| View previous topic :: View next topic |
| Author |
Message |
RottenApple one bitch wonder
Joined: 26 May 2008 Posts: 3 Location: Cherrywood, Ireland
|
Posted: Mon May 26, 2008 6:12 pm Post subject: Spyware on Dell MIS machines |
|
|
Does anyone know why we have encase forensic software on our MIS machines? Does management spy on us? The "enstart.exe" is installed on all machines and it belongs to the encase software. It's part of the default image.
They even admit to use this SW:
http://www.secinfo.com/DB/SEC/2007-000/1193/125-2541/41-016.jpg |
|
| Back to top |
|
 |
Sponsor
|
|
 |
Rocke_T_Sinetist Moderator
Joined: 26 Aug 2005 Posts: 2609 Location: DFW airport
|
Posted: Mon May 26, 2008 7:13 pm Post subject: |
|
|
There are circumventions to Dell's internal firewall against external sites they deem 'off limits'.
The spyware can be searched so as to determine if a user is invoking such circumventions.
Then there will be a counterblock tool, and a counter-counterblock tool. It's just like the US and the Soviets indulged post-WW2.
Cold war. Duck and cover! _________________ Rocke T Sinetist
as in, 'it doesn't take a...' |
|
| Back to top |
|
 |
FallenAngel Super Hater
Joined: 21 Feb 2006 Posts: 1493
|
Posted: Mon May 26, 2008 9:25 pm Post subject: |
|
|
The forensic software is also tied to NightWatchman software.
Yes, it's snoopware. Yes it's there to make sure that you aren't going to unsanctioned sites, and if you are, how are you circumventing the security. It's how they keep an eye on your surfing habits that may be one day deemed termination worthy as violation of Code Of Conduct.
It also tracks emails and the like. |
|
| Back to top |
|
 |
Rocke_T_Sinetist Moderator
Joined: 26 Aug 2005 Posts: 2609 Location: DFW airport
|
Posted: Mon May 26, 2008 10:28 pm Post subject: |
|
|
What a conundrum.
At the same time "everybody knows everything", more and more, "nobody knows shit". _________________ Rocke T Sinetist
as in, 'it doesn't take a...' |
|
| Back to top |
|
 |
Sponsor
|
|
 |
RottenApple one bitch wonder
Joined: 26 May 2008 Posts: 3 Location: Cherrywood, Ireland
|
Posted: Tue May 27, 2008 6:15 am Post subject: |
|
|
| But who is analyzing the data? Is it the local MIS guys or is there a dedicated department in the states? |
|
| Back to top |
|
 |
FallenAngel Super Hater
Joined: 21 Feb 2006 Posts: 1493
|
Posted: Tue May 27, 2008 10:43 am Post subject: |
|
|
| I wouldn't know first hand, but one could suggest that the location of investigations would originate at the source which would be Round Rock. |
|
| Back to top |
|
 |
Rocke_T_Sinetist Moderator
Joined: 26 Aug 2005 Posts: 2609 Location: DFW airport
|
Posted: Tue May 27, 2008 11:40 am Post subject: |
|
|
The snoopware can be set to report to anywhere. When they find the outbound proxies, they add those to the list of firewalled destinations.
You can't get Dell IT to do ANYthing useful, like update or implement tools. They're too busy doing nonsense like this, which produces absolutely nothing. _________________ Rocke T Sinetist
as in, 'it doesn't take a...' |
|
| Back to top |
|
 |
|