all things security
Showing 1 - 24 of 24 RSS Feed

Files

Browser Security Comparison: A Quantitative Approach
Posted Dec 10, 2011
Authored by Ryan Smith, Chris Valasek, Paul Mehta, Charlie Miller, Shawn Moyer, Joshua Drake | Site accuvant.com

Whitepaper called Browser Security Comparison: A Quantitative Approach. The Accuvant LABS research team completed an extensive security evaluation of the three most widely used browsers – Mozilla Firefox, Google Chrome, and Microsoft Internet Explorer – to determine which browser best secures against attackers. The team used a completely different and more extensive methodology than previous, similar studies. They compared browsers from a layered perspective, taking into account security architecture and anti-exploitation techniques.

tags | paper
MD5 | 264a3b0c9d9007c6544319b4853db82a
An-approach-to-malware-collection-log-visualization.pdf
Posted Jun 19, 2008
Authored by Jaime Blasco | Site aitsec.com

A whitepaper called An Approach To Malware Collection Log Visualization.

tags | paper
MD5 | 68451305fcf376b8af541a299bd57cc1
Security_Testing_Enterprise_Messaging_Systems.pdf
Posted Jul 31, 2007
Authored by Andy Davis - IRMPLC, Phil Huggins | Site irmplc.com

This paper discusses potential security weaknesses that may be present in messaging systems either as a result of software flaws, application design or the misconfigurations of services. It focuses on TIBCO Rendezvous, as an example of a commonly used enterprise messaging system. Recommendations are then presented which mitigate these security issues.

tags | paper
MD5 | cfb45eac3e565e1e32e3b0effda2bb2c
team-evil-incident.pdf
Posted Jul 20, 2006
Authored by Gadi Evron, Kfir Damari, Ami Chayun | Site beyondsecurity.com

Analysis whitepaper detailing Cyber-terrorism defacement attacks on pro-Israeli servers by Team Evil.

tags | paper
MD5 | cd58676a855e3110470539b1f2e283ce
re-20060425-00312.pdf
Posted Apr 29, 2006
Authored by Markus Jansson | Site niscc.gov.uk

A paper discussing the various vulnerabilities in DNS: "The vulnerabilities described in this advisory affect implementations of the Domain Name System (DNS) protocol. Many vendors include support for this protocol in their products and may be impacted to varying degrees, if at all."

tags | paper, vulnerability, protocol
MD5 | c8abc61b42b138d3c3d926fb910adcba
wasc-wafec-v1.0.pdf
Posted Jan 21, 2006
Site webappsec.org

The Web Application Firewall Evaluation Criteria project is proud to announce version 1.0 of The Web Application Firewall Evaluation Criteria (WAFEC), its first official release. WAFEC is a result of a collaboration between web application firewall vendors and independent security professionals to create a comprehensive, vendor-neutral, web application firewall evaluation criteria. The resulting framework can be used to evaluate and and compare web application firewalls.

tags | paper, web
MD5 | 4d4eda95d3d204f066c8b918b4bd33df
d05956.pdf
Posted Nov 15, 2005
Site gao.gov

GAO Report - Federal Efforts to Improve Security and Reliability of Electronic Voting Systems Are Under Way, but Key Activities Need to Be Completed.

tags | paper
MD5 | 8eeefc7fddcce2eed5072ec24aaa324e
Barracuda_Evil.txt
Posted Dec 30, 2004
Authored by Ben Lentz

Short white paper discussing some questionable circumstances surrounding the Barracuda Spam Firewall appliances.

tags | paper
MD5 | 22e306314aff01e51ae946c5cbdafa36
CyberAngel.zip
Posted Nov 15, 2003
Site relevanttechnologies.com

A paper released by Relevant Technologies discussing the commercial CyberAngel product that provides laptop recovery and file encryption all-in-one.

tags | paper
MD5 | a814500ef04667c489c0b172464fef6e
CombatingSPAM.doc
Posted Jul 6, 2003
Authored by Brien M. Posey | Site relevanttechnologies.com

A paper released by Relevant Technologies discussing ways and means to combat Spam using various filters available.

tags | paper
MD5 | c45d69b733a6f9e11eed6ebf8d0284bb
nid_3pe_v101.pdf
Posted Feb 2, 2001
Authored by Richard Bejtlich | Site bejtlich.net

Network Intrusion Detection of Third Party Effects v1.0.1 - This paper describes "third party effects," generally caused by adversaries spoofing your IP addresses while attacking an unrelated victim. The events are explained from the points of view of the three parties: the first party (the adversary), the second (the victim), and you, the third party (the bystander whose IPs were spoofed.) The paper includes packet captures, diagrams, and material not originally presented in the author's "Interpreting Network Traffic," such as a comparison of SYN vs ACK floods.

tags | paper, spoof
MD5 | 57e6dc93138b9ca825a94fd48e4825b3
cable.html
Posted Aug 30, 2000
Authored by r1tual | Site subterrain.net

This paper is the culmination of research that describes the DOCSIS standard and related information for the purpose of explaining exactly how cable networks (@home, RoadRunner, Mediaone) are implemented from the service provider to the home. This includes details on the cryptography used, the frequencies data is transmitted on, and hardware explanations. A recommended read for anyone interested in cable-modem networks.

tags | paper
MD5 | 83354456fa9671afa5117e23f0543865
ctcpec1.ps
Posted Oct 1, 1999

Canadian Trusted Computer Product Evaluation Criteria, Part 1: The Canadian "Orange Book."

tags | paper
MD5 | 93c363a746e2bfb98d6f4f38936951b2
ctcpec2.ps
Posted Oct 1, 1999

Canadian Trusted Computer Product Evaluation Criteria, Part 2: The Canadian "Orange Book."

tags | paper
MD5 | be08f4f23933233e9fdb88f28da5e849
exeguide.txt
Posted Oct 1, 1999

Executive Guide to the Protection of Information Resources: A US National Institute of Standards and Technology publication.

tags | paper
MD5 | e31e28ea484dfde1ee12a4d332163745
fcvol1.ps
Posted Oct 1, 1999

Federal Criteria for Information Technology Security, Volume 1: The new "Orange Book"

tags | paper
MD5 | 5d8d06a54a17acbbf1545f9b64645645
fcvol2.ps
Posted Oct 1, 1999

Federal Criteria for Information Technology Security, Volume 2: The new "Orange Book"

tags | paper
MD5 | 4dc96eeddc81188538f29e6a0ad4dfd3
greenbk.txt
Posted Oct 1, 1999

Green Book on the Security of Information Systems: A document that sets out the development of a consistent approach to Information Security in Europe, taking into account common interests with other countries.

tags | paper
MD5 | cec64d8e676d6407d26798bfc63b3d21
horses.ps
Posted Oct 1, 1999

Horses and Barn Doors: Evolution of Corporate Guidelines for Internet Usage: A description of how Intel Corp's Internet usage policies were developed.

tags | paper
MD5 | be0c53edb4d2c77c5bf5919edb04453f
internet.txt
Posted Oct 1, 1999

Guidelines for the Secure Operation of the Internet - RFC 1281: Provides a set of guidelines to aid in the secure operation of the Internet.

tags | paper
MD5 | c655f512e1336bbf6e328e72ab8baefa
itsec.txt
Posted Oct 1, 1999

Information Technology Security Evaluation Criteria: The European "Orange Book".

tags | paper
MD5 | 9b10824608a32c0996bb0cfc124f7ae8
mgtguide.txt
Posted Oct 1, 1999

Management Guide to the Protection of Information Resources: A US National Institute of Standards and Technology publication.

tags | paper
MD5 | 1e1aa49ea8194eea7599f6a529dd6277
psfos.ps
Posted Oct 1, 1999

Protection and Security Issues for Future Systems: An examination of the problems of protection and security as applied to future computer systems.

tags | paper
MD5 | 926e952cf05b176e13e805669b69f9ee
tcsec.txt
Posted Oct 1, 1999

Department of Defense Trusted Computer System Evaluation Criteria: The "Orange Book".

tags | paper
MD5 | f7ad13c9a343e2be708d6ecf9f82913a
Page 1 of 1
Back1Next

Top Authors In Last 30 Days

packet storm

© 2012 Packet Storm. All rights reserved.

close