Chapter 14

IIS 6.0 runs as a low-privileged account. By default, the IIS 6.0 work process is a low-privileged account called NetworkService. Running IIS 6.0 as a low-privileged account greatly reduces a hacker's ability to perform broad-based system attacks. FTP user isolation. Hackers of any operating system using TCP/IP haven't been able to invade via FTP. ................
................