newsletterlibrary.com

Top : Computers : Software : Operating Systems : Unix : Security :
Protection

Websites
Tripwire, file integrity assessment tool for UNIX.
site exerpt
Change Auditing Solutions Tripwire, Inc.  Change auditing solutions tailored to the industry-specific challenges and regulatory compliance issues you face. Tripwire Change Auditing solutions go beyond basic change and configuration management tools to provide independent detective controls. They also deliver the objective reporting you need to...
http://www.tripwiresecurity.com/

Make your system seem to have network security bugs, and log attack attempts.
site exerpt
 Our mission is to discuss issues surrounding deception and the deception toolkit from the definition of what it is to how to do it and everywhere between. Rules of Engagement Rule 1: The mailing list is fully moderated and the...
http://all.net/contents/dtk.html

Fakes trojan servers (Back Orifice, NetBus) and logs every attempt from client.
site exerpt
FakeBO  Linux has stable and secure networking, it's able to emulate the bugs in other platforms said J. Padfield when he saw FakeBo What is use of this program? This program fakes trojan servers and logs every attempt from client. It...
http://cvs.linux.hr/fakebo/

A tool for file integrity checking that optionally can be used as a client/server application for centralized monitoring of networked hosts.
site exerpt
Samhain Labs samhain  N file integrity intrusion detection system Overview Samhain is a multiplatform, open source solution for centralized file integrity checking host-based intrusion detection on POSIX systems (Unix, Linux, Cygwin/Windows It has been designed to monitor multiple hosts with potentially different operating...
http://la-samhna.de/samhain/

Examines source code looking for security weaknesses.
site exerpt
Flawfinder Home Page  This is the main web site for flawfinder, a program that examines source code and reports possible security weaknesses flaws sorted by risk level. It's very useful for quickly finding and removing at least some potential security problems before a...
http://www.dwheeler.com/flawfinder/

Tool to check for trojans, CERT advisories, and system file permission correctness.
http://dan.yosemite.ca.us/cops/

Practical measures for critical infrastructure protection, intrusion prevention and threat assessment.
http://www.citi.umich.edu/u/provos/cybersecurity/

Free software (GNU license) from Bell Labs for protecting internet servers from buffer overflow attacks, one of the most commonly exploited security vulnerabilities.
site exerpt
Avaya Labs Research Projects: Libsafe  The exploitation of buffer overflow and format string vulnerabilities in process stacks constitutes a significant portion of security attacks in recent years. We present a new method to detect and handle such attacks. In contrast to previous work, our method...
http://www.research.avayalabs.com/project/libsafe/

The GMM library can be used to prevent and study buffer overflows exploits
site exerpt
Guarded Memory Move (GMM) Home Page  Move tool gets handy when you have to study buffer overflows and you need to catch them together with a good stack image. When a stack overflow has been exploited, the back trace is already gone together with good information...
http://www.xmailserver.org/gmm.html