Home |  Infosec |  DNS scripts |  Loghost HOWTO |  Syslog-ng FAQ |  The Art of System Administration 

Jul 5 22:03:51 PDT 2008
Your IP: 38.103.63.17

campin.net tent logo

Campin dot Net

Information Security

What in the heck is this page for?

I put this page together because I was having trouble bookmarking my favorite web sites.

I decided that I needed to save them all on a web page for easy reference... and here they are. That's all this is, and I hope that some of you find some use in it as well.

Quick Links

Recommended Reading Info Security Web Portals Security News Research, Links Pages and Tutorials
Free UNIXes
Intrusion Detection
Scan Detection
NT Security
Cryptogtraphy
Sites for Security Tools
[In]Secure Programming
Vulnerability Scanners
FAQ's
USENET FAQs
Information Warfare
Hacker Sites
Incident Response
Infosec Mailing Lists
Other Infosec Sites
Security Newsgroups
Secure Mailer
Anonymous Remailers
Info Security Certification
Firewalls
Java Programming
Virus Alerts & Verification
Open Source Software
Well known ports
OS's of the "Security Gurus"
UNIX - NT interoperability
Infosec Jobs
Perl resources

Recommended Reading

  • phrack - the online hacker zine

Info Security Web Portals

Security News/Newsletters/Publications

Security Research, Links Pages and Tutorials

Free Operating Sytems

Intrusion Detection

Scan Detection

  • Portsentry takes action when it detects scans - usually that action is to "blackhole" the attacker (risky, but some people find it useful, myself included).
  • Available for Unix and Windows, is Marcus Ranum's "Back Officer Friendly." It will tell you when you are scanned for Back Orifice, and can be made to listen on other commonly scanned ports.

NT/Microsoft Security

Cryptogtraphy

Sites for Security Programs/Tools

[In]Secure Programming

  • The UNIX Socket FAQ Frequently asked questions about programming with sockets in UNIX environments.

Vulnerability Scanners

FAQ's

USENET FAQs

Information Warfare

  • The Critical Infrastructure Assurance Office (CIAO), announced by President Clinton in May 1998, will facilitate the creation of a national plan to protect the services that we depend on daily: telecommunications, banking and finance, electric power, transportation, gas and oil, emergency services and government services. www.ciao.gov is their site.
  • Information Warfare and Information Security on the Web www.fas.org/irp/wwwinfo.html

White/Gray/Black Hat Hacker Sites

  • Nomad Mobile Research Center: http://www.nmrc.org/
  • 8 little green men
  • The l0pht (pronounced LOFT) is a group of hackers who wrote the password cracker that sets the standard for NT password cracking. They are at www.l0pht.com
  • The folks at the Cult of the Dead Cow authored the infamous Back Orifice. Visit them at www.cultdeadcow.com/
  • Let me just give you the ultimate "Hacking Links" web page and let you wander from there, some of the links are better than others. The page is at www.thecodex.com/hacking.html
    P.S. Watch your status bar messages on the bottom of your browser window closely when you visit this page.

Incident Response

  • CERT is the granddaddy of all Incident Response teams.
    Be sure to read some of the documents at the site.
  • Plus check out the COAST Hotlist kudos & credits page at www.cs.purdue.edu/coast/hotlist/

Infosec Mailing Lists

Other Infosec Sites

  • COAST-Computer Operations, Audit, and Security Technology. COAST is a multiple-project, multiple-investigator laboratory in computer security research in the Computer Science Department at Purdue University. It is intended to function with close ties to researchers and engineers in major companies and government agencies. It focuses its research on real-world needs and limitations, with a special focus on security for legacy computing systems. With its recent increase in support and student and faculty participation, COAST is now the largest dedicated, academic computer security research group in the world.

Security Newsgroups

Security-minded Mail Servers

  • "What is Postfix? It is Wietse Venema's attempt to provide an alternative to the widely-used Sendmail program. Sendmail is responsible for an estimated 70% of all e-mail delivered on the Internet. With an estimated 100 million users, that's billions of messages daily. A stunning number. Postfix attempts to be fast, easy to administer, and secure, while at the same time being sendmail compatible enough to not upset existing users."
  • qmail has a security guarantee with an unclaimed reward.

Anonymous Remailers

Info Security Certification

Firewalls

Java

Virus Alerts & Verification

Open Source Software

  • The unofficial spokesman for Open Source Software (besides Richard Stallman, Linus Torvalds and Tim O'Reilly) is Eric Raymond. His paper "The Cathedral and the Bazaar" is considered the definitive paper on the subject. Visit his home page.
  • How can we mention Open Source without providing a link to www.gnu.org Richard Stallman is the man who brought the issues to everyone's attention.
  • The developerWorks open source zone hosts a variety of projects for the open-source community. All projects on this zone are licensed under the same IBM Public License, which has been approved by the Open Source Initiative.

Well known ports

Operating Sytems of the "Security Gurus"

UNIX and NT interoperability

  • Use Samba to provide Windows file and print services on a UNIX host.
  • John's Linux related stuff has Explore2fs, the NT/95 explorer for Linux ext2fs partitions!
  • VMWare allows multiple operating systems to run AT THE SAME TIME on the same box.

Infosec/Computer Jobs

Perl Resources

  Home |  Infosec |  DNS scripts |  Loghost HOWTO |  Syslog-ng FAQ |  The Art of System Administration