Posts Tagged Security

PatchMan: MBSA 2.2 released

patchman-mbsa-2-2-released

This is a minor upgrade that correct minor issues and adds optional catalog support.

Download it from here

, ,

No Comments

Security: Authentication and Passwords

security-authentication-and-passwords

Check this session from TechEd North America (2010).

Marcus Murray (of TrueSec) uses live demonstrations to give you an insight in the impact of choosing the correct authentication methods and strategy for your exposed systems and services.

, ,

No Comments

Security: BackTrack 4.0

security-backtrack-4-0

On one of my VMs is off course one of my favorite attack tools BackTrack. BackTrack was updated to ver. 4.0 January 11 and is available as an Live DVD and as VMware image.

One of the cool new features is the integration of the Exploit-DB - The ultimate archive of exploits and vulnerable software, that is updated almost daily. The Exploit-DB can be updated within BackTrack whenever (online and) needed.

The Metasploit Framework is also onboard.

Hint … do you have a high-end graphic card in your box? There is now support for ATI-Stream and Nvidia CUDA, so you will be able to use the power of your graphic card to run WPA/WPA2-PSK attacks using Pyrit.

, ,

No Comments

Security: Boot disk that securely wipes the hard disks

security-boot-disk-that-securely-wipes-the-hard-disks

Need a boot disk that securely wipes the hard disks of most computers and that’s FREE?

Download and check Darik’s Boot And Nuke CD

No Comments

AD: Security and access assessment

ad-security-and-access-assessment

Just found this AD tool called Gold Finger.

The tool covers 10 administrative categories including account and group management, and Microsoft Exchange and AD ACL management. Out-of-the-box it featuring over 225 valuable Active Directory security reports and it is 100% free and fully supported!

,

No Comments

Stuff I read: Microsoft probing Windows 7 zero-day hole

stuff-i-read-microsoft-probing-windows-7-zero-day-hole

This could be nasty – quote: ” … you can get remotely smashed via IE or even via some broadcasting NBNS [NetBIOS Naming Service] tricks”. Read the rest here

, , ,

No Comments

PatchMan: Patch Tuesdays, 400 security bulletins, 745 vulnerabilities

patchman-patch-tuesdays-400-security-bulletins-745-vulnerabilities

This is crazy. Check out this blog on Computerworld. Since moving to a monthly schedule in October 2003, Microsoft has released about 400 security bulletins based on an informal count of releases in its bulletin archives. What?!? Crazy!

,

No Comments