MIT Lincoln Laboratory has developed a Network Security Analysis application known as NetSPA. In short, I am very impressed with this tool. NetSPA (Network Security Planning Architecture) correlates firewall rules / ACL’s with vulnerability data such as Nessus output. This tool then visually plots attack paths through an interactive interface that lets you model different [...]
Continue reading...1. July 2008
A friend of mine is works in the financial services market. His company has a need to record Instant Messenger video sessions (think AOL and MSN webcam ) and archive them. They need to do this on the network as opposed to having client software do it locally on the desktop. This is due to [...]
Continue reading...11. July 2007
eWeek has a decent RFP template you can use when selecting a company to provide PenTest services. It’s not perfect but it is a great start if you have nothing. The RFP is on page 44 of the July9th issue. If you happen to be looking for those services check out NMI InfoSecurity Solutions. They [...]
Continue reading...6. July 2007
I saw this one on Slashdot the other day http://science.slashdot.org/article.pl?sid=07/07/03/0228246&from=rss Quote from article: “Once manufactured under an exclusive contract with the US government, this recently declassified window film is now available to the public. But don’t expect to see it on store shelves anytime soon. Currently, it’s only available directly from the manufacturer, and at [...]
Continue reading...3. November 2006
The Internet Storm Center at SANS has a post with a list of Malware Analysis tools submitted mostly by readers. If you are thinking about dissecting that piece of malware you just found, take a look at this list of helpers. Unless you do this a lot you’ve probably never heard of most of these [...]
Continue reading...3. November 2006
The clever folks over at Sunbelt Software have created a great free service to analyze malware samples called CWSandbox. How it works is you upload your suspected malware sample to their site. The CWSandbox then runs the malware and gives you a detailed report of what it did, it’s name if known, and a bunch [...]
Continue reading...2. November 2006
VA provider NetVigilance has released a free Honeypot for Windows called WinHoneyd. It is a low-interaction (it simulates services such as RPC, HTTP, FTP, etc.) honeypot based on the Open Source honeyd software written by Niels Provos. Instructions, sample configs and FAQ’s can be found on the NetVigilance site. –Chris Technorati Tags: WinHoneyd, honeypot, netvigilance, [...]
Continue reading...27. October 2006
In the “WEB 2.0″ world we live in it was a matter of time before Ajax security tools showed up. Ener OPScanner, an Ajax based port scanner. I definitely wouldn’t start making plans to replace NMAP with it. It’s more a novelty and a useful way to can yourself when making basic firewall or ACL [...]
Continue reading...Bad Behavior has blocked 1013 access attempts in the last 7 days.
10. February 2009
0 Comments