 Patch Management Forum - http://groups.yahoo.com/group/patchmgmt/ Mailing list facilitates networking and information exchange related to patch management: announcements, testing, verification, operations processes, and vulnerabilities. |
 Oracle Security Center - http://www.oracle.com/technology/deploy/security/index.html Tips, tools, and technologies to keep Oracle products safe, secure, and patched. |
 SecurityFocus: Bugtraq - http://www.securityfocus.com/rss/vulnerabilities.xml Full disclosure computer security vulnerabilities feed. |
 Bugtraq - http://www.securityfocus.com/archive/1 Independent source for security vulnerabilities, alerts, and threats. |
 Patchlink Corporation - http://www.patchlink.com Software vendor for cross platform patch management. |
 CERT Coordination Center - http://www.cert.org/ Studies Internet security vulnerabilities, provides incident response services to sites that have been the victims of attack, publishes a variety of security alerts, researches security and survivability in wide-area-networked computing, and develops information to improve site security. |
 Makesecure.com - http://www.makesecure.com Network security news, alerts and updates |
 SANS Internet Storm Center - http://isc.sans.org/ Cooperative cyber threat monitor and alert system. Features daily handler diaries that summarize and analyze new threats and events. |
 Apache HTTP Server Vulnerability Lists - http://httpd.apache.org/security_report.html Lists of security problems fixed in released versions of the Apache HTTP Server. |
 PatchEasy - http://www.patcheasy.com/ Software vendor for patch management. |
 PatchAdvisor - http://www.patchadvisor.com Fee based patch alert service. |
 CERIAS - http://www.cerias.purdue.edu/ Center for Education and Research in Information Assurance and Security. University center for multidisciplinary research and education in areas of information security. |
 ISS X-Force - http://xforce.iss.net/xforce/alerts Security alerts, advisories, and alert summaries from ISS. |
 Computer Incident Advisory Capability - http://www.ciac.org/ciac/index.html CIAC publishes security bulletins and virus and hoax information. They provide computer security assistance to US Department of Energy (DOE) sites. |
 Open Source Vulnerability Database - http://www.osvdb.org/ Searchable database of vulnerabilities. Offers data for download in XML format as well as via website. Details of how to submit new vulnerabilities, database schema and FAQ. |
 PatchManagement.org - http://www.patchmanagement.org/ Mailing list dedicated to the discussion of patch management. |
 AusCERT - http://www.auscert.org.au Australian Computer Emergency Response Team. Advisories and tools. |
 US-CERT - http://www.us-cert.gov/ Established in 2003 to protect the nation's Internet infrastructure, US-CERT coordinates defense against and responses to cyber attacks across the nation. |
 VulnWatch - http://www.vulnwatch.org/ Computer security vulnerability disclosure mailing list |
 Secunia - http://secunia.com/ Provides security advisories and information about patches, and provides software for vulnerability management. |
 Symantec DeepSight Threat Management System - http://www.symantec.com/Products/enterprise?c=prodinfo&refId=988 Fee based security alert service that provides early warning of active attacks. |
 New Zealand Computer Emergency Readiness Team - http://www.nzcert.org.nz Security Alerts and Advisories |
 FrSIRT - http://www.frsirt.com/english/ Provides security advisories and real-time information about vulnerabilities, exploits, and threats. Sponsor of the Common Vulnerability Scoring System (CVSS). |
 Linux Security Group - http://www.linux-security.us/ Security Advisories, Anti Hackers, programming books and related links. |
 Secure Elements - http://www.secure-elements.com Software vendor for IS technical control auditing, vulnerability management, and compliance. Provides advisories via XML and RSS, and fully supports OVAL and XCDDF XML standards for compliance and vulnerability functions. |
 CASESContact - tips and tricks - http://casescontact.org/rss_tips.php CASEScontact is an information security site providing tips and tricks for home users and SMEs (Small and Medium-Sized Enterprises) for FREE (How to protect against threats, vulnerabilities, privacy, encryption, viruses, worms, Trojans, spyware etc.). |
 Secure Elements C5 Alert Feed - http://rm.secure-elements.com/rss/seclabs.xml Vulnerability and patch alerts |