united networks
Security and Abuse
Fri. Jul. 30, 2010 @23:18 UTC
Security and Abuse
@networks.org Email
@networks.org BBS
Launch UN-Cast | Launch Ticker
Computer and Internet Security
Abuse/Spam 4 Stars- General security, abuse, spam, and DoS related resources and sites.
Guide to Secure Practices 4 Stars- General computer security awareness and tips.
Security Advisories 4 Stars- Security news, system advisories, and vulnerability/anti-virus databases.

Operating System Advisories and Updates
Apple/Mac Security 4 Stars- Apple, Macintosh system advisories, updates and patches.
Microsoft Security 4 Stars- Microsoft Windows system advisories, downloads, updates and patches.
UNIX Security 4 Stars- UNIX system advisories, updates and patches.

Security and Virus Assessment Tools/Info
ClamAV 4 Stars- Excellent anti-virus/phishing/malware scanner and detection open source software/data, available for UNIX, Windows and other projects/apps.
Gibson Research 4 Stars- Live web-based port and security scans (ShieldsUP), tools and news.
SecureMac 4 Stars- Apple/Mac OS X news, security advisories and software like MacScan.
Sygate Online Scan 4 Stars- Live web-based port security, protocol and trojan scan.
Secunia OSI 4 Stars- Live web-based Online Software Inspector security, program and vulnerability scan.
Symantec Security Check 4 Stars- Live web-based anti-virus and port security scanner.
TrendMicro Housecall 4 Stars- Live web-based anti-virus scanner and cleaner for Microsoft Windows.
AntiVirus Rescue Bootable CDs List 4 Stars- Listing of bootable anti-virus/malware and rescue/recovery software for download gathered by TechMixer.com

OpenDir / Computers / Security (3,003)
- Advisories and Patches (59)
- Authentication (98)
- Biometrics (232)
- Cryptography@ (160)
- Firewalls (247)
- Hacking@ (204)
- Honeypots and Honeynets (72)
- Internet (358)
- Intrusion Detection Systems (111)
- Malicious Software (282)
- Policy (196)
- Public Key Infrastructure (90)
- Secure Programming@ (5)
- Virtual Private Networks (79)
- Wireless Networks@ (15)

- Java@ (15)
- Linux@ (55)
- Mac OS@ (43)
- Microsoft Windows@ (2)
- Unix@ (59)

- Chats and Forums (6)
- Conferences (18)
- Consultants (467)
- Consumer Information@ (17)
- Directories (9)
- FAQs, Help, and Tutorials (8)
- Mailing Lists (21)
- News and Media (65)
- Organizations (10)
- Products and Tools (568)
- Research (7)

See also:
- Business: Business Services: Fire and Security: Security (2,794)
- Computers: Ethics (49)
- Computers: Mobile Computing: Wireless Data: WAP: Security (5)
- Computers: Software: Networking: Security (18)
- Science: Math: Applications: Communication Theory: Cryptography (260)
- Society: Issues: Terrorism: Cyber (5)


- Usenet alt.security - news: - Google Groups
- Usenet comp.security - news: - Google Groups
- Usenet comp.security.misc - news: - Google Groups

- Open Directory Project -
Help build the largest human-edited web directory!

Become an Editor or Submit a Site to: /Computers/Security/


Guide to Secure Practices and Policies
It is extremely important for all computer users, especially those who use the Internet, to be "security aware" and do their part to protect themselves and others. Everyone must keep their Operating Systems, software and devices up-to-date, as there are constantly new security patches and upgrades that are CRITICAL to protecting data and networks from hackers, virii and trojans.

ALL computers on the Internet are scanned for vulnerabilities by hackers who scan whole ISP's and IP Address ranges randomly. They are looking for computers that are vulnerable to an attack, virus or trojan.

There are several reasons why hackers attempt to hack or "own" computers, the most common reason is so they can USE your computer to:
- Hide themselves from you and others
- Use your IP address to use the net (as you)
- Attack or flood others, knocking or crashing them offline (as you)
- Spam other users in chat and email (as you)
- Hack other people, systems and networks (as you)

If you do not run upgrades, security patches, firewalls or anti-virus often (or ever) then there is almost a 100% chance that you are a carrier of a virus or trojan that harms and attacks you and others. You may even be one of those "email spammers" or "hackers" you so despise, and not even know it!

Most users will want to pay particular attention to and follow items 1, 2 and 3 below. Item 4 is also very important if you are running any kind of local or wide area network.



[1] SOFTWARE UPGRADES, UPDATES AND INSTALLATIONS: WATCH FOR SECURITY ADVISORIES, SOFTWARE UPDATES AND PATCHES FOR NETWORKING PROTOCOLS, HARDWARE AND SOFTWARE. UPGRADE OFTEN.

  • During and/or after every installation of any Operating System, all the updates, file patches, or upgrades available (usually from the manufacturers website or your distributor) should be performed. Following a system install, always install a firewall package or rules. Always install virus and trojan detection and protection. Update often.
  • Windows users will want to visit http://windowsupdate.microsoft.com/ often and for anti virus they may want to visit http://www.grisoft.com/ for AVG. Both are free.
  • UNIX users should check their distribution site for upgrades often. Most are free.



    [2] - FIREWALLS: CLOSE UNECESSARILY OPENED PORTS, SERVICES AND PROTOCOLS ON NETWORKED ROUTERS, SWITCHES, HUBS AND COMPUTERS OR DEVICES. BLOCK, FILTER OR QUALIFY NEW PROGRAMS, SERVICES, PLUGINS, DOWNLOADS, AND SCRIPTS.

  • Know what you're allowing in or out so an unauthorized program cannot access the net and so the net can't talk to you unless you or a program you authorize allows it.
  • Windows users that don't have a hardware firewall will want to try a software firewall like the free ZoneAlarm at http://www.zonelabs.com/
  • UNIX users that don't have a hardware firewall will want to learn more about their systems firewall rules or ipchains or whatever their OS uses. Most are free.



    [3] - BEHAVIOR AND PRACTICE: BEHAVE IN DISCUSSION GROUPS, EMAIL AND CHAT, JUST BE QUIET AND COOL OFF. DON'T SEND SENSITIVE INFORMATION OVER THE NET WITHOUT ENCRYPTION.

  • Don't use easily guessable words in passwords. Change your passwords often.
  • Use appropriate encryption like SSL for email, web, and secure telnet (SSH) when possible.



    [4] - NETWORKS: KNOW YOUR ISP/UPSTREAM/NOC, VERIFY THE SECURITY OF NETWORKS, ROUTERS, SWITCHES AND HUBS FROM YOUR SIDE ALL THE WAY TO THE NET.

  • Know the vulnerabilities of devices and protocols so you are not snooped or able to have your IP or traffic hijacked and redirected. Learn about ARP, RIP, ICMP, TCP, and UDP type protocols and what to disable or block.


  • Features
    - Security
    - Abuse
    - Advisories/Patches
    - News/Headlines

    UN-Cast News
    - GnuPG 'GPGSM Tool' Certificate Importing Remote Code Execution Vulnerability (21:47 UTC) BUGTRAQ
    - ESA-2010-012: EMC Disk Library 'EDL' Denial Of Service Vulnerability (19:35 UTC) BUGTRAQ
    - Hitachi HiRDB Unspecified Denial Of Service Vulnerability (19:11 UTC) BUGTRAQ
    - Hitachi Groupmax World Wide Web Desktop Unspecified Cross Site Scripting Vulnerability (19:11 UTC) BUGTRAQ
    - Hitachi JP1/ServerConductor/DeploymentManager DPM Denial Of Service Vulnerability (19:11 UTC) BUGTRAQ
    - S2 NetBox allows unauthenticated HTTP access to node logs, backups, and employee photographs (12:10 UTC) CERT
    - S2 Security Netbox/Linear eMerge Access Control System management component vulnerable to unauthenticated factory reset (19:34 UTC) CERT
    - S2 Security Linear eMerge Access Control System management component vulnerable to unauthenticated factory reset (18:22 UTC) CERT
    - Broadcom NetXtreme management firmware ASF buffer overflow (12:10 UTC) CERT
    - Mozilla WOFF decoder integer overflow (12:10 UTC) CERT

    Other News: [RSS Feed] [Last 1-2hrs] [Last 24hrs] [About UN-Cast] [Blogger]

    Features
    - Advisories
    - Entertainment
    - Downloads
    - IRC
    - News
    - Open Directory
    - Reference
    - Search
    - Security
    - Space

    Over 52,970,208
    served since 01/01/01

    Help keep this site
    ad-free and reliable!
    Consider Contributing!

    -----
    © United Networks 1995-2010