Impersonation
The call to CoInitializeSecurity() also has an impersonation level parameter. The impersonation levels listed in Table 12.3 are available. Impersonation is the capability of a thread to execute in a security context that is different from the context of the process that owns the thread.
Remote access client impersonation occurs when a person takes over an existing authenticated connection. The intruder waits until the connection is authenticated and then obtains the connection parameters, disconnects the user, and takes control of the authenticated connection.
Remote server impersonation occurs when a computer appears to the remote access client as the remote access server. The impersonator appears to verify the remote access ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access