Turn Off Hidden Shares

Topics Windows Vista, Windows XP on May 5th, 2007

With all the attention that spyware, phishing, e-mails, and corporate hackers get on any given day, we mustn’t forget that good ol’ itself can be the source of a security hole. It turns out that Vista has a back door that could permit someone else to read any file on your , and the same problem exists in 2000 and XP. But don’t expect a fix anytime soon. This bug is a “feature.”

Before you can copy files from one PC to another on your network, you need to share the folder containing the files. That’s contrary to conventional wisdom, which holds that you should share only those folders you want made public and keep everything else unshared.

Enter Administrative Shares, which let network administrators perform maintenance remotely. The feature—which is turned on by default works by sharing your entire , and then hiding the share by adding a $ character as a . But unless you’re in a corporate environment, you have nothing to gain by leaving this back door open and everything to lose.

1 Everything Looks Peachy
Open Explorer, navigate to the Network folder in the tree, and select your own PC to see all (visible) shared folders.

2 Expose the Shares
To see a share, type it into Explorer’s address bar, complete with trailing $, and press Enter. Easy—if you know the name.

3 See Everything That Can Be Seen
Use the Computer Management tool (comp mgmt.msc) to see a complete list of all and visible shares on your PC. You can right-click any shared item here and select Stop Sharing to get rid of it, but will share it again when you restart unless you disable the feature altogether.

4 Plug the hole
In the Registry (Start | Run, regedit), navigate to HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\lanmanserver\parameters, and create two new DWORD values, AutoShareServer and AutoShareWks, both set to zero.

5 Reboot and take stock
You’ll need to restart for the change to take effect. But this time, the shares have been banished to the land of wind and ghosts!

Share and Enjoy: These icons link to social bookmarking sites where readers can share and discover new web pages.
  • del.icio.us
  • StumbleUpon
  • Facebook
  • Google
  • Furl
  • Live
  • MisterWong.DE
  • NewsVine
  • Reddit
  • Slashdot
  • Technorati
  • YahooMyWeb
  • BlinkList
  • description
  • Fark
  • Netvouz
  • Spurl
  • MisterWong
  • Webnews.de
  • e-mail

Tags:, , , , , , , , , , , , ,

Related posts

One Response to “Turn Off Hidden Shares”

  1. Comment by StumbleUpon » SU Stumble Tweaks & Tricks: Got A SECURITY Tip ? Post it Here

    [...] View: Full Article @ Arstechnicasponsor c39:28amPlug one of the Big holes in Vista….Hidden Shares Turn Off Hidden Shares With all the attention that spyware, phishing, e-mails, and corporate hackers get on any given [...]

Leave a Reply