confirm subscribe to security-basics@securityfocus.com

2005-10-28 Thread security-basics-help
Hi! This is the ezmlm program. I'm managing the security-basics@securityfocus.com mailing list. I'm working for my owner, who can be reached at [EMAIL PROTECTED] To confirm that you would like archive@mail-archive.com added to the security-basics mailing list, please send an empty reply

Ipc$ share hack

2003-07-14 Thread security
We have a server that has been hacked. The hackers have put a tool that turns of the IPC$ share. We checked the registry nothing there. It seems to be time based but nothing comes up on the scheduler. When we reboot for a while everyone can connect to the server but in a minutes the ipc$ share

Proxy Server

2003-07-08 Thread NETWORK/SECURITY ENG. - GHAZANFER
Hello! I am looking for a good and secure Windows based Proxy Server other than ISA Server with features like QoS, firewall, DHCP support, Integrated with AD etc. Regards, --- Evaluating SSL VPNs' Consider NEOTERIS, chosen

Data erasing tool

2003-07-03 Thread security
We are looking for a tool that will erase all data beyond recovery from a hard drive. We going to get rid of few computers and do not want data to get into anyone's hand. Both freeware and commercial ware are ok. Would prefer a solution which is bootable from a cd (OS independent). (Would prefer

Re: What is this port? is it a trojan?

2003-07-02 Thread Security
On Mon, 2003-06-30 at 10:52, Hyperion wrote: Hello all :) I have been taking a more detailed interest in my pc's security of late, and security for computers in general, and I am learning at quite a fast rate, although there is a great, great deal of information to learn out

Hack?

2003-06-30 Thread Linux Security [EMAIL PROTECTED]
Hello all, My redhat 7.2 is getting hacked very frequently even i got a firewall.appended bellow is the nmap output. What may be the loophole? % nmap -sA 202.xxx.xxx.xxx Initiating ACK Scan against isp.com () The ACK Scan took 275 seconds to scan 1542 ports. Interesting ports

RE: Simple Wireless Question

2003-06-27 Thread security
Checkpoint a good white paper on where put it. It is obviously for their product but you can use the paper as a knowledge base. -SKP -Original Message- From: Potter, Tim [mailto:[EMAIL PROTECTED] Sent: Thursday, June 26, 2003 1:50 PM To: [EMAIL PROTECTED] Subject: Simple Wireless

RE: Firewall configuration statistics

2003-06-26 Thread security
their firewalls. 2-) It is, for the most part, illegal to run security tests on a network that is not yours. Be careful what you write about... you don't want to end up saying something silly like... IDS is useless. On Fri, 2003-06-06 at 12:29, [EMAIL PROTECTED] wrote: I remember once reading that X

Must read for everyone

2003-06-24 Thread security
http://www.bayarea.com/mld/siliconvalley/business/special_packages/security/ 6151122.htm SKP --- Evaluating SSL VPNs' Consider NEOTERIS, chosen as leader by top analysts! The Gartner Group just put Neoteris in the top

RE: Firewall configuration statistics

2003-06-23 Thread security
, and stops using the list for serious business, maybe it has become time for us to get back to business. Just my .005 worth. Greg Kane SAIC Senior Systems Security Engineer CTSF-IA Fort Hood, TX -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Sent: Saturday, June

RE: MS Service Packs

2003-06-21 Thread Shawn K. Hall (RA/Security)
diagnostics use MBSA ( http://www.microsoft.com/technet/security/tools/Tools/MBSAhome.asp ), which enables you to scan your system for *most* known flaws. Hit windows update every Thursday afternoon, as that is when 99% of the patches are released. Regards, Shawn K. Hall http://ReliableAnswers.com

RE: Hard Drive Encrypting

2003-06-19 Thread security
Do you mean something more than what comes built in? The EFS? Jeff -Original Message- From: Martin Smith [mailto:[EMAIL PROTECTED] Sent: Wednesday, June 18, 2003 3:01 PM To: [EMAIL PROTECTED] Subject: Hard Drive Encrypting Good Day, I have a need to encrypt the

RE: password protection in office XP documents

2003-06-18 Thread security
by this is that; if Word is used to protect certain parts of a document than it should not be possible to use Word to unprotect that document just by saving in a different format. A PDF is a good example. Once you set security on the PDF document all PDF readers honor that security they don't let you save

RE: Scanner Software Question

2003-06-17 Thread security
How do vigilante software rate among scanning products? -SKP -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Sent: Tuesday, June 17, 2003 12:16 AM To: [EMAIL PROTECTED] Subject: Re: Scanner Software Question Importance: High Retina is great. Whenever you run it,

password protection in office XP documents

2003-06-13 Thread security
this page in word and all the protection is gone. No need to know the password. Microsoft evens documents this in their help file. Should this not be considered a security violation from a user point of view SKP --- Evaluating

RE: Firewall configuration statistics

2003-06-09 Thread security
That makes absolutely no sense. Plus I am not looking for a philosophical answer. I was looking statistics for marketing. Does anyone know of a good reference site for firewall and other security statistics. SKP -Original Message- From: Justin Pryzby [mailto:[EMAIL PROTECTED] Sent

Firewall configuration statistics

2003-06-06 Thread security
I remember once reading that X amount of firewall's are misconfigured. Does anyone know where I can get this statistic from? We are making some new marketing material and I would like to include this stat in it. A quotable source would be great. Thanks SKP

Security training Teaching material

2003-05-31 Thread security
I have been looking for the source of security training teaching material. I was looking for teaching material in all fields of security including forensics, basic security, CISSP readiness etc. A point in the right direction will be very helpful. SKP ---

Re: Patch Amounts

2003-03-20 Thread security
The Hebrew University of Jerusalem maintain a very usable list of Microsoft hotfixes and service packs. http://secinfo.huji.ac.il/microsoft_patches.htm If you want the information direct from the horses mouth, then go to the Microsoft Security site. You can pick your base OS or application

Re: Getting the message to Testers

2003-03-05 Thread security
that could get you into legal trouble) should be stored encrypted within the database. In addition to this, security features built into the database should be used and default accounts disabled. Oracle comes with up to thirty (30) default usernames and passwords, some of them with dba privelages

Re: Download Managers

2003-02-27 Thread Leo Security
about download managers- do they pose are security risk? Any known to be trojaned? The one I use is GetRight, does anyone know if this one has known security issues? Any thoughts appreciated, thanks. Leon

Re: Suggestions Needed

2003-02-26 Thread Leo Security
Go to sourceforge.net and search for Firewall floppy. You will get lots of already stripped down versions. You can run these firewalls from a floppy and also from a hard drive if you want to enable logging. Leo Justyn wrote: I'm a home user rather new to firewalls. I have a spare pc I want to

Securing a webserver through reverse proxy?

2003-02-19 Thread Security
Greetings, I've read about a way to secure webservers, which must not be directly exposed to the Internet, using a reverse proxy, e.g. MS ISA Server or Squid on a UNIX box. Now my question would be: Has anyone experience with that? Is it really more secure (compared to firewalling and port

DMZ and VPN

2003-02-18 Thread Security Manager
I've been following the thread on FTP servers in the DMZ with interest. I'm curious as to how it applies to a server providing VPN access using Win2k Server's Routing and Remote Access. Given that the VPN is supposed to give access to the private network to external clients (who can

Re: Suggestions on free XP hard drive wiping utilities?

2003-02-12 Thread Leo Security
that's going to be donated or thrown away? Preferably something thorough? Thank You Steve Champion Sr. Data Security Analyst The Methodist Hospital. [EMAIL PROTECTED]

Re: nmap os detection!

2003-02-10 Thread Leo Security
It is generally not good to change the OS parameters. If its detectable, let it be. Best thing to do is to unplug all the holes on regular basis and configure your firewall to work at its optimum. Leo Ethan wrote: There was just a thread about this on the honeypot mailling list ([EMAIL

Re: linux version

2003-01-23 Thread Leo Security
IMHO SuSE is the best. As regards security, thats something you will have to take care of yourself. All OSes are a bit insecure out of the box. SuSE is easy to install and configure. They have a configuration tool called YAST2 which is excellent. Its the most popular Linux distro in Europe

RE: ghostly mail ports

2003-01-10 Thread Security Newsletters-TM
:45 PM To: [EMAIL PROTECTED] Subject: ghostly mail ports Hi, im new to security and this is my first post, so be gentle :) I have a fairly good understanding of the tcp/ip model and i think i understand what ports are for! but i cant understand that on my box, i have the 2 default mail ports (25

Login Banner

2002-12-30 Thread stray+security-basics
and may be used only by Grommie Corporation employees and only for work-related purposes. The Grommie Corporation reserves the right to monitor use of this network to ensure network security and to respond to specific allegations of employee misuse. Use of this network shall constitute consent

Re: Web Mail Vulnerabilities

2002-10-17 Thread Leo Security
In my opinion you can consider providing the option of secure / encrypted access to the mail through the web. regards Leo Link, Jennifer wrote: We are looking at provided mail access via internet connection (home, internet cafe, library etc.) and I'm trying to research what vulnerabilities

RE: Can't Resolve from behind firewall

2002-10-17 Thread Security Newsletters-TM
Are you Natting? If not you may have to open up the return UDP reply. -Original Message- From: Ahmed.Shazly [mailto:ahmed.shazly;hotpop.com] Sent: October 16, 2002 8:15 PM To: [EMAIL PROTECTED] Subject: Can't Resolve from behind firewall Hi everyone, I Just got a PIX 501 for my

RE: Foundstone - keeping free tools from the public

2002-10-15 Thread security
to their clients and score brownie points with their large government customer base who promote keeping the public in the dark. I'm going to have to write angry emails to all the Foundstone employees I know now... Regards, Greg van der Gaast Ordina Public West Security Services -Oorspronkelijk

RE: Foundstone - keeping free tools from the public

2002-10-11 Thread security
Have you read the TRO? Foundstone is stopping use of their algorithm. I think they a right to do that. Netobjects is free to release a product with their own algorithm. -Sanjay -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] Sent: Thursday, October 10, 2002 11:45

RE: Somebody saw this trojan ?

2002-10-11 Thread Shawn K. Hall (RA/Security)
And I'd say to visit Windows Update weekly, if not daily. MS usually only posts updates on Thursday evenings - if updating is a hassle for you - or checking every day is not an option, I'd stick with Thursdays. Regards, Shawn K. Hall http://ReliableAnswers.com/Virus/

RE: password cracking

2002-09-26 Thread Security
NT breaks its passwords into two - encrypting each half separately. Unfortunately, this makes it really easy to hack NT passwords, even if you think you are using a good one. -Original Message- From: netsec novice [mailto:[EMAIL PROTECTED]] Sent: Wednesday, September 25, 2002 5:13 PM

RE: BIG MAMA !!

2002-09-24 Thread Security Newsletters-TM
HELP!! If you have this file, PLEASE point me in the right direction to download/retrieve it!! Thank you! Kenny Ansel, Sytex Group Network Security Instructor MCP+I, MCSE, CCNP 608-388-8801 Chris Berry [EMAIL PROTECTED] Systems Administrator JM Associates I have found the way, and the way

RE: Checkpoing NG on Linux or Windows?

2002-09-20 Thread Security Newsletters-TM
BTW: just wanted to point out that my Corporation does have full and current licenses for the number of devices we use NHM with :) Sorry, no blackmail or today. -P -Original Message- From: Security Newsletters-TM Sent: September 19, 2002 2:12 PM To: 'Guerra, Ralph'; Security

File server getting DoSd by forged packets???

2002-09-19 Thread NT Security
Sorry for the length but this is a real problem to me! I've spent a lot of time reading this forum but only recently, due to budget cuts, been forced into a security position. And now I'm having a BIG problem! One of my networks (NOT Knightworld.net!) has a file server that is occasionally

RE: Too much security?

2002-05-16 Thread security
] Subject: Too much security? Not sure if this is the right forum but here goes... I seem to have too much security when trying to set up a VPN between two offices. The setup: Remote user running Windows XP (or 2000, or 98, etc.) setting up a VPN to connect to a remote office. Corporate office

Re: Slackware or Redhat?

2002-05-16 Thread Security
I've read differing opinions about the ease of use of Slackware - what are your personal opinions? Is Slackware more secure 'out of the box'? From what I gather Slackware is a little harder to learn than Redhat, but a little more... configurable? Am I right? I have no problems with

RE: Mail server

2002-05-12 Thread security
the LAN. The mail server inside the LAN will only talk to the mail server in the DMZ on port 25 only. If people need access to mail from outside the office than they should be restricted to a VPN solution only. Even for a web based solution. Most web based solutions have too many security issues

Re: IMAP Secure ???

2002-05-12 Thread Security
Becky2 for Win32 and Ximian Evolution for UNIX to suit most of my needs. Of course, for the command line freaks, I must also mention 'mutt', which can be compiled with Cyrus-SASL, too. - Jonas -- Security [EMAIL PROTECTED]

Downloading SamSpade

2002-05-10 Thread security
I wanted to download SamSpade from their website. Their website is down since last several days. Does anyone have any idea of any other place I can get it. Moreover please recommend any similar tools. I want to trace someone using proxy servers and would like to check the logs of proxy

Re: IP AND NAT

2002-04-24 Thread Security
Allowing any port (SSH included) go through the firewall\gateway to the internal network is quite a back door , SSH is not immuned , and as we seen not so long ago had a its share of security holes, I would suggenst , if you need remote control over a computer , stick a modem

RE: IP AND NAT

2002-04-23 Thread security
Use product from fwbuilder.org nice gui to help you do Nat and port forwarding. Sanjay -Original Message- From: Giri Sandeep [mailto:[EMAIL PROTECTED]] Sent: Monday, April 22, 2002 12:08 PM To: Muhammad Faisal Rauf Danka Cc: snaqi; [EMAIL PROTECTED] Subject: Re: IP AND NAT Well, For

RE: IP AND NAT

2002-04-22 Thread Security Team
-- Glenn Schoonover, MCSE Director of Security and Internal Systems [EMAIL PROTECTED] http://www.inter.net 12120 Sunset Hills Road Inter.Net Suite 410Office : (703) 456-3917 Reston

Re: nimda fun in linux/win2k network

2002-04-19 Thread Security
The desktops are cleared and protected now, but the file server space keeps getting chewed up by copies of the worm. Also, having an uncontained worm on the file servers is no good for my sleeping habits. How the heck can I get Nimda off my fileserver? Try something like ServerProtect from

Re: Zonealarm log - what is this?

2002-04-19 Thread Security
I meant really in the background... I know that something's running if it's in the system tray... ;) Can they run beyond the reach of ctrl-alt-del and the taskbar? If so, is there some way of detecting this (and any other programs) that may be lurking? Yes, its very well possible, but you

Re: Searching Documentation

2002-04-18 Thread Security
I'm reading more papers about how generate exploits, but where I can find good information about buffer overflow, smashing the stack, etc. I just recently found a good example, which is actually going into the details; http://www.radsoft.net/security/mudge.html You will find some more

Re: OpenBSD 3.0 PF firewall: nics and videoconferencing

2002-04-11 Thread Security
Try turning the MTU down to something like 1394 or similar. This made a big difference on my home setup, running over a cable modem, YMMV. Actually, the current recommendation of an MTU which should work in any case is a nice number: 1414 -- Security [EMAIL PROTECTED]

What Programmming Language?

2002-04-11 Thread security
What programming language/s is/are used for developing a software firewall like ZoneAlarm or NIDS like Snort or Scanners like netcat, nmap etc.? Thanks

Re: Linux box as firewall

2002-04-08 Thread Security
on a open source UNIX or ignorant about ipf at all, please take a look at: http://www.obfuscation.org/ipf/ipf-howto.txt or the HTML version: http://www.obfuscation.org/ipf/ipf-howto.html IMO, talking about security and Linux in one breath seems to be a common issue on this list anyway. I suggest

Re: md5sum download

2002-03-28 Thread Security
Hi : The textutils package resembles the GNU text file (actually, file contents) processing utilities. Most of these programs have significant advantages over their Unix counterparts, such as greater speed, additional options, and fewer arbitrary limits. The programs that can be built with this

RE: someone stole my mail account to spam others :-(

2002-03-19 Thread Security-news
Have you check for viruses? // Patric -Original Message- From: Netsult [mailto:[EMAIL PROTECTED]] Sent: den 17 mars 2002 07:00 To: Dean Fox; [EMAIL PROTECTED] Subject: RE: someone stole my mail account to spam others :-( It sounds like your email server is open to relay since

Re: Restricting cmd.exe access

2002-03-16 Thread VCC Security Admin
With regards to the below, how do you restrict access to administrator only? John R

Re: Restricting cmd.exe access

2002-03-16 Thread VCC Security Admin
This is a fat32 format, there is no security tab. John R

Re: IDS

2002-03-14 Thread Security
Hello Pavel I refer to the mail from 'leon' which refers to the following link[1] which describes how you can sniff in a switched environment. Actually, the techniques described in there are not The Right Way[tm] to sniff out your switched environment, if you have access to your switch

RE: Political Challenges Using Nessus

2002-03-14 Thread Security Team
Did you say your boss was a moron about security... ;-)? First, be careful. Unfortunately it could be construed as illegal activity without a get out of jail note from your boss, your boss's boss or someone of authority in your company. Another possible approach might be to set up a snort box

Re: Any comments on using SNORT

2002-03-13 Thread Enphourell Security
While we're talking about snort, I have two questions. Is it better to give snort it's own machine, seeing that it will be in charge of about 15 machines, and I am looking at either Demarc or ACID. Any comments anyone? Thanks On Mon, 11 Mar 2002 13:18:39 -0500 Mike Carney [EMAIL PROTECTED]

RE: Antw: scary site

2002-03-11 Thread Security - MYNETFUTURES
Why would this be? REgular users can execute cmd.exe? -Original Message- From: Milan Goellner [mailto:[EMAIL PROTECTED]] Sent: Wednesday, March 06, 2002 11:34 PM To: [EMAIL PROTECTED] Subject: Antw: scary site This only works when being logged in as, at least, local Admin on

Re: IDS that retaliates.

2002-03-09 Thread InterceptiX Security
be a better goal to aim for? Mark. -- Mark CrosbieIDS/9000 Product Architect http://www.hp.com/security/products/ids Hewlett-Packard MS 47 LA[EMAIL PROTECTED] 19447 Pruneridge Avenue (408) 447-2308 Cupertino, CA 95014 (408) 447-6766 FAX

URLScan

2002-03-09 Thread CHM Security
I am running Citrix nfuse on a IIS 5 server and attempted to install the urlscan.exe from M$. I have very limited knowledge on web servers and everytime I install the urlscan it kills the ability of clients to download the citrix web client (ica32t.exe) file. Like I said I have very limited

Problem With ZoneAlarm

2002-03-04 Thread security
I am using ZoneAlarm version 26362 Now yesterday I updated my MSN messenger from 45 to version 46 After that whenever I connect through my ISP, I get the following message upon connection: The firewall has blocked routed traffic from 4000 (UDP Port 1028) to 4000 (UDP Port 1900) Is

Further on Problem with ZoneAlarm

2002-03-04 Thread security
I have found the following information from arin.net about 4.0.0.0. This is regarding my earlier post on problem with zonealarm GENUITY (NET-GNTY-4-0) 3 Van de Graaff Dr. Burlington, MA 01803 US Netname: GNTY-4-0 Netblock: 4.0.0.0 - 4.255.255.255 Maintainer:

Re: DHCP Server solutions

2002-02-25 Thread Security
Assign reservations IP to the MAC address's through your DHCP client on what ever OS you are running.. Donot assign any IP's to any not hardcoded address's. It is alot of work to do manualy but if you build a script it should not be that hard. If you are using Windows NT/2000/.NET

Re: command execution on router

2002-02-21 Thread Daniel F. Chief Security Engineer -
be install a sniffer or something like that on the router. In other words, can i execute any executable file on the router? Thanks in advance kartik -- Chief Security Engineer | Daniel Fairchild [EMAIL PROTECTED] Unix is like a wigwam -- no Gates, no Windows, and an Apache inside.

Re: port 1214 on win2K

2002-02-19 Thread Daniel F. Chief Security Engineer -
-- Chief Security Engineer | Daniel Fairchild [EMAIL PROTECTED] Unix is like a wigwam -- no Gates, no Windows, and an Apache inside.

Software Firewall Development

2002-02-12 Thread security
I am new in security but experienced in software development. I am thinking of developing a software firewall for desktops. I want it to work like ZoneAlarm. Do you think C and C++ will be the best languages to develop this software as well as the techniques of socket programming

Re: firewalls

2002-01-28 Thread Enphourell Security
:47 +0100 DocValde [EMAIL PROTECTED] wrote: Hallo Enphourell Security, am Samstag, 26. Januar 2002 um 10:27:50 schrieben Sie: ES Which OS do you guys think would make the best firewall, OpenBSD or Linux? What a question! My first thought was The one you're most familiar with!. But well

firewalls

2002-01-26 Thread Enphourell Security
Which OS do you guys think would make the best firewall, OpenBSD or Linux?

ms-sql service scanning

2002-01-17 Thread Security
I was contacted by a company stating my sql server was probing their network. the log files are as follows log record count for source ip 10.10.10.2 10.10.10.2: 255 (this is the ip address of my sql server) log record count for destination ip log record count for destination nets 172.21.0.0 :

Re: Encrypted POP3 Access?

2001-12-02 Thread Enphourell Security
-- -- Enphourell Security [EMAIL PROTECTED] www.enphourell.com --- Content of this electronic message is intended only for the persons and/or entity to which

Re: Unix Environments and Malicious Code

2001-11-29 Thread Enphourell Security
products for the Unix-based OSes. Thanks, Rich Richenberg Technical Security Manager Peregrine Systems, Inc. 3611 Valley Centre Drive San Diego, California 92130 (858) 350-5792 fax (858) 481- 1751 www.peregrine.com This message is intended for the addressee(s) only and contains

Penetration testing

2001-10-22 Thread Security
, Intranet and Internet. I’m unsure if anyone has developed this kind of document before, but if anyone has anything that they feel may help, please pass it on. Can anyone help? Thanks _ CSIRT.WS (Computer Security Incident Response Team

Hotmail policy

2001-09-26 Thread Security
_ CSIRT.WS (Computer Security Incident Response Team - World Site)