Security.

(NEWEST POST)
SELinux: Tech Words of the Day SELinux is a Mandatory Access Control system. You can get an idea of how you'd configure this at my Selinux on FC5 article even though it's a few years old, but before you read that, just let me put on my flame proof suit here... ok, I'm ready: I almost always disable SELinux sooner or later.
Rotten Apples? It's almost enough to make me a Luddite. Apple, having apparently learned nothing from last years embarrassment, gets hacked in seconds at Pwn2Own. There's a new drive-by Firefox exploit that won't be fixed until next week. We can't even trust our routers anymore because people are hacking them.
IP spoofing and automatic blocking So.. for this to make sense our hacker has to first come in with a real ip address and fail to login the magic number of times. He then notices that he's been blocked, and revengefully decides to spoof ip's


Unix Cartoons

Unix Crossword Puzzles

Unix Consultants

Unix Skills Tests



Title Date Comments
A strangely compromised Linux box   2009 11  2009/11/08 18:12 TonyLawrence

I don't WANT the Internet to forget!   2009 10  2009/10/26 14:25 TonyLawrence

A fish is not a hack   2009 10 

How to prepare and plan for Incident Response   2009 10 

Powerful crypto from the UNIX command line   2009 09 

SELinux: Tech Words the Day   2004 09  2009/09/20 16:01 BrettLegree

Remote OS fingerprinting   2009 08  2009/09/01 03:16 xnih

How relevant is a good antispam solution for you?   2009 08 

Protect your Laptop with TrueCrypt   2009 08  2009/08/15 23:28 BrettLegree

Windows Spam on Linux   2009 08  2009/08/19 01:51 drag

SpamCheetah   2009 08 

The future of biometrics in business   2009 08  2009/08/06 09:13 NickBarron

 
 
 
 
Security vs. Convenience   2009 07  2009/08/04 09:31 anonymous

Kerio Spam Control: Caller-ID and SPF   2009 07 

The Myths of Security   2009 07  2009/07/23 12:43 TonyLawrence

Opera Unite is a little Wave   2009 07  2009/07/08 11:55 BrettLegree

Super Secret TV Listings   2009 07  2009/07/07 21:57 TonyLawrence

Help - I'm on a blacklist   2009 06 

Apple should kill the beast before it grows teeth   2009 06  2009/08/25 22:41 BrettLegree

Centos ssh failure   2009 06  2009/06/08 18:51 TonyLawrence

Web Content Filtering   2009 05  2009/06/05 10:46 TonyLawrence

Stopping Identity Theft   2009 05 

Testing for Conficker with Nmap   2009 04  2009/04/30 15:49 TonyLawrence

Are we ever going to get serious about Security?   2009 04  2009/04/17 13:19 TonyLawrence

Recovery Time Objectives   2009 04 

Rotten Apples?   2009 03  2009/04/02 14:25 TonyLawrence

Tor Bundle for Mac OS X   2009 03  2009/03/23 22:57 BrettLegree

Why not just turn it off?   2009 03  2009/10/01 21:51 anonymous

Insider Threat   2009 02  2009/02/09 15:56 BigDumbDInosaur

Why Microsoft will fail   2009 02  2009/02/03 22:08 TonyLawrence

Frogs, Greed or What?   2009 02  2009/02/27 13:56 anonymous

Do you absolutely need Anti-Virus (even on Windows)?   2008 12  2008/12/28 01:23 TonyLawrence

Drive by automatic downloads   2008 12  2008/12/24 15:40 BigDumbDinosaur

Responsibility and Honesty- watch your back!   2008 12  2009/07/21 10:55 TonyLawrence

Unix Virus Software   2008 11  2008/11/18 20:43 TonyLawrence

Business Impact Analysis   2008 11 

Got root?   2008 11  2008/11/11 16:09 jtimberman

Mac OS X Security Guides   2008 09 

Privileged Account Management   2008 08 

Change Control Management   2008 08 

Vendor Management Techniques   2008 07 

It is going to get better, right?   2008 06  2008/06/05 03:20 drag

Why no about for system code?   2008 05  2008/05/31 07:14 drag

Internet Anonymity Laws - bad, bad idea   2008 04  2008/04/28 17:26 TonyLawrence

Kerio Site Defaced!   2008 04 

Apple, Microsoft, Dell, IBM and others introduce monthly security challenge!   2008 03  2008/04/01 16:08 JonR

Mac Pwned   2008 03  2008/03/31 13:10 TonyLawrence

Security Information Management (SIM) solutions   2008 03 

Hannaford Security Breach   2008 03  2008/03/20 23:00 drag

Convenience and Security   2008 03  2008/03/10 11:34 anonymous

 
 
 
 
E-Mail Harvesting Protection   2008 03  2008/03/04 16:13 BigDumbDinosaur

Street Punks   2008 01  2008/01/13 19:07 TonyLawrence

Perl script to get Numly   2008 01 

Numly tags help protect your digital content   2008 01  2009/01/11 20:30 TonyLawrence

Endpoint Security   2008 01 

opensnoop (Mac file open watcher)   2007 12 

sandbox-exec (Mac sandbox wrapper)   2007 12  2009/03/02 23:53 anonymous

OpenID - another single identity idea   2007 12  2008/01/09 11:35 TonyLawrence

When are you going to upgrade that Browser?   2007 12 

UNAUTHORIZED ACCESS (Accidental Felony or Computer Crime)   2007 11  2007/12/01 17:03 TonyLawrence

Linux|Unix Firewalls   2007 10  2007/11/01 13:55 BigDumbDinosaur

Compliance Security Assessments   2007 09 

Vulnerability Scanning   2007 08  2007/08/24 02:37 TonyLawrence

PCI DSS and ISO 17799   2007 07 

Google Earth Street View   2007 06  2009/10/16 14:23 TonyLawrence

Fortinet Firewall Virtual IP's   2007 04 

Fortinet Firewall Transparent Mode   2007 04 

Audit Logging   2007 03 

Security and Trust   2007 02 

Did TJX act properly?   2007 01  2007/01/25 03:54 drag

Browser Security   2007 01  2007/01/08 13:36 anonymous

Choosing an information security services provider   2006 12 

Hardening your perimeter   2006 11 

Legacy Pains   2006 10  2006/10/29 04:55 BigDumbDinosaur

iPod virus   2006 10 

 
 
 
 
Firefox Javascript Exploit   2006 10  2006/10/04 20:19 bruceg

The vpn that wouldn't   2006 08  2006/08/18 10:49 TonyLawrence

Tough Passwords   2006 08  2006/08/08 01:14 TonyLawrence

Are we tired of easy yet?   2006 08  2006/08/04 01:05 drag

OS X ACL usage   2006 07  2009/09/03 21:05 TonyLawrence

SARA Secuity Scanner   2006 07 

Fake blacklists?   2006 07  2006/07/13 19:23 TonyLawrence

Encryption Problem   2006 07 

Virtualize or die?   2006 06  2006/09/29 10:15 drag

ssh forwarding   2006 06 

Security or not?   2006 05 

Root Kit Hunter   2006 05  2006/05/18 17:57 anonymous

Selinux on FC5   2006 05  2006/05/17 10:20 anonymous

OS X file encryption   2006 05  2008/07/18 10:20 TonyLawrence

Crippled Vista   2006 04 

IE7 beta 2   2006 04 

Intel's vPro   2006 04  2006/04/29 11:14 TonyLawrence

OS X Security   2006 04  2006/04/26 10:08 TonyLawrence

Slow down,simplify   2006 04  2006/04/20 22:57 BigDumbDinosaur

Password Security   2006 04  2006/04/20 04:25 BigDUmbDInosaur

Preventing DDOS attacks   2006 03 

Apache Spammers   2006 03 

Caller ID Manipulation   2006 03  2007/09/03 07:53 anonymous

A more realistic security challenge?   2006 03  2006/03/10 11:32 TonyLawrence

Os X security vs. Windows Vista   2006 03  2006/03/06 15:44 bruceg

 
 
ad
 
 
Mac OS X Security   2006 02  2006/02/20 15:15 TonyLawrence

The Limits of Security   2006 02 

Misunderstanding Security   2006 02 

Security through obscurity threatened as Macs become more popular?   2006 02  2006/03/15 20:43 TonyLawrence

Click Fraud and Bots   2006 02  2006/02/20 19:36 TonyLawrence

Win32.Nynex.e worm   2006 02 

Credit Card Security   2006 01  2006/01/30 21:35 TonyLawrence

Steganography   2006 01 

A door is less secure than a wall   2006 01 

Background indexing   2006 01 

AV companies security flaws   2005 12  2005/12/29 16:03 BigDumbDinosaur

Installing Spamassassin   2005 12 

Are your Servers Secure?   2005 12 

Incident Response   2005 12  2005/12/16 19:38 TonyLawrence

Disaster Recovery   2005 12 

Watermarks   2005 12 

Opera fixes backticks script - Duh!   2005 11 

Web site IP filtering   2005 11 

Happy Turkey Day   2005 11  2005/11/24 16:32 TonyLawrence

Time to ban IM?   2005 11  2005/12/01 03:23 drag

So now we shouldn't worry about identity theft?   2005 11  2005/11/15 17:03 BigDumbDinosaur

Incident Response   2005 11 

Domain or not?   2005 11  2005/11/01 23:11 drag

VMware Player   2005 10  2005/11/12 00:31 anonymous

PasswordMaker   2005 10 

 
 
 
 
Security consultants future   2005 09  2005/09/30 02:25 AndrewStott

HIPS - host-based intrusion prevention   2005 09  2005/09/21 08:15 TonyLawrence

You browse the web, the web browses you   2005 09 

What is a Managed Switch?   2005 08  2009/11/10 12:02 TonyLawrence

VNC on Sco Open Server   2005 08 

Using php-syslog-ng with rsyslog   2005 08  2008/05/20 06:47 Saar

Writing syslog messages to MySQL   2005 08 

Archiving All Email   2005 07  2005/07/30 14:27 BigDumbDinosaur

The network is always at risk   2005 07  2005/07/29 09:43 drag

Encrypting syslog with stunnel   2005 07  2008/11/12 10:39 anonymous

Jim Mohr's SCO Companion   2005 07 

MBSA (Microsoft Baseline Security Analyzer)   2005 07  2005/08/18 21:33 anonymous

Rodi p2p file sharing   2005 07  2005/07/23 22:37 anonymous

DRM (Digital Rights Management)   2005 07  2005/07/12 09:00 Phil

leaked Intel OS X software - are you crazy?   2005 07  2005/07/10 13:47 drag

ClamXav (Mac Virus Scanning)   2005 07  2005/07/09 10:24 drag

Security through obscurity   2005 07 

BugMeNot (that'll teach 'em!)   2005 06  2005/06/24 22:35 TonyLawrence

TrojanGate (Are we really this dumb?)   2005 06 

SP2 (Windows Service Pack 2)   2005 06  2005/06/24 10:49 drag

LUA (Least-Privilege User Account, Limited User Account)   2005 06  2008/04/04 12:43 TonyLawrence

SSH_CLIENT, SSH_CONNECTION (OpenSSH Variables)   2005 05 

HenWen (Snort for Mac OS X)   2005 05 

Netcraft security toolbar for Firefox and IE   2005 05  2005/07/09 19:31 TonyLawrence

restrict_chown, rstchown (restricting users from changing ownership)   2005 05  2005/05/25 04:56 bela

 
 
 
 
msec (Mandrake Security Tools)   2005 05 

Snort Cookbook   2005 05 

truecrypt   2005 05 

suexec   2005 05 

The value of firewalls   2005 05  2005/05/10 22:55 TonyLawrence

p0f Passive Operating System Fingerprinting   2005 05 

SSO (Single Sign On)   2005 05  2005/05/04 21:34 TonyLawrence

blacklist unwanted ip addresses   2005 05 

Silence on the Wire   2005 04 

SSL,TLS,openssl   2005 04 

PEM files (openssl)   2005 04 

Security begins at home   2005 04 

shred   2005 04  2005/10/21 14:26 TonyLawrence

Apache Security   2005 04 

nmap   2005 04 

Lids: Tech Words the Day   2005 04  2005/04/08 02:48 drag

Metasploit: Tech Words the Day   2005 04  2005/04/05 12:37 bruceg

Secondary MX: Tech Words the Day   2005 04 

AIX Operating System Hardening Procedures & Security Guide   2005 04 

How to respond to a Security Incident   2005 04  2005/04/03 17:57 bruceg

Intrusion Prevention and Active Response   2005 03 

Fairuce: Tech Words the Day   2005 03 

John the Ripper: Tech Words the Day   2005 03  2009/11/08 18:09 TonyLawrence

The dark side of NTFS and Alternative Data Streams.   2005 03 

rooted: Tech Words the Day   2005 03  2005/03/30 20:38 anonymous

 
 
 
 
pam_cracklib.so: Tech Words the Day   2005 03 

IP spoofing and automatic blocking   2005 03 

pharming: Tech Words the Day   2005 03 

How to Protect your PC from password theft?   2005 03  2005/03/21 15:01 BigDumbDinosaur

SHA-1: Tech Words the Day   2005 03 

vlock: Tech Words the Day   2005 03 

pam_console.so: Tech Words the Day   2005 03 

nikto: Tech Words the Day   2005 03 

noshell: Tech Words the Day   2005 03 

shutdown.allowed: Tech Words the Day   2005 03 

Hardening your Kernel with OpenWall   2005 03  2005/03/04 17:05 TonyLawrence

Understanding PAM   2005 03  2009/07/29 10:59 TonyLawrence

Hardening Linux   2005 03 

Oligomorphic, Polymorphic, Metamorphic Viruses: Tech Words the Day   2005 03 

CARO: Tech Words the Day   2005 02 

Buffer Overflow Attacks   2005 02  2008/06/02 12:42 PollyFrost

goat: Tech Words the Day   2005 02 

More ssh ideas   2005 02 

Octopus Virus?   2005 02  2009/08/26 15:34 TonyLawrence

stealth firewall,ebtables: Tech Words the Day   2005 02 

Virus Research and Defense   2005 02 

Nessus: Tech Words the Day   2005 02 

Sendmail Milters   2005 02 

Ethereal: Tech Words the Day   2005 02 

MTAMARK: Tech Words the Day   2005 02 

 
 
ad
 
 
Backdoor: Tech Words the Day   2005 02 

RADIUS: Tech Words the Day   2005 02 

firehol: Tech Words the Day   2005 02 

SSH passphrases and keys   2005 02  2009/07/31 14:18 TonyLawrence

BackupEDGE 2.1   2005 01 

Movable Type: Tech Words the Day   2005 01 

i-name: Tech Words the Day   2005 01 

CGI.pm: Tech Words the Day   2005 01 

Comment Spamming   2005 01 

Keeping Microsoft Exploits out of your apache log files   2005 01 

SSH Login Attacks   2005 01  2008/02/23 17:35 TonyLawrence

PhpBB security attacks   2005 01 

PPTP VPN, and weak passwords   2004 12 

Why you don't have telnet open to the world   2004 12 

More amazing Microsoft IE features   2004 12  2008/04/19 00:55 drag

Securing your network to specific machines   2004 12 

ProFTPd, wu-ftpd, and general ftp security   2004 12 

New Samba exploit   2004 12 

You may discover things about Microsoft   2004 12 

Microsoft enters the Protection racket   2004 12 

And yet another IE problem   2004 12 

More Unix/Linux Security Holes   2004 12 

ADOBE security screwup   2004 12 

TLS: Tech Words the Day   2004 12 

Some control of XP with GPEDIT.MSC   2004 12  2009/01/22 05:23 Naldpopr

 
 
 
 
Maia Mailguard: Tech Words the Day   2004 12 

Importance of home firewalls   2004 12 

SCO Web site defaced   2004 11 

Windows Startup Programs, viruses, updates and spyware   2004 10  2009/04/18 11:53 anonymous

Mac Opener worm is not a worm.   2004 10 

Security Paranoia - restricting ssh access   2004 10  2006/08/17 21:36 anonymous

ASP's and security   2004 09 

Open Source Vulnerability Database (OSVDB)   2004 09 

Sendmail VRFY   2004 09 

Writing Shellcodes in Linux   2004 09 

OpenBSD Security Techniques   2004 09 

The Catch-22 of XP Service Pack 2   2004 08 

spoofing: Tech Words the Day   2004 08 

Profit vs. vandalism in security attacks   2004 08 

$500.00 bounty for Mozilla security bugs   2004 08 

Alternative Browsers   2004 07 

New Linux Skills Test Question   2004 07 

Remember C2?   2004 07 

Home Computer Security   2004 07 

IE Dangerous!   2004 07 

Basic DNS: PTR records and why you care   2004 07  2009/11/22 08:08 Miraenda

dd from tape to tape   1997-2004 

internet connectivity firewalls -->Re Looking for adviceon internet connectivity   1997-2004 

HIPAA Security Rule gap analysis   2004 06 

Keep tabs on security issues with Linux easily   2004 06 

 
 
 
 
Fire IM for Mac   2004 06 

Shameful Internet providers   2004 06 

Roaming wireless access, spam   2004 06 

Windows XP patches on CD   2004 06 

Instant Messaging Worms   2004 06 

Login auditing   2004 06 

Threats on the Lan   2004 05  2005/10/15 07:48 rajasekhar

Stop Windows Messenger Spam   2004 04 

Wireless Network Security   2004 04 

Browser Hijacking   2004 03 

Phishing   2004 02 

Don't need no stinkin' router   2004 02 

Hardening your Perimeter   2003 12 

Lost root password (Linux)   2003 12  2006/12/15 00:02 anonymous

Watch your clicks!   2003 12 

Security Analysis and Audit   2003 11 

Security through information dissemination   2003 09 

Trojans   2003 09 

Employee Monitoring   2003 09  2005/05/20 19:40 anonymous

Watch your typing   2003 09 

Random Numbers   2003 09  2008/01/23 12:25 TonyLawrence

Intrusion Detection Systems   2003 09 

'arpwatch' for security and administration   2003 08 

Some common Unix network ports on my server and what they mean   2003 08 

Internet Access is not a right   2003 08 

 
 
 
 
Windows RPC flaw   2003 08 

Microsoft comments on security   2003 08 

My Details, Thank You, Wicked screensaver   2003 08 

Just an email address   2003 08 

Linux|Unix Security Cookbook   2003 07 

Forinet FortiGate-50 - What Network Security should be   2003 07 

Xinetd   2003 07 

Securing POP mail access in Mac OS X   2003 03 

Spamassassin on Mac OS X   2003 03  2005/07/08 10:13 TonyLawrence

Halting the Hacker   2003 02 

Why Production servers shouldn't have external interfaces   2002 12 

Understanding IPTABLES   2002 11 

How secure do you want to be?   2002 11 

GIAC Enterprises Goes Cyber!   2002 10 

Poly (morphic) want a server…or Runaway worm   2002 10 

Noted in Passing June 2002   2002 06 

SME Server (E-Smith) Mail Forwarding, Lists, Etc.   2002 06 

SME Server V5 Virtual Domains   2002 05  2009/11/10 23:01 TonyLawrence

Sendmail   2002 04 

Multitech RF550VPN SOHO VPN Router   2002 03 

Using sudo   2002 02  2009/11/03 11:25 Omar

Email attachment stripping   2001 12  2005/08/01 17:26 BigDumbDinosaur

Hacking Linux Exposed : Linux Security Secrets & Solutions   2001 11 

GPG/PGP Basics   2001 11  2009/11/12 11:15 senthil

Network Intrusion Detection   2001 10 

 
 
 
 
SquidGuard   2001 09  2008/12/09 14:13 TonyLawrence

Setting up Apache on Unixware   2001 07 

Connecting to the Internet   2001 06 

SSH- The Secure Shell   2001 05 

SSH   2001 05  2007/09/06 15:32 TonyLawrence

VPN's and other remote access   2001 04  2009/08/13 11:23 anonymous

Unix Permissions   2001 04  2006/10/17 13:38 TonyLawrence

Telnetting to a port other than 23   2001 03 

Configuring anti-spam in RedHat 7.0   2000 11 

Hacking Exposed (Second Edition)   2000 10 

IPFILTER Firewalls for OSR5   2000 02 

DSL and Cable Modem Security with SSH   2000 02  2008/05/05 15:16 anonymous

Linux|Unix Firewalls   2000 01  2006/01/06 09:40 anonymous

Maximum Linux Security   1999 11 

Spam   1999 07 

Practical Unix & Internet Security   1999 02 

Squid   1999 02 

Review of Netscape Proxy Server   1999 02 

Internet Security- Risk Analysis, Strategies and Firewalls   1999 01 

Intrusion Detection-Network Security Beyond the Firewall   1999 01 

Fundamentals of Computer Security Technology   1999 01 

Setting up a Small Office Network   1998 12 

General Internet Security   1998 12 

COPS Computer Oracle and Password System   1998 12 

Multitech MPR200 Proxy Server   1998 12 

 
 
 
 
pavatar.jpg book graphic








Have you tried our Tests?