Security

Everything related to Security.

Stop Brute Force logins through SSH/POP3/IMAP with BFD

This nifty little script allows you to monitor log files for instances of brute forcing as well as popular exploits that show up in your server logs files. Anyone that has many servers should check this out.

BFD (Brute Force Detector) Home Page

There is also a nice little write up of how to implement BFD without AFP and some extended rules.

BFD rules for Jag servers

New Zealand teenager arrested as Botnet Leader

A New Zealand teenager was arrested and then freed of charges today for allegedly being the Leader of a Bot/Spybot network. The New Zealand E-crime unit arrested the teenager on suspicion of stealing over 9.7 Million Pounds from bank accounts around the world and breaking into an estimated 1.3 Million computers. The full quote from the Guardian..

Cyber Attacks by Goverments around the world on the rise

The many governments around the world are facing a growing concern as the internet gains more popularity and becomes more accessible. You need to provide information or access to services or devices to many different locations across your country or the world, and the only way to do this is through private networks and the internet.

Auckland Security Consultant uses PS3 for Cryptography

As the title states, a Senior Security Consultant by the name of Nick Breese is using a PS3 to crack MD5 hashes. Aside from this article incorrectly stating that the security expert is stealing passwords, as of now he has only shown how fast the machines can process MD5 hashes. This is just a small glimpse of what the software and hardware can do, the article compares how many cycles can be completed using Vector Computing:

Whats configured into your MTA?

I was wondering the web looking at random items, when I came along an article at http://www.worldwidecreations.com titled Stopping spam before the door with SpamCop and IPTables

Its a great article with a lot of information and code on how the author is able to grab the offending hosts and place them within IPTables.

Comcast Blocks Some Internet Traffic

If you're a Comcast Customer, then you should be concerned with what they're doing to your internet connection. Why? Because Comcast is filtering your internet traffic, this article goes in-depth into what exactly is being filtered and tests that prove it is occurring. On one hand it looks like Comcast is trying to keep its network from being stressed with file sharing, on the other it looks like they might not just be filtering file sharing protocols.

Attacks started on users of Internet Explorer and RealPlayer 0day exploit.

I haven't really heard of many RealPlayer exploits, however this zero day one is a nasty. This is an Internet Explorer exploit only, so if you're using FireFox you're in luck.

Adobe says Acrobat, Reader vulnerable to hacks

This is a disturbing as most white pages and manuals ranging from automobiles and computer motherboards are in PDF format. Even eBooks could be an easy way for a hacker to gain access to your machine, illegal books put online could be a trap for unsuspecting downloaders.


Adobe says Acrobat, Reader vulnerable to hacks
- BOSTON (Reuters) - Adobe Systems Inc, whose software is used by millions of people to read documents sent over the Internet, said on Wednesday some of its programs contain yet-to-be-fixed flaws that make computers vulnerable to attack.

On October 5, Adobe posted a notice on its Web site that said it had unknowingly incorporated vulnerabilities into versions of Adobe Reader and Acrobat software that could allow malicious programs to get on to a PC without the user's knowledge.

The Russian Mafia Doesn't Like Spam Either

This is a very interesting read, it looks as though Spammer Alexy Tolstokozhev was found murdered within his spam-bought estate.

We all know how annoying can spam be. Although there are highly sophiscated tools nowadays, which can reduce the amount of spam in your mailbox to the minimum, it’s still at least unpleasent to see all those “penis enlargement” mails. But people working in this “business” aren’t safe anymore: Alexey Tolstokozhev (btw, in Russian his name means ‘Thick Skin’), a Russian spammer, was found murdered in his luxury house near Moscow. He has been shot several times with one bullet stuck in his head. According to authorities, this last head shot is a clear mark of russian hit men (known as “killers” in Russia). Tolstokozhev was a famous spammer who sent millions of e-mail promoting viagra, cialis, penis enlargement pills and other medications.

Astaro Security Linux 7.010 (Stable 7.X branch)

A very promising Security Gateway with many features to protect your network, currently only available free if used within your Home.

Syndicate content