home desktop.anyone any idea?
create password
-
sathiya21
create password
home desktop.anyone any idea?
-
AR
Re:create password
What is a "special folder"? On Windows XP, just right click>Properties click "Advanced" then tick "encrypt this folder", the folder will be encrypted using your account password.
-
AR
Re:create password
Encryption blocks everyone, the Administrator can see the files but can't open them as they need the user's password to decrypt them. The folder permissions are different and can be bypassed however.
-
Ushma
Re:create password
But then again, an administrator could easily install a keylogger on his/her own system, obscure it, and pick up the password next time you type it. At which point reading the contents of the folder becomes rather easy.
Re:create password
You cannot "defend" your data against someone who is Admin on your system (or has physical access to it). If you don't trust the admin, don't put sensitive data on the system.
Every good solution is obvious once you've found it.
-
TheUnbeliever
Re:create password
Administrator could just change the user's password, then use that, or grab the SAM database and run L0phtcrack, John the Ripper or something like that.
If you really don't trust the administrator, create an encrypted partition on a USB drive and store data on that. Use PGP, if you really wish.
If you really don't trust the administrator, create an encrypted partition on a USB drive and store data on that. Use PGP, if you really wish.
Re:create password
And still be aware that the Admin can install keysniffers, provoke coredumps and read the password from that, and a wide variety of other hacks.TheUnbeliever wrote: If you really don't trust the administrator, create an encrypted partition on a USB drive and store data on that. Use PGP, if you really wish.
You can't protect your data from a malicious admin, period. Even if you take your encrypted USB stick home, a skillful Mallory will have sniffed your keyword and copied the cyphertext. You have been hacked.
Every good solution is obvious once you've found it.
-
mystran
Re:create password
Boot from a CD into your personally "carry-with-me" OS installation, and use a USB memory stick for your home directory. Hope that the administration hasn't made some really malicious BIOS modification, or installed hardware decoding device that stores signals sent to monitor. Don't use passwords, because hardware keyloggers might be installed (that's the easiest place to sniff data), and it's safer to just carry all the data around. For added protection wear some tinfoil around your head.
Re:create password
Very good advice so far if you're talking really sensitive data.mystran wrote:Boot from a CD into your personally "carry-with-me" OS installation, and use a USB memory stick for your home directory. Hope that the administration hasn't made some really malicious BIOS modification, or installed hardware decoding device that stores signals sent to monitor.
The problem is, as always, that real security reduces the number of things you can do. In this setup, you can't retrieve your e-mail, for example.Don't use passwords, because hardware keyloggers might be installed (that's the easiest place to sniff data), and it's safer to just carry all the data around.
Yes, that's what high-level security ends up as. Tinfoil around your monitor would be advisable, too, as the displayed contents of a CRT can still be picked up from the other side of the street, given appropriate equipment. (I have seen this to work, believe me!)For added protection wear some tinfoil around your head.
The only really secure system is one placed in a wire mesh cage to which only you have physical access, with no cables connected to the outside world. That is, secured against data sniffing.
If you want to be sure about the integrity of your data, there's much more to pay attention to - randomly chosen, widely used hardware components, widely used Open Source software downloaded from the main mirrors with double-checking on the md5 checksums...
But all this is "military grade" security. Who expects to be "sniffed" by a secret service? For all of us here, PGP with sensible settings should suffice unless you suspect your admin is actively and maliciously trying to sniff your data.
Every good solution is obvious once you've found it.
Re:create password
Been watching Enemy of the State again?Solar wrote:Yes, that's what high-level security ends up as. Tinfoil around your monitor would be advisable, too, as the displayed contents of a CRT can still be picked up from the other side of the street, given appropriate equipment. (I have seen this to work, believe me!)For added protection wear some tinfoil around your head.
The only really secure system is one placed in a wire mesh cage to which only you have physical access, with no cables connected to the outside world. That is, secured against data sniffing.
Re:create password
No, I read a lot about computer-related security back when I was interested in PGP and similar security suites - and those papers also listed the "physical" attack methods, too. Then I served my time in the military in a EW unit (electronic warfare)...
Every good solution is obvious once you've found it.
