Snort 2.8.1 Released

Thursday, April 3rd, 2008

New Additions Target-Based support to allow rules to use an attribute table describing services running on various hosts on the network. Eliminates reliance on port-based rules. Support for GRE encapsulation for both IPv4 & IPv6. Support for IP over IP tunneling for both IPv4 & IPv6. SSL preprocessor to allow ability to not inspect ...

How To: winlockpwn

Wednesday, March 26th, 2008

winlockpwn is a memory analysis tool released by Adam Boileau of storm.net.nz. This utility exploits firewire's direct memory access. The operating system allows firewire devices to directly read/write memory without having to go through the processor. Sounds handy right? I installed winlockpwn on Ubuntu 7.10 and a fully patched Windows ...

Firefox update fixes critical security vulnerabilities

Wednesday, March 26th, 2008

The Mozilla project is distributing version 2.0.0.13 of its popular open source Firefox browser. This release fixes several critical vulnerabilities which could be exploited by attackers to inject malicious code or fake page content. The browser's JavaScript engine contains several of the security vulnerabilities. Due to incorrect processing, attackers can execute ...

Security and safe browsing for Firefox

Tuesday, March 25th, 2008

You installed Firefox.  How do you make it more secure for daily use?  How do the Mozilla developers ensure that they are doing all the right things?  How do you safely browse the Internet? These are not easy questions to answer, and  some of the answers will be system/OS-dependent. Security functionality in ...

My First Autopsy

Saturday, March 22nd, 2008

I have a System Forensics class this quarter at ITT Technical Institute and this was my first true lab where I actually got to use the tools and resources against "real" data. We are doing a simulated case from The HoneyNet Project and here was the documented police report: ...