| Javascript Feeds RSS Feed Security Dashboard | SearchSecurity.com |
|
Downloads
|
|
Nessus
|
|
Nmap
|
|
Free NT Security Tools The point to this paper is that NT also has good free security tools just like Linux. This is not a tutorial on these products however. What I’m going to do is run through an incident I had a few weeks ago. I’ll being using these free tools I have been talking about. I will do this step by step to show you how they can be used to resolve some of the basic security issues you might run into.
03/24/2004
|
|
Trinux Documentation Trinux is a ramdisk-based Linux distribution that was first released in April of 1998 and has been maintained on and off since then. Like other Linux distributions it consists of a Linux kernel, base utilities, and a variety f packages. Like many embedded distributions, Trinux uses Busybox, which contains small versions of common utilities. See http://www.busybox.net.
03/24/2004
|
|
LaBrea – A New Approach To Securing Our Networks This paper has been written to illustrate two of the things that are overlooked with most levels of security implemented to provide a depth of defense: what is happening to the IP addresses on the network that are not being used, and how can these be used to tighten security? If available IP addresses could be used to hold spreading worms or probing systems, then there would be a tangible benefit. LaBrea, an application to address this concept, will be discussed. As LaBrea was written due to the Code Red outbreak, some insight will be provided into how this worm could defeat existing security mechanisms and what benefit the tool LaBrea could offer. To allow us this insight we will look into the history and technology behind this application, the networking fundamentals that allow it to work, and then study the failings of other defenses within existing security solutions.
03/24/2004
|
|
Identifying ICMP Hackery Tools Used In The Wild Today Several tools exist in the wild today that allow a malicious computer attacker to send crafted ICMP datagrams. Those datagrams can be used for various tasks: host detection, advanced host detection, Operating System Fingerprinting and more. This article will examine whether we can identify the different tools used for ICMP hackery that are available in the wild today.
03/22/2004
|
|
Security Scanners A scanner is a program that automatically detects security weaknesses in a remote or localhost.". Scanners are important to Internet security because they reveal weaknesses in the network. System administrators can strengthen the security of networks by scanning their own networks. The primary attributes of a scanner should be: The capability to find a machine or network. The capability to find out what services are being run on the host ( once having found the machine). The capability to test those services for known holes.
03/10/2004
|
|
Using GnuPG with Pine for Secure E-Mail Many people have no problems sending sensitive data via e-mail. Most of us do not know how easy it is for anybody to read it. Just because somebody holds the title of "Systems Administrator" does not mean they can be trusted. What is stopping them from reading your e-mail? Nothing. This is where PGP comes in; it is easy-to-use encryption meant for the common person.
By Ryan W. Maple, 03/08/2004
|
|
Dsniff 'n the Mirror This is a practical step by step guide showing how to use Dsniff, MRTG, IP Flow Meter, Tcpdump, NTOP, and Ngrep, and others. It also provides a discussion of how and why we should monitor network traffic.
03/03/2004
|
|
Remote Syslogging - A Primer The syslog daemon is a very versatile tool that should never be overlooked under any circumstances. The facility itself provides a wealth of information regarding the local system that it monitors.
03/02/2004
|
|
No 'A' Word In Time Maintaining accurate time is required for security. Many tools and devices exist to ensure that accurate time is maintained on an organization's system. It makes the job of analysis and system administration much easier to deal with, as well.
03/02/2004
|
|
Remote Syslog with MySQL and PHP Msyslog has the ability to log syslog messages to a database. This allows for easier monitoring of multiple servers and the ability to be display and search for syslog messages using PHP or any other programming language that can communicate with the database.
03/02/2004
|
|
Page: 1 2 34 |