On CNET: Study says 1 in 3 people copies DVDs
1 Resources for

bugtraq

  • Subscribe to this listing via:
  • RSS
  • Email

TechRepublic Resources

Context-Based Intrusion Detection Using Snort, Nessus and Bugtraq Databases
Intrusion Detection Systems IDS use different techniques to reduce the number of false positives they generate. Simple network context information such as the communication session state has been added in IDS signatures to only raise alarms in the proper context. However, this is often not sufficient and more network context...
Tags: Snort, Network, Intrusion Detection System, BugTraq, Signature, Correlation Mechanism, Intrusion Detection, Network Security, Security, Networking
White papers 2005-07-28

Additional Resources

Lock IT Down: Apache flaw leaves server wide open
Close the door to a security hole in older versions of ApacheA serious flaw in the popular Apache Web server can lead to loss of data, crashed servers, and the revelation of confidential data, according to a vulnerability note published by Apache.org.The problem is apparently found only in the new...
Tags: OPEN SOURCE, SECURITY, John McCormick, Apache Software Foundation, Apache.ORG, vulnerability, flaw, server, Mitre Corp.
Technical articles 2002-09-03
Are vulnerabilities ever really fixed?
Want more advice forlocking down your network? Stay on top of the latest security issues andindustry trends by automaticallysigning up for our free Internet Security Focus newsletter, delivered eachMonday.Earlier this month, news surfaced ofa new threat that could cause a "LAND attack," resulting in atemporary denial of service DoS that...
Tags: Jonathan Yarden, Microsoft Windows, Microsoft Windows 95, TCP/IP, vulnerability
Technical articles 2005-03-18
Microsoft debates spoofing as security flaw
Stay on top of the latest tech news with our free IT News Digest newsletter, delivered each weekday. Automatically sign up today!By ...
Tags: Web browsers, PRODUCTIVITY, Microsoft Corp., security, Microsoft Internet Explorer
Technical articles 2004-11-03
Skype plugs hole in VoIP software
UnsettlingIt is almost inexcusable to still have a buffer overflow vulnerability in 2004. However, the problem has been caught and a patch is available. I have been very impressed with the sound quality of Skype, orders of magnitude better than other voip software I have used.Retarded buffer overflowsNow our...
Tags: buffer-overflow, hparks, Skype Technologies S.A., software, VoIP
Discussion threads 2004-11-16
Critical IE vulnerability remains unpatched
Microsoft still hasn't patched a serious Internet Explorer vulnerability, and malicious hackers are taking advantage of the fact. In addition, a remote code execution threat has surfaced in Real Networks RealPlayer. Get the details about these and other security issues in this edition of the IT Locksmith. Redmond may...
Tags: Microsoft Internet Explorer, John McCormick, Web browsers, SECURITY, vulnerability, window, IT Locksmith Newsletter, Situation, Microsoft Corp., SuSE, Secunia Advisory 15546, FrSIRT, OpenPKG, Internet
Technical articles 2005-12-05
Security news roundup: October 25
Here's a collection of recent security vulnerabilities and alerts, which covers vulnerabilities reported in components of HP OpenView, flaws in XScreenSaver locked screen functionality, and a report by SecurityFocus on the state of security so far this year. Components of HP OpenView Management software divulges data ...
Tags: Hewlett-Packard Co., Vulnerability, HP OpenView, SecurityFocus, Utility Computing, It Management, Security, It service Management, Paul Mah
Blog posts 2007-10-25
Lock IT Down: Apache servers experience increasing number of attacks
Close the door to a security hole in older versions of ApacheI report on a lot of software vulnerabilities here, and I try to weed out the unimportant ones. But there’s no real way to know in advance which ones will be exploited and which ones cybervandals will essentially ignore....
Tags: OPEN SOURCE, SSL/TLS, SECURITY, ESecurityplanet.com, John McCormick, Apache Software Foundation, vulnerability, server, Apache Web server
Technical articles 2002-12-02
Security news roundup: October 24
Here's a collection of recent security vulnerabilities and alerts, which include vulnerabilities discovered in Lotus Notes and Domino as well as multiple SQL-injection vulnerabilities discovered in Oracle interMedia. Vulnerabilities discovered in Lotus Notes and Domino The discovered vulnerabilities could allow...
Tags: Vulnerability, IBM Lotus Notes, IBM Lotus Domino, IBM Corp., Security Advisory, E-mail Servers, Groupware, Security, Enterprise Software, Software, Paul Mah
Blog posts 2007-10-24
Watch out for flaw in CGI library and possible C compiler security problems
Linux/UNIX administrators need to be aware of a dangerous flaw in Lib CGI and some new security concerns that have been raised about the GNU C compiler. Get the details on how these issues may affect the security of your systems.A serious vulnerability has been found in the CGI C...
Tags: Development tools, C/C++, John McCormick, ISS X-Force, CGI, compiler, security, C
Technical articles 2002-12-16
Firefox 2 crash exploit and IE7 address spoofing flaw surfaces
After all the media inflated flap over a minor Outlook Express flaw surfaced over Internet Explorer 7, a minor but true IE7 address bar spoofing weakness was found.  At the same time, bug tracking mailing lists have been talking about a flaw affecting the just ...
Tags: address bar, Browsers, flaw, Microsoft Internet Explorer 7, Mozilla Corp., Mozilla Firefox, Mozilla Firefox 2.0, Security
Blog posts 2006-10-27
Web site review: Find answers to security prayers at Church of the Swimming Elephant
We may be preaching to the choir, but network security is a topic that requires review to keep up with developments. Check out this review of the Church of the Swimming Elephant, a Web site that can be a security salvation for busy IT pros.Do you find yourself praying your...
Tags: Mike Walton, Cotse.com, security, Steve Gielda, Packetderm, Swimming Elephant, Web site, Web
Technical articles 2001-03-12
Google fixes security hole
Stay on top of the latest tech news with our free IT News Digest newsletter, delivered each weekday. Automatically sign up today! By ...
Tags: Channel management, Web browsers, SEARCH, Google Inc., Web, flaw, security
Technical articles 2004-10-21
Get IT Done: Effectively manage security alerts and software updates
Learn some strategies for staying abreast of critical security developments to better protect your organizationIn my article "Code Red worm raises doubts about administrators," I sounded off about lapses in system administration that allowed a quarter of a million Microsoft IIS server installations to remain unpatched for the widely publicized...
Tags: Patches, Viruses and worms, CERT, John McCormick, Get IT Done, software, Code Red worm, security, patch management, administrator, Microsoft IIS Server, vulnerability, security alert
Technical articles 2001-08-27
Linux Patch Management – How do you keep up?
There are many areas of system administration which pose a much bigger challenge to Linux sys admins than to our Windows counterparts. One of the biggest areas of difficulty I have personally come across is that of patch management.Every day new vulnerabilities are reported in all kinds of software—be...
Tags: Linux, RSS, RSS feed, vulnerability
Blog posts 2006-04-03
Serious TCP flaw could cause problems with routers
A critical flaw in TCP has been discovered, and vendors have been rushing to get fixes in place. The threat involves what are known as reset attacks. The flaw, which is sometimes called "TCP Reset Spoofing," is not totally new, but the latest research shows that the vulnerability may be...
Tags: TCP, John McCormick, router
Technical articles 2004-05-03
Firms give flaws a grade
Stay on top of the latest tech news with our free IT News Digest newsletter, delivered each weekday. Automatically sign up today! By ...
Tags: SECURITY, Qualys Inc., flaw, severity
Technical articles 2005-02-16
5 steps to becoming the local security guru
It's not difficult to become the local security expert, the guy to whom others look when they need network resources secured, the guy they point to when they want to source someone in their attempts to reform security policy, and the guy organizations like TechRepublic ask to write about security....
Tags: Security Solutions, Security
Blog posts 2007-07-17
Security auditing with Nessus
Most system administrators don't realize the importance of port-scanning tools. The nmap tool, although powerful, does not have the flexibility of Nessus. In this Daily Drill Down, Vincent Danen explains just how useful this tool is.Security auditing is a critical aspect of network administration. Knowing where your servers are vulnerable...
Tags: Vincent Danen, security, Nessus, server, Security Auditing
Technical articles 2001-02-28
Microsoft patches critical Windows Help and icon handling flaws
There are three Windows vulnerabilities addressed by threenew security bulletins. Two of them are rated critical and one is ratedimportant.DetailsLeading off the year, MicrosoftSecurity Bulletin MS05-001, "Vulnerabilityin HTML Help Could Allow Code Execution," includes fixes for a remotecode execution vulnerability found in most versions of Windows and all servicepacks when...
Tags: John McCormick, Microsoft Corp., Microsoft Windows, Microsoft Windows XP, Microsoft Windows XP Service Pack 2, MS05-001, MS05-002, patch management, Service Pack 2, vulnerability
Technical articles 2005-01-14
  • << Previous
  • page 1 of 1
  • Next >>


Microsoft Excel Beginner
This Microsoft Excel - Beginner presentation is a preformatted solution for training staff to understand the basics of Microsoft Excel. The accompanyi ...
Buy Now
TechRepublic's E-mail Usage Policy
Numerous studies indicate that personal e-mail use at work is a leading cause of lost productivity. In addition, personal e-mail use can introduce vir ...
Buy Now

The Green Enterprise