Archives for: January 2007, 02

Network Shares Access

01/02/07 Posted by geswall

There is a known trick to bypass DropMyRights - using a network share on loop-back interface, e.g: ren \\localhost\c$\windows\system32\malware.exe cmd.exe That is limitation of remote impersonation. DropMyRights creates a restricted token which cann… more »