newsletterlibrary.com

Top : Computers : Software : Operating Systems : Linux :
Security

Categories
Advisories and Patches 
Articles 
Distributions 
Documentation 
Kernel 

Websites
Attempts to "harden" (tighten the configuration of) a Red Hat or Mandrake Linux installation.
site exerpt
BASTILLE-LINUX  Hardening program locks down an operating system, proactively configuring the system for increased security and decreasing its susceptibility to compromise. Bastille can also assess a system's current state of hardening, granularly reporting on each of the security settings with which...
http://www.bastille-linux.org/

Information collected from many sources: feature articles, advisories, news, documentation, forums, links.
site exerpt
LinuxSecurity.com  Digital is happy to announce the release of EnGarde Secure Community 3.0.2 (Version 3.0, Release 2 This release includes several bug fixes and feature enhancements to the Guardian Digital WebTool, the SELinux policy, and the LiveCD environment. LinuxSecurity.com Features: SELinux...
http://www.linuxsecurity.com/

Known vulnerabilities on the Linux system with detailed description.
site exerpt
Exploit world Linux section  Anyone running vulnerable version of Vixie crontab. Date:10 May 1998 (actually it is an older problem) Exploit & full info:Available here Overflows in Minicom Description:The terminal emulation modem program minicom has a number of blatant overflows. Author:Tiago F P Rodrigues...
http://www.insecure.org/sploits_linux.html

Step by step, example driven, HOWTO on building a Linux box with an aim towards strong security. Also, links to resources and mailing lists.
site exerpt
Dranch's HomePage Linux: A -REAL- O/S  Linux is a freely available UNIX operating system that is gaining momentum every day. Often pronounced with a short i and with the first syllable stressed i.e LIH-nucks it was originally released by Linus Torvalds (See a picture of Linus...
http://www.ecst.csuchico.edu/~dranch/LINUX/index-linux.html

Companion Website to Hacking Linux Exposed, Osborne/McGraw-Hill. Source code from the book, updates, and other tools to secure your Linux system.
site exerpt
Hacking Linux Exposed  Linux network by thinking like an attacker. In Hacking Linux Exposed, Second Edition we are able to cover Linux hacking in more detail than ever before. We are able to show you where Linux may differ from other Unix-like systems...
http://www.hackinglinuxexposed.com/

InterSect Alliance are the creators of the SNARE Linux C2-style Audit module, and have a consulting background in advanced audit analysis, intrusion detection systems, and forensics for Unix and other operating systems.
site exerpt
InterSect Alliance Open Source  Statistics on the hits to the sourceforge site and our own webserver are available from this link Snare Statistics.Snare Generator Version 1.2 is now availableSnare for Windows Vers 2.5.1 now availableSnare for Tru64 now available to selected usersSnare Server Release...
http://www.intersectalliance.com/projects/Snare/index.html

A kernel module that detects and stops overflow attacks, like Linux Buffer Overflow attack security, which aim to get an interactive access to the system.
site exerpt
Penetrator MegaBlaster against overflow attacks  Please click the refresh button on your browser in order to get the updated page. Penetrator MegaBlaster is a kernel module that detects stops overflow attacks (like the famous buffer overflow attack which aim to get an interactive access to...
http://www.angelfire.com/linux/borisl/MegaBlaster.html

Selective privileges (capabilities), cryptography, random number devices.
site exerpt
LinuxSecurity.com  Digital is happy to announce the release of EnGarde Secure Community 3.0.2 (Version 3.0, Release 2 This release includes several bug fixes and feature enhancements to the Guardian Digital WebTool, the SELinux policy, and the LiveCD environment. LinuxSecurity.com Features: SELinux...
http://www.linuxsecurity.com/fea..._stories/kernel-24-security.html

Linuxbroker provides all types of resources you need like Linux newsgroups search engine, daily news, howtos, applications releases tracking and security alerts.
site exerpt
Linuxbroker SecuriTeam Weaknesses  SecuriTeam Weakness SecuriTeam Exploits LinuxToday Security SecurityFocus Appfluent Database IDS Local Buffer Overflow curl URL Parsing Off by One Buffer Overflow SugarSuite Open Source Code Execution (acceptDecline) sobexsrv Format String Vulnerability Webmin Format String Vulnerability (Perl, miniserv.pl) Copyright 2000, 2001,...
http://security.linuxbroker.com

DARPA-funded community project to audit the source of all Linux applications for security vulnerabilities.
https://www.sardonix.org/

Not only does it encrypt data, it also hides it such that it cannot be proved to be there.
site exerpt
StegFS A Steganographic File System for Linux  Not only does it encrypt data, it also hides it such that it cannot be proved to be there. The source code is now available here. It is released under the GNU GPL. The current StegFS release is version 1.1.4...
http://www.mcdonald.org.uk/StegFS/

Praetor is a kernel-based "Security Enabler" for Linux that provides fine-grained access control.
site exerpt
Googgun Technologies Inc  Eliminate worries about the security of your servers, databases, documents, customer information, trade secrets, networks, firewalls, and workstations. To see how it can help you with Sarbanes-Oxley compliance see trustifier-sox.pdf To learn more see Trustify.pdf. Read the TrustEvolution.pdf to get...
http://www.googgun.com/

Designed for System Administrators, to handle user logins for several computers running Linux. It works with a console interface, based on the CDK library that uses ncurses. Import data from csv files and export to text files with a free definable format.
http://passwordms.sourceforge.net/

Computer and Technology articles, and a members page for the "digital underground" community with text, programs, and security information.
site exerpt
SHOK:DU  Will the real terrorists please stand up? 11/18/03- Computer Security Basics: Eyes of the Enemy 11/16/03- Digital Underground 2K4 11/14/03- Fun With WiFi: Part 1 11/10/03- The New Era of P2P: BitTorrent 11/7/03- Terrorism, Confusion, and one man's quest to...
http://shoktek.com/du/

This is a companion website for "SSH: The Secure Shell The Definitive Guide" by Daniel Barrett and Richard Silverman (O'Reilly, 2003). It contains technical details on the SSH as well as sample book material.
site exerpt
SSH, The Secure Shell: The Definitive Guide  This site is operated by the authors of the O'Reilly book on SSH. The first edition was published in February of 2001, by Dan Barrett and Richard Silverman. Joined by Robert Byrnes, we completed the second edition in May of...
http://www.snailbook.com

This site on Linux and security covers firewalls (iptables), intrusion detection systems (snort), securing services, and Linux security in general. The aim is to provide information about protection, detection, and reaction with respect to attacks.
site exerpt
LINUXSECURE  Site search in regular content news vulnerabilities books Home Welcome to LinuxSecure LinuxSecure is a project I want to spent on my time the next few months. The intention to bring up such a site is to provide a main...
http://www.linuxsecure.de