The Security Resource Library

Courtesy of Core Competence, Inc.

Denial of Service (DOS) Attacks

A stacheldraht agent scanner (C source code) by Dave Dittrich, Marcus Ranum, and others
Internet Denial of Service: Attack and Defense Mechanisms by Jelena Mirkovic, Sven Dietrich, David Dittrich, Peter Reiher
CERT/CC Denial of Service
Understanding Denial-of-Service Attacks
Trends in Denial of Service Attacks
How a 'denial of service' attack works - CNET News
A trinoo/TFN/stacheldraht agent scanner (C source code, BETA) by Dave Dittrich, Marcus Ranum, George Weaver, David Brumley, and others
AntiCode
AntiOnline
Distributed Denial of Service Attacks by Rik Farrow>
Why Metro Area EtherLECs Should (Still) Worry about DDOS Attacks by David Piscitello
How a denial-of-service attack works - Security- msnbc.com
Defending against a Denial-of-Service Attack on TCP
What is a Denial of Service (DoS) attack?
Preventing Denial of Service Attacks
Distributed Denial of Service (DDoS) Attacks/tools by David Dittrich
Egress Filtering by Mark T. Edmead
Egress Routing
Anatomy of an Amplified Distributed Denial of Service Attack by David Piscitello
DNS Distributed Denial of Service (DDoS) Attacks (SAC008)
Future denial of service attacks by Kurt Seifried
Strategies to Protect Against Distributed Denial of Service
Hacker News Network
How to Spot Source Address Spoofing by Rik Farrow
Information on network ingress filtering, RFC 2267
The Worrisome Threat of DNS DDoS Attacks by David Piscitello
Distributed Denial of Service Attacks
Quality of Service for Denial of Service Attack Prevention by Steve Kohalmi, Randy Charland
Network Defense Richard Power & Rik Farrow's archive of Network Magazine columns
Some TCP/IP Vulnerabilities: Weaknesses, attack tools, defenses by David Dittrich
SYN cookies by D. J. Bernstein
The "stacheldraht" distributed denial of service attack tool by David Dittrich
The "Tribe Flood Network" distributed denial of service attack tool by David Dittrich
The DoS Project's "trinoo" distributed denial of service attack tool by David Dittrich
Denial of Service (DoS) Attack Resources

back to top

Operating System Security

*nix operating systems

Linux Security
Center for Internet SEcurity - Linux Benchmarks
Anti-Trojan and Trojan Detection with In-Kernel Digital Signature testing of Executables by Michael Williams
The Linux Security HOWTO Another Paper on Linux Security by Bronc Buster
Basic Steps in Forensic Analysis of Unix Systems by Dave Dittrich
Hacking Linux and How to Stop It by Craig Ozancin
Linux firewalling with ipchains by Vincent Danen
Making UNIX Servers More Secure by Rik Farrow
Secure interprocess communication by D. J. Bernstein
Tuning Solaris for FireWall-1 by Rob Thomas
Linux Security Cookbook - O'Reilly Media
Unix Auditor's Practical Handbook by K. K. Mookhey
Unix Computer Security Checklist
A Linux Security Toolkit
Yo Linux Security Tools
Linux Administrator's Guide
Hacking Linux Exposed
UNIX IP Stack Tuning Guide by Rob Thomas
UNIX Security by guidob

Security (Builds)

Debian Security
Securing Debian - Manual
Debian Linux Security
Debian Security Audit Project
Gentoo Linux Documentation -- Gentoo Linux Security
Gentoo Linux Documentation -- Gentoo Linux Security Advisories
Red Hat Security
Security Features - FedoraProject
Security Quick-Start HOWTO for Red Hat Linux
SUSE Linux Enterprise Security
Ubuntu Security Forums
Security on Ubuntu
The Big Ol' Ubuntu Security Resource - IT Security

Windows Operating Systems

A Complete List of Windows Event Identifiers
Cracking User Passwords in Windows 2000
A Starting guide to armoring NT by Lance Spitzner
How to Make Windows 2000 and NT 4 Passwords Uncrackable by Joel Kleppinger
NTBug Traq
NTSecurity.Net
NTToolbox.com
Automated NT Vulnerability Testing by Dave Piscitello
Microsoft Security Bulletins at Microsoft TechNet
searchNT.com
Securing your Operating System: Guidelines for Hardening Windows 2000
A friendly alternative to registry editing by Dave Piscitello
The Microsoft Security Advisor
Security Settings in Windows Server 2003 and Windows XP at Microsoft TechNet
Windows NT Passwords by Bill Wall
Windows 2000 Magazine Online at Microsoft TechNet
Windows 2000 Security Hardening Guide at Microsoft TechNet
Windows 2000: An Early Security Perspective by James Michael Stewart and Ed Tittel
Windows 2000's VPN-Related Security Issues by Lisa Phifer
Windows 2000 Vulnerabilities by Phil Cox
Windows Server 2003 Security Guide at Microsoft TechNet
Windows XP SP2 Resources Core Competence
Stepping up to XP: What to expect at your firewall by Dave Piscitello
Securing XP Desktops: Account and Auditing Policies by Dave Piscitello
Securing XP Desktops: Controlling Local Use and Network Access by Dave Piscitello
Pros and Cons of Windows 7 Security - PC World Business Center
A Guide to Windows 7 Security - PC World Business Center
Windows 7 Security
Windows 7 Security Features
Windows 7 Security Compliance Management Toolkit
Windows 7 Security Enhancements

back to top

Host, Virus, Spyware Scanners

Moved to Antivirus Resources Core Competence

back to top

var gaJsHost = (("https:" == document.location.protocol) ? "https://ssl." : "http://www."); document.write(unescape("%3Cscript src='" + gaJsHost + "google-analytics.com/ga.js' type='text/javascript'%3E%3C/script%3E"));