Archive for February, 2010

Security Assessment of the Transmission Control Protocol (TCP)

http://tools.ietf.org/id/draft-ietf-tcpm-tcp-security-01.txt TCP Maintenance and Minor F. Gont Internet-Draft February 19, 2010 This document contains a security assessment of the specifications of the Transmission Control Protocol (TCP), and of a number of mechanisms and policies in use by popular TCP implementations. Additionally, it contains best current practices for hardening a TCP implementation. It is a derivative [...]

Read the rest of this entry »

IPv6 vs IPv4

(10:04:22 AM) georgica: si revin la invataturile scripturilor (10:04:31 AM) georgica: acum la ipv6 or sa se deosebeasca noobi de profi =)) (10:04:56 AM) georgica: iti dai seama ca ipv4 o sa fie la un moment dat… legacy… si o sa fie oameni care n-au auzit de el? (10:05:03 AM) georgica: oameni care lucreaza in [...]

Read the rest of this entry »

AppDetectivePro

Get started with AppDetective Pro with the 5 Essentials to Database Vulnerability Assessment. This 20-minute session covers how AppDetective Pro helps ground your compliance and security efforts. The 5 steps: 1) Inventory your database environment through Database Discovery. 2) Perform Penetration Tests to gauge outside-in vulnerabilities. 3) Check for vulnerabilities within the database’s configuration using [...]

Read the rest of this entry »

Be careful on help files

Be careful on help files @ McAfee Labs Blog “Muster” is a family of backdoor which has been using help files for hiding themselves. The help files or “.hlp” files are data files designed to be viewed with Microsoft WinHelp browser for providing online helps for applications users. Earlier variants of “Muster” drop encoded copies [...]

Read the rest of this entry »