[Full-disclosure] Re: Nortel VPN Client Issue: Clear-text password stored in memory

Burak DAYIOGLU dayioglu at metu.edu.tr
Tue Mar 22 21:34:22 GMT 2005


Roy,
I read your advisory regarding the Norvel VPN client. If I am not 
mistaken, the authentication keys are stored in the registry hive 
HKEY_CURRENT_USER (per user key stores).

If it is so, you should start the VPN client as the victim user to 
attack the process memory image (or else you have to be administrator).

Am I missing something?

regards,
-bd



Full-Disclosure is hosted and sponsored by Secunia.