PDA

View Full Version : A Friendly wager...about security


Carloswill
12-31-2004, 04:31 PM
My co-worker at work was saying I was wasting my time using Firefox, Firewalls, Antivirus, and Service Packs.

I explained why its crucial to keep his sysyem protected and he just laughed and said he has left his Windows XP Home machine open and un protected on cable modem for months and has had no issues.

The wager

He has a folder on his desktop with a pciture of him and I need to hack the machine and access this picture which only he has and bring it on to work on my flash drive (after a nice photoshop hack).

I mean no harm but would like to shut him up and make a few bucks. I don't think this is available on [H] so if anyone can foward me to a site or forum that will show me what the best course of action is to get this. I have his WAN IP.

Thanks for any info.

nessus
12-31-2004, 07:25 PM
If his machine is raw on the Internet with no protection, its already compromised.

Average time to compromise for an unprotected system from the latest studies is less than 20 minutes till the first succesful root, 30 minutes for the second. We've played with unprotected systems with raw Internet access at work, the compromise time has been closer to 4 minutes.

GreNME
12-31-2004, 08:11 PM
You'd need his IP first. Then you'd need some practice using something other than explorer to access files across a network. Oh, and don't forget a way to authenticate or bypass authentication.

I seriously hope you aren't asking people here to show you how to break into another computer. Depending on what is patched on his computer and what ISP he uses (which would dictate the model of modem), there are literally dozens of ways to do this. I, for one, will show you absolutely zero. I'll give you methods to pursue, but not the actual ways to do it.

Tell him he should at least see about getting SP2, because it offers more functionality and ease-of-use. ;)

Carloswill
12-31-2004, 08:20 PM
No, I dont want to people here to help me hack his box. Just some suggestions on what can be done or URL for things of interest.

SocceRich20
12-31-2004, 08:32 PM
Trick him into installing netbus or some sort of VNC.

rusek
12-31-2004, 08:50 PM
Walk to desk, insert floppy, copy/paste pic to floppy.

Walk to your desk, copy/paste pic to your desktop

Profit

GreNME
12-31-2004, 08:56 PM
No, I dont want to people here to help me hack his box. Just some suggestions on what can be done or URL for things of interest.
Okay, that's cool. Well, do you have an idea of what SP he's got? Because the thing is, when he has the firewall on, the paths you have open change.

compslckr
12-31-2004, 08:59 PM
trick him into installing optix on his computer, there is all kinds of security stuff at www.evileyesoftware.com (http://www.evileyesoftware.com)

odoe
12-31-2004, 10:10 PM
although this is interesting, this breaks a couple of forum rules and is big liability. people can still see the the thread though, so if they want to pm you, that's their business.