User Name Password Register
DaniWeb IT Discussion Community
All
What is DaniWeb IT Discussion Community?
You're currently browsing the Network Security section within the Tech Talk category of DaniWeb, a massive community of 425,929 software developers, web developers, Internet marketers, and tech gurus who are all enthusiastic about making contacts, networking, and learning from each other. In fact, there are 1,707 IT professionals currently interacting right now! Registration is free, only takes a minute and lets you enjoy all of the interactive features of the site.
Please support our Network Security advertiser: Programming Forums
Views: 2233 | Replies: 0
Reply
Join Date: Jan 2004
Location: uk
Posts: 35
Reputation: QKSTechTrainee is on a distinguished road 
Rep Power: 5
Solved Threads: 0
QKSTechTrainee's Avatar
QKSTechTrainee QKSTechTrainee is offline Offline
Light Poster

Preventing Execution of standalone EXEs from Flash Drive

  #1  
Jun 19th, 2006
Hello All,

Now then - this is a nasty one.

We run a windows domain with 2003 Enterprise servers and XP Pro clients. About a year ago we removed all the floppy drives from our client machines and installed some swish new USB2.0 adaptors in their place, and started issuing USB Flash Pens to staff and students. So far so good.

It came to our attention recently that students were playing some stupid game on client machines, by running a no-install-necessary standalone .exe direct from the flash pens (we use Group Policy to prevent them from installing software or saving .exe's to their network mapped home drives).


So, discovering the name of the illicit .exe, it was simple enough to use Group Policy to prevent execution of the .exe in question, but still we have a problem - What do we do to prevent them from running .exe's the name of which we don't yet know? It seems that as we stand any of our users could run a (potentially devastating) program on a networked computer and we couldn't do a thing to prevent it. So - anyone know of any .adm's I can use to prevent execution of .exe's from removable storage?


Incidentally - does anyone else see this as a potentially fatal flaw in Microsofts security? I dread to think what could happen if some clever little bugger started compiling his own .exe's...
AddThis Social Bookmark Button
Reply With Quote  
Reply

Only community members can participate in forum threads. You must register or log in to contribute.

DaniWeb Network Security Marketplace
Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)

 

Thread Tools Display Modes

Similar Threads
Other Threads in the Network Security Forum

All times are GMT -4. The time now is 9:09 pm.
Forum system based on vBulletin Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
©2003 - 2008 DaniWeb® LLC