2008年3月9日星期日

Input law leak is relaxed to explain registration Vista

One of Windows Vista sells is its reliable safety property, the functions such as UAC and built-in fire wall get Vista creation like copper wall iron wall. Actually really, do you cannot be broken through? Actually using input law leak, need not input password , may directly register system with the limits of authority of systematic keeper , carry out arbitrary operation. Is so and elementary but serious leak after all is how to on Vista recur?

The elementary leak appearance can not be actually complete to blame Vista, existence leak " the 5 input laws of the limit" is just chief offender. Problem happens in 6 editions of its ( 2007.2.26.0.98), when Vista system this edition on installation after " the 5 input laws of the limit", as if the chemical material of two independences, will not have reaction, but when two mix together together, will produce violent chemical reaction, elementary leak is born from this.

銆€銆€Leak triggers

The harm of this leak is great ,

Condition 1: 6 editions of ( 2007.2.26.0.98) the input law " the 5 input laws of the limit". This is necessary prerequisite , has only the input law of this edition to have this leak , newest edition has filled leak. Besides, Google input law initial 1 editions also has this leak.

Condition 2: System is in lock state. When Vista starts registration

Satisfaction after this at two o'clock, we may be relaxed

銆€銆€Have skirted

Step1: Assumption current registration interface is in lock state take off, click interface the input law choice of left next angle keyboard form button, in the menu of appearance, select " the 5 input laws of the limit".

Step2: As soon as click takes off the blank place of registration interface, now, the input law state strip that can arise " the 5 input laws of the limit" counts right key above , selects in proper order in the menu of appearance " input law install install to save as ".

Step3: When registration interface can spring a file to preserve

Step4: In dialog box, operating file is very inconvenient, moreover can not be genuine invasion, therefore we may with a view to found one with leak to have the account of keeper limits of authority , enter system with this account.

Input in the address column of dialog box " c: Windows system32 \ net.exe user hacker123456/add ", after input is completed , as soon as click takes off the "ongoing" button of side, now, can have a window one " order hint is consistent " to dodge and pass. Though, registration interface seems has no change, but we have founded a name in system, is hacker, password is the ordinary account of 123.456 thousand

Step5: Then, we promote it as systematic keeper , input "net localgroup administrators hacker/add" again in address column and carriage return, still is a " order hint is consistent " window one dodges error. Ok, now, we have been systematic keepers, close the button " switch user" on the current window and click registration interface of dialog box. Take please to believe your eye , hacker account has appeared nearly on registration interface. Downstairs, not use to say.

没有评论: