[36283] in bugtraq
Re: Unsecure file permission of ZoneAlarm pro.
daemon@ATHENA.MIT.EDU (Bipin Gautam)
Thu Aug 26 18:43:02 2004
Date: 22 Aug 2004 19:20:58 -0000
Message-ID: <20040822192058.12017.qmail@www.securityfocus.com>
Content-Type: text/plain
Content-Disposition: inline
Content-Transfer-Encoding: binary
MIME-Version: 1.0
From: Bipin Gautam <visitbipin@hotmail.com>
To: bugtraq@securityfocus.com
In-Reply-To: <20040820025137.15141.qmail@www.securityfocus.com>
All a trojan/attacker has to do is...
E:\WINDOWS\Internet Logs\> attrib/s +h +s +r +a
{{{ and compress the folder (optional) }}}
Next time, when ZAP or PC restarts... Zone Alarm Pro. so called, TrueVector(r) driver in the kernel will fail to load at all.
regards,
bipin gautam