Jump to content

Recommended Posts

Posted

Hi

 

I have come across a student , who is trying to run a password revealing software. He has extracted the exe on a USB and have tried to install from the USB drive.

Our GPO has stopped him from running this program and Trojan alert was triggered form our AV and I was able to find the user .Now I would like to inform the teacher in charge about his activity.

Mail PassView: Password recovery for Outlook, Outlook Express, Thunderbird, Windows Mail, and more...

PasswordFox - Reveal the user names/passwords stored in Firefox

Have you come across such activities by students. Can you please let me know if you have any policy in place , that students not allowed to install a software of this king on the school network.

 

Any suggestion much appreciated

 

Thanks

Posted

Most schools make their students sign an acceptable use policy of some sort. This should cover the issue that you talk about.

 

To be honest, this should be going straight to SLT as a serious security issue that they will deal with under the school's discipline procedures. There is both a Safeguarding risk and a DPA risk from attempting to get other passwords. It is not fyour job to discipline the student under such circumstances.

 

Document. Pass to SLT. ASAP

Posted

Had a student try and pull a similar trick on our network. Instead of giving him a bog-standard detention or whatever, he was made to help out our department for half an hour a day for two weeks (or something like that). He helped us go round the school checking for faults and cable-tieing kb/mouse cables to PCs- which was really useful as it was peak vandalism season!

 

I'm glad we gave him a bit of a nicer punishment than detention, as he went on to write a useful app for students to use at school for his computing coursework (obviously we thoroughly checked his source code before installing it on the network :D).

 

It is written into school policy that students will not attempt to install software of any type on the computers.

Posted
We recently had a similar incident. The student's Head of House took it very seriously. The student lost his network access for a few days until he and his mother had a meeting with the HoH and re-signed the AUP. The student still has certain sanctions and is watched fairly carefully.
Posted
We recently had a similar incident. The student's Head of House took it very seriously. The student lost his network access for a few days until he and his mother had a meeting with the HoH and re-signed the AUP. The student still has certain sanctions and is watched fairly carefully.

 

That sound fair.

 

As @elsiegee40 said @genesis

Document. Pass to SLT. ASAP
The soon the better.
  • 1 month later...
Posted

Many years ago a sixth form student here wrote a virus and brought it in to school and left it on one of the PC's.

 

It was found quite by chance and was probably harmless but I reported the issue to the Headteacher at the time who called him in to his office, the student sat down and I explained what had happened and eventually he confessed.

 

The Head then said.."you better get your bag then...." to which the student looked quizzically at us both, then the Head said "I'm throwing you out the school....."

Posted

We had a set of students earlier in the year who'd managed to use a boot disk of some kind to create admin users on PCs. Securus and FEP flagged up that they were then running all sorts of software once on with these accounts, including LOIC and some exes to kill Impero etc.

 

We put the evidence together and went to the principal with it, and they were collared.

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now



×
×
  • Create New...