"I think computer viruses should count as life. I think it says something about human nature that the only form of life we have created so far is purely destructive. We've created life in our own image." - Stephen Hawking
Resources
White Papers & Howto's
ISSA Metasploit Presentation (MSF_final.pdf)
download
This presentation given at the New York chapter of the ISSA covers the Metasploit Framework, it's uses and also goes into some more advanced functionality such as scripting, anti-forensics and post exploitation techniques. Many thanks to the MSF team for such a great tool.
Data Leak Prevention Security Methodology.pdf(restricted download)
download
The need to protect your organizations intellectual property and other electronic assets is paramount. An effective program will help mitigate or prevent accidental or intentional data breaches. This paper attempts to define a phased approach to Data Leak Prevention. Email to request a copy.
IPS Deployment Considerations.pdf
download
This document is intended to provide guidelines for the selection and implementation of a Network-based Intrusion Detection/Prevention System.
IDS Alert Creation Methodology.pdf
download
This document is intended to provide guidelines for the selection of criteria for the creation and implementation of Alerting Rules for IDS/IPSes.
Netcat for the Masses.pdf
download
Having had numerous people recently ask me about the various uses for Netcat I decided to put together a document showing a few handy uses for good ol' Netcat.
WPA EAP-TTLS on LInux.pdf
download
This document is intended to be a complete set of instructions on how to get, install and use the Linux WPA/WPA2/IEEE 802.1X Supplicant.
Security Feeds for RSS.opml
download
This is an .opml file that can be imported into your favorite RSS Reader. It contains a list of all the sites that we use to keep up to date on current security issues.
Chrooting Sendmail & Restricting Relaying.pdf
download
This is a guide on how to harden an installation of Sendmail by creating a Chrooted environment in which Sendmail can run. It also shows how to configure Sendmail to restrict relaying.