1
Windows Operating System Internals - by David A. Solomon and Mark E. Russinovich with Andreas Polze
Unit OS7: Security
7.1. The Security Problem
3
Roadmap for Section 7.1 The Security Problem - a Definition Program - - PDF document
Unit OS7: Security 7.1. The Security Problem Windows Operating System Internals - by David A. Solomon and Mark E. Russinovich with Andreas Polze Roadmap for Section 7.1 The Security Problem - a Definition Program & System Threats Security
Windows Operating System Internals - by David A. Solomon and Mark E. Russinovich with Andreas Polze
3
4
5
6
7
8
9
10
11
Consortium of US, UK, Germany, France, Canada, and the Netherlands in 1996 Became ISO standard 15408 in 1999 For more information, see http://www.commoncriteriaportal.org/ and http://csrc.nist.gov/cc
Windows XP and Server 2003 are undergoing evaluation
12
At the minimum they can destroy data They can easily gain access to FAT/FAT32 files (by booting DOS) They can gain access to NTFS files with NTFSDOS or ERD Commander (or free Linux-based tools) Encryption (like EFS) is the only way to secure data on systems that can have compromised physical security (like laptops)
On Windows 2000, must encrypt with domain credentials On Windows XP & higher, the local administrator account is no longer a recovery agent Since credentials are cached and can be cracked, must remove SAM's encryption key from system (use syskey level 1 or 2)
13