Windows Firewall exploit overhyped
Nothing to see here, please move along
1st November 2006 15:46 GMT
The release of an exploit that means a hacker, who happens to be on the same local area network, can knock over Windows Firewall on machines running XP has created a lot of publicity, despite being not much of a threat. By using the exploit, an attacker could disable Windows Firewall on a fully patched machine running Internet Connection Service (ICS).
ICS allows small businesses or home users to share an internet connection through a machine which acts as a hub. But with the advent of cheap routers few people need to use the service which, as nCircle points out, can be disabled quite easily without turning off Windows Firewall.
Turning off the firewalls of users removes barriers to potential attacks and the exploit would be more noteworthy if it worked remotely, which it doesn't. Attackers need to attack from inside the same LAN as potential victims, which greatly reduces the potential for mischief even when attacking basic home or small business networks.
As Secunia advises, the best approach to dealing with the problem (such as it is) is to find another way of sharing an internet connection.
Now, if you'll excuse me, I'm off to investigate reports that cows have stopped producing milk in Somerset as the result of an IE exploit or possibly generated the influx of whiskey-loving Romanian witches. ®
Register Hardware » News » PCs


Apple iMac Intel Core 2 Duo 24" Desktop (2.8GHz Intel Core 2 Duo, 2GB DDR2, 320GB, DVD±RW DL, Macintosh OS X 10.5 Leopard, 24" LCD)
Apple iMac Desktop (2.66GHz Intel Core 2 Duo, 4GB DDR3, 640GB DDR3, DVDRW DL, Mac OS X v10.5 Leopard, 24" LCD)
Dell Vostro 220 Desktop Computer (Intel Pentium Dual Core E2200 80GB/1GB)
HP (Hewlett-Packard) TouchSmart IQ504 Desktop (2GHz Intel Core 2 Duo Mobile T5750, 4GB DDR2, 320GB, DVD±RW DL, Windows Vista Home Premium 64-bit, 22" LCD)
HP (Hewlett-Packard) Pavilion Elite m9550f Desktop (2.5GHz Intel Core 2 Quad Q9300, 8GB DDR2, 1TB, DVD±RW DL, Windows Vista Home Premium 64-bit)