The UNIX and Linux Forums  


Go Back   The UNIX and Linux Forums > Special Forums > Security > IT Security RSS
.
google unix.com



More UNIX and Linux Forum Topics You Might Find Helpful
Thread Thread Starter Forum Replies Last Post
Who is using up all of my resources?! fender177 UNIX for Dummies Questions & Answers 1 07-16-2007 05:49 PM
Unix Resources Zeta_Acosta UNIX for Dummies Questions & Answers 2 05-02-2004 08:41 PM
System Resources? jwolfe UNIX for Advanced & Expert Users 3 12-08-2003 11:43 AM
check resources handynas UNIX for Dummies Questions & Answers 2 09-10-2002 03:44 PM

 
English Japanese Spanish French German Portuguese Italian Dutch Swedish Russian Norwegian Hungarian Hebrew Danish Bulgarian Greek Powered by Powered by Google
 
LinkBack Thread Tools Search this Thread Rate Thread Display Modes
Prev Previous Post   Next Post Next
  #1 (permalink)  
Old 01-20-2009
iBot's Avatar
iBot iBot is offline
Forum Robot Girl
  
 

Join Date: Sep 2000
Posts: 22,235
More resources ...

A bit of catchup with some useful resources.

The SecLists.Org Security Mailing List Archive is a list of a number of information security and related mailing lists.

The Top 100 Network Security Tools is not a vendor site as such, but a (briefly) annotated list of the most highly regarded (and used) security tools and utilities.  An awful lot of these are free.  Unfortunately, this is currently based on a 2006 survey, but has been updated in terms of individual tools.

For those teaching, or even seeking to understand, TCP/IP packet headers, a lovely collection of TCP/IP Header Drawings which illustrate the functions quite well.  There is no textual explanation;this is not a tutorial or introduction; but as a reminder of some of the most important information, it's great.

Open Source Security Testing Methodology Manual (OSSTMM) security testing or assessment framework.  It is interesting that, for an "open source" document, you can only download a partial version, or an old version, unless you are a "gold" member.  About half of the Lite 3 version is promotional material, the rest is a checklist of decent, but hardly surprising, checks to perform.

Promiscuous mode, the ability to read all traffic on the network segment even if it's not addressed to you, can be used to mount attacks.  It's usually considered a passive attack, because it is used for sniffing.  However, there are means to determine if a card on the system is in promiscuous mode.

Port knocking could be used to authenticate requests, but the request and authentication could be observed, and this may be security by obscurity.  Even worse, port knocking could be used to set up a covert channel ...

My security frameworks presentation, in PowerPoint.  (It's compatible with OpenOffice.)  Not just a deck of slides, it has a whole article on the topic embedded in the notes.  I used to point at the ISC2 awareness materials, but they seem to change.




More...
 

Bookmarks

Thread Tools Search this Thread
Search this Thread:

Advanced Search
Display Modes Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On




All times are GMT -4. The time now is 12:08 PM.


Powered by: vBulletin, Copyright ©2000 - 2006, Jelsoft Enterprises Limited. Language Translations Powered by .
vBCredits v1.4 Copyright ©2007 - 2008, PixelFX Studios
The UNIX and Linux Forums Content Copyright ©1993-2009. All Rights Reserved.Ad Management by RedTyger

Content Relevant URLs by vBSEO 3.2.0