Skip to main content

Remote Evil Butler Attack Threatens Windows Computers

posted onAugust 7, 2016
by l33tdawg

Last November, Synopsys security researcher Ian Haken demonstrated how it would be possible to bypass Windows authentication and even BitLocker encryption on devices to which he had physical access.

The attack routine he described involved taking a computer out of the enterprise network it was assigned to and away from its original domain controller.

The attacker would set up a rogue domain controller with the same name but that used incorrect time settings, making the computer think the password's lifetime had expired. When the attacker would connect the PC to this rogue domain, they would be asked to change the computer's password, which would also be saved in a local cache file.

Source

Tags

Security

You May Also Like

Recent News

Friday, November 29th

Tuesday, November 19th

Friday, November 8th

Friday, November 1st

Tuesday, July 9th

Wednesday, July 3rd

Friday, June 28th

Thursday, June 27th

Thursday, June 13th

Wednesday, June 12th

Tuesday, June 11th