Go Back   Wireless and Wifi Forums > News > Newsgroups > comp.security.misc
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

Reply
 
LinkBack Thread Tools Display Modes
  #1 (permalink)  
Old 04-17-2007, 03:15 AM
LoneWolf210@gmail.com
Guest
 
Posts: n/a
Default screen saver privilege

I'm sure that most of you have heard of the privilege escalation
technique of replacing logon.scr with cmd. well I was playing around
on the computer and decided to install cmd as an option for a user
screen saver. However when the prompt was not run with system rights
as when it is when it replaces logon.scr. I was wondering if anyone
knew why this was?


Reply With Quote
  #2 (permalink)  
Old 04-17-2007, 05:15 AM
Sebastian G
Guest
 
Posts: n/a
Default Re: screen saver privilege

LoneWolf210@gmail.com wrote:

> I'm sure that most of you have heard of the privilege escalation
> technique of replacing logon.scr with cmd.



We've heard a lot about it, but this still doesn't make it a privilege
escalation. To replace logon.scr, you already need to have admin rights.

> However when the prompt was not run with system rights
> as when it is when it replaces logon.scr.



Of course not, it is run with the rights of the user.

> I was wondering if anyone knew why this was?



WinLogon uses Impersonation to execute the CreateProcess() call with the
credentials of the user. On Windows Server 2003 and later, it uses
CreateProcessAsUser().

Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are Off
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On
Forum Jump

Similar Threads
Thread Thread Starter Forum Replies Last Post
Alicase Workshop - The high Quality Screen Protector Manufacturer Alicase Workshop alt.cellular.verizon 0 03-27-2007 09:55 AM
Alicase Workshop - The high Quality Screen Protector Manufacturer Alicase Workshop alt.cellular.cingular 0 03-25-2007 03:30 AM
Alicase Workshop - The high Quality Screen Protector Manufacturer Alicase Workshop alt.cellular.ericsson 0 03-25-2007 03:29 AM
Wireless mouse and screen saver Lez Pawl alt.comp.hardware 3 10-05-2006 07:13 PM
Strange case of screen corruption Peter Carter alt.comp.hardware 2 10-07-2005 01:23 AM


All times are GMT. The time now is 08:23 AM.


Powered by vBulletin® Version 3.7.2
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Content Relevant URLs by vBSEO 3.2.0

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45