> 
> Anyone have any thoughts on VNC's security risk level?
> 

High.

don't need username, just password
brute force cracking just got easier.

no encryption, everything sent in plain text.

if you MUST vnc, ssl wrap it.

> -- 
> Matt Whelan <[EMAIL PROTECTED]>
> 

-- 
Michael Scheidell
SECNAP Network Security, LLC
(561) 368-9561 [EMAIL PROTECTED]
http://www.secnap.net/

Reply via email to