Logo -Internet Security Systems

q000165

advICE :Support :KB : q000165

Grinding passwords on ICEcap

This article applies to: ICEcap.

SUMMARY

Like many management systems, ICEcap contains a web-based user interface. It is possible for a hacker to grind for the password.

DETAILS

Issue

This problem exists in virtually all networking systems. Grinding passwords is the process of running an automated program that attempts all possible passwords. Well-chosen passwords are immune to such attacks.

Affected Software Versions

All versions of ICEcap are potentionally vulnerable.

Solution

The first step is to choose a strong password for the system. Newer versions of ICEcap will warn you if it believes the password is too weak.

The next step is to make sure that BlackICE Agent is running on the ICEcap machine. BlackICE can detect password grinding attempts and provide increased security.

Acknowledgements

Network ICE would like to thank rain.forest.puppy for bringing this issue to our attention.

 
Keywords: ICEcap 
Version:  2.0.23 
Fixed:    2.0.23a 
Modified: 2000-05-15 
SEARCH



Privacy Policy |  Copyright Info