CMS Explorer
http://code.google.com/p/cms-explorer/ – pretty decent information gathering tool for your pentesting needs.
http://code.google.com/p/cms-explorer/ – pretty decent information gathering tool for your pentesting needs.
There is a way to patch Adobe Reader (or any vulnerable app for that matter) from spawning viria-inspired processes into your system.
Here it is:
http://blog.didierstevens.com/2009/11/19/update-bpmtk-with-hook-createprocess-dll/
Outerzone 2010 videos – http://www.irongeek.com/i.php?page=videos/outerz0ne-2010-videos
From their website: (and that’s the description of just one of their tools and my personal favorite)
AdvancedWinServiceManager is a smart tool to remove hidden rootkit services. It makes it easy to eliminate such malicious services by separating out third party services from Windows services. By default it shows only third party services along with more details such as Company Name, Description, Install Date, File Path etc at one place which helps in quickly differentiating between legitimate and malicious services. It comes with rich features such as detecting hidden rootkit services, exporting the service list to html based log file, displaying only third party services etc.
Incident Response plan how-to in the PDF on the following link:
http://zeltser.com/presentations/unexpected-incident-response.pdf
First of all, it’s free. It’s fast (depending on load), efficient and generates great reports. So if you’re in search for a malware sandbox, or any type of sandbox for checking out what an .exe does in every possible aspect, this sandbox is for you:
http://www.sunbeltsecurity.com/Submit.aspx?type=cwsandbox&cs=A41CD150B37359889A553671CBFD2360
And another nice one is
Continuing the tradition, I’m sharing my bookmarks link by link. Today’s link is to the NSA Security Configuraton Guides:
http://www.nsa.gov/ia/guidance/security_configuration_guides/current_guides.shtml