[Full-disclosure] Bypass user GPO in Windows Xp / 2003

Nick Eoannidis nikon at xillioncomputers.com
Wed Dec 21 09:18:57 GMT 2005


Hi Espen,

any smart administrator would disable right clicking on explorer for a 
start, and then disable "run as" - so thats just bad administration.. if 
you can do that.

a few others i can elaborate on...

another hack in a gpo environment is to edit ntuser.pol and replace with 
@preg
any updates to the gpo from the time you do that will not take effect

also you can kill proquota by going to start logoff/shutdown and having 
a unsaved application open it will produce the end now box - hover over 
proquota - magic its dead.

nikon
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/x-pkcs7-signature
Size: 5333 bytes
Desc: S/MIME Cryptographic Signature
Url : http://lists.grok.org.uk/pipermail/full-disclosure/attachments/20051221/bc012b41/attachment.bin 


Full-Disclosure is hosted and sponsored by Secunia.