
安全验证
文档复制为VIP权益,开通VIP直接复制
信息提交成功