[36176] in bugtraq
Security aspects of time synchronization infrastructure
daemon@ATHENA.MIT.EDU (3APA3A)
Thu Aug 19 21:58:38 2004
Date: Fri, 20 Aug 2004 01:25:38 +0400
From: 3APA3A <3APA3A@security.nnov.ru>
Reply-To: 3APA3A <3APA3A@security.nnov.ru>
Message-ID: <793883234.20040820012538@security.nnov.ru>
To: bugtraq@securityfocus.com
Cc: full-disclosure@lists.netsys.com
MIME-Version: 1.0
Content-Type: text/plain; charset=us-ascii
Content-Transfer-Encoding: 7bit
Hello bugtraq,
I published whitepaper called "Security aspects of time
synchronization infrastructure". It describes some observations on
very common security flaws in time synchronization infrastructure
design, including (but not limited to) MS Windows Active Directory.
http://www.security.nnov.ru/advisories/timesync.asp
Any comments are very appreciated.
--
/3APA3A