Jump to content

BadTunnel: a vulnerability that affect every windows since 95

jos
On 6/18/2016 at 9:22 AM, ThinkWithPortals said:

Paranoia mode engaged.

Awareness and paranoia are two very different things my friend

We have a NEW and GLORIOUSER-ER-ER PSU Tier List Now. (dammit @LukeSavenije stop coming up with new ones)

You can check out the old one that gave joy to so many across the land here

 

Computer having a hard time powering on? Troubleshoot it with this guide. (Currently looking for suggestions to update it into the context of <current year> and make it its own thread)

Computer Specs:

Spoiler

Mathresolvermajig: Intel Xeon E3 1240 (Sandy Bridge i7 equivalent)

Chillinmachine: Noctua NH-C14S
Framepainting-inator: EVGA GTX 1080 Ti SC2 Hybrid

Attachcorethingy: Gigabyte H61M-S2V-B3

Infoholdstick: Corsair 2x4GB DDR3 1333

Computerarmor: Silverstone RL06 "Lookalike"

Rememberdoogle: 1TB HDD + 120GB TR150 + 240 SSD Plus + 1TB MX500

AdditionalPylons: Phanteks AMP! 550W (based on Seasonic GX-550)

Letterpad: Rosewill Apollo 9100 (Cherry MX Red)

Buttonrodent: Razer Viper Mini + Huion H430P drawing Tablet

Auralnterface: Sennheiser HD 6xx

Liquidrectangles: LG 27UK850-W 4K HDR

 

Link to comment
Share on other sites

Link to post
Share on other sites

On 18/06/2016 at 3:34 PM, Djole123 said:

Meanwhile at my PC, ten minutes after reading this:

screen-shot-2015-01-09-at-12-27-11-pm-1.png

 

22 hours ago, Coaxialgamer said:

Meanwhile,  on my pc :

2000px-StartingMsdos2.jpg

 

You can never be too safe,  can you? 

Hate to break the bad news but both WFW3.11 and DOS 6 support NetBIOS via NDIS. 

Main Rig:-

Ryzen 7 3800X | Asus ROG Strix X570-F Gaming | 16GB Team Group Dark Pro 3600Mhz | Corsair MP600 1TB PCIe Gen 4 | Sapphire 5700 XT Pulse | Corsair H115i Platinum | WD Black 1TB | WD Green 4TB | EVGA SuperNOVA G3 650W | Asus TUF GT501 | Samsung C27HG70 1440p 144hz HDR FreeSync 2 | Ubuntu 20.04.2 LTS |

 

Server:-

Intel NUC running Server 2019 + Synology DSM218+ with 2 x 4TB Toshiba NAS Ready HDDs (RAID0)

Link to comment
Share on other sites

Link to post
Share on other sites

30 minutes ago, Master Disaster said:

 

Hate to break the bad news but both WFW3.11 and DOS 6 support NetBIOS via NDIS. 

Meanwhile at my desk, about 20 minutes after reading this:

box_open.jpg

Athlon X2 for only 27.31$   Best part lists at different price points   Windows 1.01 running natively on an Eee PC

My rig:

Spoiler

Celeronator (new main rig)

CPU: Intel Celeron (duh) N2840 2.16GHz Dual Core

RAM: 4GB DDR3 1333MHz

HDD: Seagate 500GB

GPU: Intel HD Graphics 3000 Series

Spoiler

Frankenhertz (ex main rig)

CPU: Intel Atom N2600 1.6GHz Dual Core

RAM: 1GB DDR3-800

HDD: HGST 320GB

GPU: Intel Graphics Media Accelerator (GMA) 3600

 

Link to comment
Share on other sites

Link to post
Share on other sites

45 minutes ago, Djole123 said:

Meanwhile at my desk, about 20 minutes after reading this:

box_open.jpg

Haha, I'm currently running an El Capitan Hackintosh, I use Mac OS more than Windows tbh. 

Main Rig:-

Ryzen 7 3800X | Asus ROG Strix X570-F Gaming | 16GB Team Group Dark Pro 3600Mhz | Corsair MP600 1TB PCIe Gen 4 | Sapphire 5700 XT Pulse | Corsair H115i Platinum | WD Black 1TB | WD Green 4TB | EVGA SuperNOVA G3 650W | Asus TUF GT501 | Samsung C27HG70 1440p 144hz HDR FreeSync 2 | Ubuntu 20.04.2 LTS |

 

Server:-

Intel NUC running Server 2019 + Synology DSM218+ with 2 x 4TB Toshiba NAS Ready HDDs (RAID0)

Link to comment
Share on other sites

Link to post
Share on other sites

4 hours ago, Master Disaster said:

 

Hate to break the bad news but both WFW3.11 and DOS 6 support NetBIOS via NDIS. 

Well this can't be hacked.  Checkmate NSA/hackers! 

Boulier1.JPG

 

AMD Ryzen R7 1700 (3.8ghz) w/ NH-D14, EVGA RTX 2080 XC (stock), 4*4GB DDR4 3000MT/s RAM, Gigabyte AB350-Gaming-3 MB, CX750M PSU, 1.5TB SDD + 7TB HDD, Phanteks enthoo pro case

Link to comment
Share on other sites

Link to post
Share on other sites

16 hours ago, Energycore said:

Awareness and paranoia are two very different things my friend

Oh, I know. I'm not criticising you for being paranoid, it's me that's paranoid :P

Project White Lightning (My ITX Gaming PC): Core i5-4690K | CRYORIG H5 Ultimate | ASUS Maximus VII Impact | HyperX Savage 2x8GB DDR3 | Samsung 850 EVO 250GB | WD Black 1TB | Sapphire RX 480 8GB NITRO+ OC | Phanteks Enthoo EVOLV ITX | Corsair AX760 | LG 29UM67 | CM Storm Quickfire Ultimate | Logitech G502 Proteus Spectrum | HyperX Cloud II | Logitech Z333

Benchmark Results: 3DMark Firestrike: 10,528 | SteamVR VR Ready (avg. quality 7.1) | VRMark 7,004 (VR Ready)

 

Other systems I've built:

Core i3-6100 | CM Hyper 212 EVO | MSI H110M ECO | Corsair Vengeance LPX 1x8GB DDR4  | ADATA SP550 120GB | Seagate 500GB | EVGA ACX 2.0 GTX 1050 Ti | Fractal Design Core 1500 | Corsair CX450M

Core i5-4590 | Intel Stock Cooler | Gigabyte GA-H97N-WIFI | HyperX Savage 2x4GB DDR3 | Seagate 500GB | Intel Integrated HD Graphics | Fractal Design Arc Mini R2 | be quiet! Pure Power L8 350W

 

I am not a professional. I am not an expert. I am just a smartass. Don't try and blame me if you break something when acting upon my advice.

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

...why are you still reading this?

Link to comment
Share on other sites

Link to post
Share on other sites

11 hours ago, Djole123 said:

Meanwhile at my desk, about 20 minutes after reading this:

box_open.jpg

the last good one

One day I will be able to play Monster Hunter Frontier in French/Italian/English on my PC, it's just a matter of time... 4 5 6 7 8 9 years later: It's finally coming!!!

Phones: iPhone 4S/SE | LG V10 | Lumia 920 | Samsung S24 Ultra

Laptops: Macbook Pro 15" (mid-2012) | Compaq Presario V6000

Other: Steam Deck

<>EVs are bad, they kill the planet and remove freedoms too some/<>

Link to comment
Share on other sites

Link to post
Share on other sites

On 19/06/2016 at 10:29 PM, Master Disaster said:

I thought the opposite but recent reading has proved me to be incorrect. While no software should have a need for NetBIOS anymore apparently a lot of networking hardware does still use the protocol which is why MS keep it active on modern operating systems. If they removed it then many networks would lose capabilities. 

 

I'm still unsure if it's running all the time or only when it's required, common sense would dictate the latter but this is Microsoft. 

The amount of unnecessary services that I've had to disable on my desktop and laptop (Windows 7 & 10 respectively)...... It's a bloody joke.  Though having to disable the Nvidia streaming service for the shield tablet I'll never own is annoying as well. 

"We also blind small animals with cosmetics.
We do not sell cosmetics. We just blind animals."

 

"Please don't mistake us for Equifax. Those fuckers are evil"

 

This PSA brought to you by Equifacks.
PMSL

Link to comment
Share on other sites

Link to post
Share on other sites

8 hours ago, Coaxialgamer said:

Well this can't be hacked.  Checkmate NSA/hackers! 

 

 

There we freakin' go. Everyone should use an abacus. It's safe and tested, and it's in use for milleniums! Although modern and fasters solutions do exist, the abacus can't be hacked. Brilliant!

Athlon X2 for only 27.31$   Best part lists at different price points   Windows 1.01 running natively on an Eee PC

My rig:

Spoiler

Celeronator (new main rig)

CPU: Intel Celeron (duh) N2840 2.16GHz Dual Core

RAM: 4GB DDR3 1333MHz

HDD: Seagate 500GB

GPU: Intel HD Graphics 3000 Series

Spoiler

Frankenhertz (ex main rig)

CPU: Intel Atom N2600 1.6GHz Dual Core

RAM: 1GB DDR3-800

HDD: HGST 320GB

GPU: Intel Graphics Media Accelerator (GMA) 3600

 

Link to comment
Share on other sites

Link to post
Share on other sites

On 19/06/2016 at 10:29 PM, Master Disaster said:

I thought the opposite but recent reading has proved me to be incorrect. While no software should have a need for NetBIOS anymore apparently a lot of networking hardware does still use the protocol which is why MS keep it active on modern operating systems. If they removed it then many networks would lose capabilities. 

 

I'm still unsure if it's running all the time or only when it's required, common sense would dictate the latter but this is Microsoft. 

Well this is why I asked someone above if disabling the TCP NetBIOS helper is fine if I didn't network with any old hardware or OS's below win 7. 

 

Because even on Windows 10 this service starts automatically!  and one less service is one less service running right.

 

The answer: yep it's safe. 

Link to comment
Share on other sites

Link to post
Share on other sites

On ‎6‎/‎20‎/‎2016 at 8:52 PM, Coaxialgamer said:

Well this can't be hacked.  Checkmate NSA/hackers! 

Boulier1.JPG

 

Lol but who is using an abacus in 2016...........

Judge a product on its own merits AND the company that made it.

How to setup MSI Afterburner OSD | How to make your AMD Radeon GPU more efficient with Radeon Chill | (Probably) Why LMG Merch shipping to the EU is expensive

Oneplus 6 (Early 2023 to present) | HP Envy 15" x360 R7 5700U (Mid 2021 to present) | Steam Deck (Late 2022 to present)

 

Mid 2023 AlTech Desktop Refresh - AMD R7 5800X (Mid 2023), XFX Radeon RX 6700XT MBA (Mid 2021), MSI X370 Gaming Pro Carbon (Early 2018), 32GB DDR4-3200 (16GB x2) (Mid 2022

Noctua NH-D15 (Early 2021), Corsair MP510 1.92TB NVMe SSD (Mid 2020), beQuiet Pure Wings 2 140mm x2 & 120mm x1 (Mid 2023),

Link to comment
Share on other sites

Link to post
Share on other sites

Vulnerability according to the Netbios protocol is realy realy old news allready.

For the users that exaly use it for file and printer sharing in their network might want to install the patch.

But i dont even use that, and the first thing i allways do is disabling netbios over tcp entirely.

Because technically netbios is kinda old, and you dont realy need it anymore.

Link to comment
Share on other sites

Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now

×