|
|
|
|
Welcome Guest! Login/Join |
| Directory: | Computers / Internet / Abuse / Denial_of_Service |
| Title: | CERT Advisory CA-2000-01 Denial-of-Service Developments |
| Description: | Denial of Service developments including description, impact, and solutions. |
| Location: | http://www.cert.org/advisories/CA-2000-01.html |
| |
|
| | |
| Directory: | Computers / Internet / Abuse / Denial_of_Service |
| Title: | CERT Incident Note: DoS Attacks Using Nameservers |
| Description: | Description of how intruders use name servers to execute packet flooding denial of service attacks. |
| Location: | http://www.cert.org/incident_notes/IN-2000-04.html |
| |
|
| | |
| Directory: | Computers / Internet / Protocols / DNS |
| Title: | Securing an Internet Name Server |
| Description: | Paper discussing general name server security, with a focus on BIND. By Allen Householder and Brian King of CERT/CC. |
| Location: | http://www.cert.org/archive/pdf/dns.pdf |
| |
|
| | |
| Directory: | Computers / Internet / Protocols / SSH / Documentation |
| Title: | CERT Advisory CA-1999-15: Buffer Overflows in SSH Daemon and RSAREF2 Library. |
| Description: | Affects all versions of SSH 1.2.27 and lower when built with RSAREF (all US versions.) |
| Location: | http://www.cert.org/advisories/CA-1999-15.html |
| |
|
| | |
| Directory: | Computers / Internet / Protocols / SSL-TLS / Programming_Libraries / OpenSSL |
| Title: | CERT Advisory: Multiple Vulnerabilities In OpenSSL |
| Description: | "There are four remotely exploitable buffer overflows in OpenSSL. There are also encoding problems in the ASN.1 library used by OpenSSL. Several of these vulnerabilities could be used by a remote attacker to execute arbitrary code on the target system. All could be used to create denial of service." |
| Location: | http://www.cert.org/advisories/CA-2002-23.html |
| |
|
| | |
| Directory: | Computers / Security / Advisories_and_Patches |
| Title: | CERT Coordination Center |
| Description: | Studies Internet security vulnerabilities, provides incident response services to sites that have been the victims of attack, publishes a variety of security alerts, researches security and survivability in wide-area-networked computing, and develops information to improve site security. |
| Location: | http://www.cert.org/ |
| |
|
| | |
| Directory: | Computers / Security / Authentication / Kerberos |
| Title: | CERT Advisory: Buffer Overflow in Kerberos Administration Daemon |
| Description: | "Multiple Kerberos distributions contain a remotely exploitable buffer overflow in the Kerberos administration daemon. A remote attacker could exploit this vulnerability to gain root privileges on a vulnerable system." |
| Location: | http://www.cert.org/advisories/CA-2002-29.html |
| |
|
| | |
| Directory: | Computers / Security / Authentication / RADIUS |
| Title: | CERT Advisory: Vulnerabilities in Various Implementations of the RADIUS Protocol |
| Description: | Covers two vulnerabilities: the digest calculation buffer overflow, and the inadequate validation of the vendor-length of vendor-specific attributes. |
| Location: | http://www.cert.org/advisories/CA-2002-06.html |
| |
|
| | |
| Directory: | Computers / Security / Consultants / Training |
| Title: | CERT |
| Description: | CERT is the Computer Emergency Response Team that was founded at Carnegie Mellon shortly after the first worm, the Morris worm, caused havoc over a decade ago. CERT offers training to organizations to mitigate security vulnerabilities and respond to security incidents. |
| Location: | http://www.cert.org/training/ |
| |
|
| | |
| Directory: | Computers / Security / Internet / Research |
| Title: | An Analysis Of Security Incidents On The Internet 1989-1995 |
| Description: | A dissertation analysing Internet security incidents. |
| Location: | http://www.cert.org/research/JHThesis/Start.html |
| |
|
| | |