vbs, making sure the file type is set to
All Files. If you forget this step the file will be saved as ChangeV
LKey.vbs.txt.
Place this file onto a computer where you want to bypass the Windows
XP Product Key verification process and double-click on the file to execute
the following:
Execute the script and then perform Windows updates as normal.
*Note: This lab MUST stop at this point. To obtain the knowledge of how to bypass
the product key verification process is not illegal in itself. To actually execute
this script violates the Microsoft End User Agreement and I am sure several
other laws. To actually go out to the Microsoft Web site and perform Windows
updates is nothing less than illegal, and I strongly recommend that you do
NOT attempt to actually use this lab. The purpose of this lab is to demonstrate
exactly how easy it is to bypass the current product key verification process.
One final point about this lab is that this bypass only works for the Corporate
version of Windows XP.
Vulnerability Scanning 507
Lab 75: Vulnerability Exploit
Assessment of Target Security: Web Hack Control Center
Prerequisites: None
Countermeasures: Secure ACLs, Bastion computers, host-based firewalls
Description: Web Hack Control Center (WHCC) is a Web Server Vulnerability
scanner. WHCC gives you the means to identify which security
vulnerabilities exist on your Web servers by scanning them for the
popular server exploits.
Pages:
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180