Set Windows default Share by vulnerability

Source: Internet
Author: User

In the Windows 2000/XP system, there is a loophole that is said to be "fatal", which makes many people talk about "Tiger" as soon as they hear it. Right-click Manage on my Computer, and then select System tools → shared folders → shares to see the default shares in the right window (see Figure 1). These symbols with dollar "$" tags are Windows system default sharing, which is a feature that Windows automatically shares after installation, which many people have heard is a vulnerability.

  

What are ★ipc$, admin$, C $, d$?

ipc$ (Internet Process Connection) can be understood as a "dedicated pipe" that enables access to remote computers by establishing a secure channel on both sides of the connection. While Windows NT/2000/XP provides ipc$ functionality, the default share is turned on when the system is first installed, that is, all logical shares (c$,d$,e$ ...) and the System directory (admin$) share. All of these shared purposes are to facilitate the management of administrators, but intentionally or unintentionally, resulting in the system security risks.

Microsoft inadvertently caused a hidden danger, caused a lot of attention, the various statements about them also spread among the network. Look at the following popular theories, do you have the same opinion?

Point one: Default sharing is inherently a vulnerability, so to avoid security risks, you must remove all default shares.

Point two: The default share is like a common share, anyone can use admin$,c$,d$ and so on to share from your computer to steal things.

Point three: ipc$ can be deleted and will not appear again.

Point four: To remove the default share, you can do so as long as you create a batch file in the Windows boot script.

A 1: Since the default sharing is a vulnerability, Microsoft why not to make up? In fact, the default sharing is a very useful function, but we usually do not use it. Microsoft's original intention is to facilitate the remote management of the network. Just imagine. In a large network. Is it necessary for an administrator to go to a certain machine to see something or delete something? These administrators sit in front of the host by default sharing can be easily done. This is the function that Microsoft provides for the convenience of management. I don't know when to start, it becomes a loophole in the mouth of others.



Related Article

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.