  Overhere
@65.185.x.x
| reply to TK Junk Mail Re: Now only if we had another PhD candidate
From what I understand, with Windows boxes....
1. Windows Client connects to our discovery device (this could be a web site etc...) 2. Windows client has timestamps turned off. syn/ack begins. 3. discovery device replies to the windows box with timestamp information included. 4. Windows box ignores that timestamps are turned off and decides to send timestamps in return. Hummmm windows is such a smart OS.
Then fingerprinting can begin. Still unsure of even if this method of fingerprinting is valid but I would assure you that if it is, it will not be patched by OS vendors if the vunerability is patched it may defeat the efforts of our goverment. May I remind everyone of the Patroit Act. |