The f***ck...

Zetta_x

The Insane Statistician
Member
Joined
Mar 4, 2010
Messages
1,844
Trophies
0
Age
33
XP
574
Country
United States
soulx said:
Thesolcity said:
Hm, my school had me fix a couple problems and patch a security hole. This was after I made all computers in the school pop up with "U MAD?" and "Liquid Filth" playing in the background.
happy.gif


The IT guy got mad though saying I broke all the computers. Funny thing is I don't know how he got hired, he thought Norton was the best AV and didn't know what Linux was.
dry.gif

The majority of you guys seem extremely full of yourself.

"I'M SMARTER THAN THE IT GUY, HE DOESN'T KNOW AS MUCH AS ME, HE SHOULDN'T BE HIRED, HURR DURR"


At least at my college, they pretty much require full time IT guys to have some sort of computer science degree and some certificates relating to the position they want to apply for (like website, hardware, software.. etc) similar to a teacher that would require some sort of degree. It makes sense that it would be awkward for the student to know more than the instructor.

However, computer science is a large field of stuff. Things aren't always as narrowed as windows platforms. It's possible for an IT guy to be hired who specializes in coding and website design. So while students may be smarter with windows platforms, they may not be necessarily smarter with website design or coding in a specific language.

Plus, while building the group policy for servers, we pretty much find any possible hole we can and block it; but I still found one out where I can use sophos to scan a directory (which it has access to directories students can't), then generate a file that has access to restricted directories and be able to sneak in like that. So finding a hole doesn't make it necessarily smarter than IT guys but something as simple as mapped drives is a given.

QUOTE
Well, When I need to get to C: on my school pcs, I just run a bat file that does this

start explorer.exe c:

Yep. Even more stupid then remapping the drive letter.

Though the only reason I need C: access was that they blocked mspaint and notepad exec.

I had to use the rightclick>new text file to make the .bat

That's pretty smart. In windows 2008 R2, pretty much all of the programs are ran under user level (except for a few programs like our anti-virus). Whatever the users can't do, batch files cannot do either (not to mention we have blocked batch files). Not only did we hide the C:\ from user view, we pretty much restricted all access. The only communication that can be made to the C: is the user profiles where it loads the desktop user's cannot write anything there (just read). Which is why the only available way to navigate onto the rest of the drive is the use with something that has native administration access (like an anti-virus cause it needs to be able to scan the system).

I'm like 100% sure we blocked off mapping drives, but it's something I got to check when I get into work. Not only can a user see the location of the network storage that the c: maps, but just mapping to r: would un-restrict it.
 

Tom Bombadildo

Dick, With Balls
OP
Editorial Team
Joined
Jul 11, 2009
Messages
14,503
Trophies
2
Age
28
Location
I forgot
Website
POCKET.LIKEITS
XP
18,549
Country
United States
I managed to get around the web filter as well. Apparently it blocks the site name letter for letter, so if you add, say "https" to the url it works. I have NO idea why they didn't block the IPs of the site.
 

Zetta_x

The Insane Statistician
Member
Joined
Mar 4, 2010
Messages
1,844
Trophies
0
Age
33
XP
574
Country
United States
suprgamr232 said:
I managed to get around the web filter as well. Apparently it blocks the site name letter for letter, so if you add, say "https" to the url it works. I have NO idea why they didn't block the IPs of the site.

Lmao, I wonder if they only blocked port 80. There is something in windows called IPsec which you can manage which connections are allowed through port 80 (standard http port). At my school, it's possible to allow our intranet sites (our whole university domain and all of the servers). However, you also need to configure it for port 443 (https); I wonder if they forgot to do that =P
 

Tom Bombadildo

Dick, With Balls
OP
Editorial Team
Joined
Jul 11, 2009
Messages
14,503
Trophies
2
Age
28
Location
I forgot
Website
POCKET.LIKEITS
XP
18,549
Country
United States
Zetta_x said:
suprgamr232 said:
I managed to get around the web filter as well. Apparently it blocks the site name letter for letter, so if you add, say "https" to the url it works. I have NO idea why they didn't block the IPs of the site.

Lmao, I wonder if they only blocked port 80. There is something in windows called IPsec which you can manage which connections are allowed through port 80 (standard http port). At my school, it's possible to allow our intranet sites (our whole university domain and all of the servers). However, you also need to configure it for port 443 (https); I wonder if they forgot to do that =P

Haha forgot or just don't know how. I'll have to take a look at it...errr have a friend take a look at it as they monitor me like a damn hawk now. Oh well, can't wait! Finally Youtube at school!
 
General chit-chat
Help Users
    Psionic Roshambo @ Psionic Roshambo: Lol