|
KLC
Consulting, Inc |
KLC Security Resources |
Tel: 617-921-5410 |
|
|
||
| Trojan Analysis | Security Resources | Spoof MAC Address |
| User Account and Password Management in Windows 2000/XP/2003 | ||
| Where are Trojans hiding? | ||
| SMAC 1.2 - MAC Address Modifying Utility for Windows 2000, XP and 2003 |
| Web App & Network Security Scanners: |
Web Scanner tools:
Network Security Scanners:
|
|
| WinpCap based tools (sniffer/analyzer) | WinPcap is an architecture for packet capture
and network analysis for the Win32 platforms.
WinpCap:
WinpCap based Tools: WinDump is the porting to the Windows platform of tcpdump, the most used network sniffer/analyzer for UNIX. WinDump:
Ethereal is a free network protocol analyzer for Unix and Windows:
|
|
| HTTP Status Code |
Perl - HTTP::Status - HTTP Status code processing |
|
| RFC (Request for Comments) | RFC - (Request for Comments) | |
| Technical Dictionary | Dictionary for Computing:
|
|
| Scripts and Codes | Scripts and Code for security utilities, exploits, and tricks. | |
| TCP & UDP Ports List | TCP & UDP Ports List | |
| Trojan Ports List | ||
| Network Based Programming | ||
| Information Gathering | IP address lookup and more. Great for
information gathering.
|
|
| SANS Reading Room for Security Related topics | There are lots of papers and articles on the latest security related technologies and issues. Many papers discuss security technologies in detail. It has tons of resources. | http://rr.sans.org |
| SysInternals | Lots of free tools and resources for Windows 9x, ME, 2000, XP. Many Process Monitoring, Network Monitoring, File Systems Management (NTFS DOS), CPU Monitoring... | http://www.sysinternals.com |
| Windows 2000 and XP Systems Internals | It has nice System Internal, Kernel stuff that can help security professionals to look under the hood | http://www.smidgeonsoft.prohosting.com |
| Security Focus | Great resources for Security Advisories (BUGTRAQ), Vulnerabilities, Exploits, Resources, Articles, Tools, Forums | http://www.securityfocus.com |
| SANS Institute - Security Training and Resources | Lots of Security related articles, papers, best practices, and one of the best training providers in the industry. Tons of useful information! | http://www.sans.org |
| AtStake (includes L0pht) | Lots of nice tools for blackhat (malicious hackers) and whitehat (security professionals). L0pht is part of AtStake now. This is definitely a website to check out! | http://www.atstake.com |
| Windows Security Tools | Collection of networking and security tools | http://vw.web1000.com |
| Microsoft Security | Security section of Microsoft Website. It of course has lots of security advisories, articles on securing systems, best practices, security tools, and etc... If you have Windows systems, you want to check this website. | http://www.microsoft.com/security |
| PacketStorm - Hacker and Security Pro's corner | Lots of security tools, exploits, vulnerabilities, viruses, Trojans. This is for more technical people. | http://www.packetstormsecurity.org |
| Black Hat | In the Briefing section, there are lots of hacking techniques, presentations, and tools. BlackHat provides one of the best training on the latest trend of hacking. The best way to learn information security is to see what hackers are doing! | http://www.blackhat.com |
| CERT Security Advisories | This is one of the major sites that tracks security vulnerabilities and advisories from hardware and software vendors. You should subscribe to the CERT advisories if you want to keep up to date with the security issues out there! | http://www.cert.org |
| CISecurity | Many Benchmark tools for different operating systems and routers! Windows, Unix, HP-UX, Linux, Cisco, etc. | http://www.cisecurity.com |
| Computer Security Institute (CSI) | Have nice security information and links. | http://www.gocsi.com |
| Incidents.org | Most frequently scanned ports and trends of the port scan out there around the world. It gives you nice statistics | http://www.incidents.org |
| Lockdown Corp (Maker of SWAT-IT, free Anti-Trojan tool) | Great site for Anti-Virus, Anti-Trojan, Anti-Spam tools. FREE SWAT-IT tool is one of the greatest FREE tools for Anti-Trojan. | http://www.lockdowncorp.com |
| Symantec Security - Anti-Virus, Security Products | Great for Virus Tracking and security resources | http://www.symantec.com |
| McAfee Anti-Virus, Security Products | Great for Virus Tracking and security resources | http://www.mcafee.com |
| National Security Agency (NSA) | Lots of security and benchmark tools for different systems | http://www.nsa.gov |
| National Institute of Standards and Technology (NIST) | Resources for Security Policies and resources | http://www.nist.gov |
| ISS | Security Vendor for IDS, Scanners | http://www.iss.net |
| Linux Security | Linux Security Resources and tools | http://www.linuxsecurity.org |
| Wireless Security | Wireless 802.11x Security, Vulnerabilities, and WarDriving Statistics. | http://www.wardrive.org |
| SNORT Intrusion Detection System | *NIX and Windows based IDS system. It is great! | www.snort.org |
| ZoneAlarm Personal Firewall | FREE Personal Firewall. Pro edition is more powerful, but not free. | http://www.zonealarm.com |
| Tiny Personal Firewall | Tiny Personal Firewall - Powerful software based firewall. Highly recommended. Version 2 firewall and documentation is free, but less user friendly. Later versions are not free, but much more user friendly.. | http://www.tinysoftware.com |
| Security Software list by NIH.GOV | A nice list of Security Commercial and Open Source Tools | http://www.alw.nih.gov/Security/security-prog.html |
| Network Security Tools by CIAC | A nice list of Network Auditing tools | http://ciac.llnl.gov/ciac/ToolsUnixNetSec.html |
| Wireless Security Tools from WarDrive.org | A nice list of Wireless (802.11b) Security Tools | |
| Mobrien.com - scripts and tools | Great scripts and utilities for Network Subnet Calculator. It also has links for Network Information Queries. | http://screamer.mobrien.com/ |
|
|
||