Access
Cisco
Cisco certification
Database
Exchange
Fedora Core
Hacking
ICQ
IRC
JavaScript
Linux
Microsoft
.NET
NT 4.0 & Group Policy
Microsoft Office & Excel 2002
Outlook & Office
Plugins
Security
SharePoint
SNMP & Network Monitoring
Software
SQL
Tech Support
Unix
Viruses, Worms & Trojans
WAN Technologies Certification
Web Services
Webcasts
Webmaster
Windows 7
Windows NT & 95
Windows & Windows XP
Windows (2K/2K3) Server & Prof.
Windows 98, ME, Dual Boot, Winsock
Word 2002, Tools & Smart Tags
XML

SQL Security

SQL security

SQL Server 2005 Security Overview for Database Administrators


Windows Server Security

SECEDIT: Working With Microsoft's Security Policy Editor.doc
 
Hexadecimal Converter - is very useful when a STIG requires a hexadecimal value and you need to convert that to something that you can type into a computer.

MANUAL SYSTEM CHECK PROCEDURES FOR WINDOWS SERVER 2003 (DISA)

MS Windows Server 2003 Security Guide.doc (download) (overview)

Security Technical Implementation Guides (DISA)

Major Pages

Center For Internet Security

Miscellaneous

Stop bad BHOs from installing themselves on IE using a predefined list of objects that loads into a segment of the registry used to define BHOs that should not run.
Spyware Guide / block file maintains just such a list, which can be loaded as a simple registry file.

MSRPC null sessions: exploitation and protection

Restricting Anonymous Access (Updated: 3/28/03)

Client, service, and program incompatibilities that may occur when you modify security settings and user rights assignments

Unix / Linux

Bastille

Welcome to Profound States - brought to you by Positive Change Hypnosis of Manassas, Virginia.

................................ IT Security ...............................

 

Hacking News Cyber Security  


Hacker Tools For Hardening Your Network



 
To test passwords across the enterprise, use automated tools such as THC Hydra, LophtCrack and John the Ripper to check for blank and simple/common passwords.  
The Hacker's Choice (for TYC Hydra)

John the Ripper password cracker
Anti-Phishing Working Group  


Hardening Windows



 
The Administrator Accounts Security Planning Guide (1/1/99)

Windows XP Security Compliance Management Toolkit (5/22/03) (Updated: 2/18/09)

Windows 2000 Security Hardening Guide
Microsoft policy on third-party security configuration guidance support

Windows Server 2003 Security Compliance Management Toolkit

Security and Auditing
 



Using Administrative and Security Templates



 
Understanding Security Templates

Using Administrative Template Files with Registry-Based Group Policy

Step-by-Step Guide to Using the Security Configuration Tool Set
Using Restricted Groups

Increasing Security with Limited User Accounts and Restricted Groups

 



Miscellaneous Windows Security



 
Microsoft Security Central

Microsoft Baseline Security Analyzer

Windows Live Scanner
SMS

How to prevent Windows from storing a LAN manager hash of your password in Active Directory and local SAM databases
 



Syslog



 
Syslog (wiki)

set syslog server

Central Loghost Mini-HOWTO
Cisco & Syslog

Syslog Configuration and Cisco Devices
 



DOD



 
DISA's Information Assurance Web Page

NIST: Computer Security Division: Computer Security Resource Center (CSRC)

http://guides.ritchie.disa.mil

DODI 8500.2.pdf (2/6/03)

DODI 8570.01-M: Information Assurance Workforce Improvement Program.pdf (WIP)
https://iase.disa.smil.mil

COMPUTER SECURITY ACT OF 1987

FISMA of 2002

DoDD 8500.01E.pdf

OMB Circular A-130 Appendix III

The DIACAP Interim Guidance.pdf
 



Cisco Hardening



 
Cisco SNMP Community Strings: Disabling default accounts and changing default passwords Lock down Cisco switch port security

Cisco TCP and UDP Small Services: Disabling Unnecessary Services
 
Configure your company's firewall to redirect certain domains that carry ads to 127.0.0.1 (or another "black hole" address). This particular Search Windows Security Tech Target page contains a ready-made list of hosts to block. Simply copy and paste into a hosts file, or feed the list into a firewall or routing appliance. Not only does this prevent spyware from being downloaded, it also prevents that much more bandwidth from being eaten up by advertising in general.  



Cisco Monitoring Software



 
Cisco Works RANCID - Cisco configuration monitoring tool  



Vulnerability Scanners



 
Vulnerability scanner (wiki)

Top 10 Web Vulnerability Scanners
Vulnerability Scanners (ZDNET)  

Security Software

Ten free security utilities you should already be using (ZDNET)

Haute Secure - Unlike any other product, prevents malware from attacking your PC. Stop "drive by" malware from loading itself onto your computer when you visit web pages that automatically add malicious programming to your computer; even when you haven't clicked on anything on their web page.


Site Advisor - "since March McAfee has been offering a browser plug-in that works with Mozilla Firefox and Microsoft Internet Explorer. Site Advisor puts a little rectangular button in the bottom corner of the browser. If a site you're visiting is safe, the Site Advisor button stays green. When you visit a questionable Web site the button turns red or yellow (depending on the risk level) and a little balloon expands with details on why Site Advisor has rated the site as such."

Free utility looks for missing security patches (7/24/07: ZDNET)

Google updates open-source anti-malware tool (6/11/07)

ThreatFire Free Edition (exe) offers protection against viruses, worms, trojans, rootkits, buffer overflows, spyware, adware and other malware. It uses behavioral analysis to hunt down and paralyze threats that are too new or too clever to be recognized by traditional "signature-based" antivirus software.

Sophos Anti-Rootkit (exe)

CallerIP monitors activity on open ports on your system, which are often not protected by firewalls, and identifies backdoors that could allow harmful Trojans to steal your information.

More Cyber Security Software...

Anti-Virus


Symantec Anti-Virus Corporate Edition Administrator's Guide.pdf


Symantec System Center 10.0 walk-through for administrators


Symantec AntiVirus Corporate Edition Installation Guide.pdf


Installing Symantec AntiVirus on mail servers


Preventing Symantec AntiVirus 10.0 from scanning the Microsoft Exchange directory structure


Other Anti-Virus Links


If you are the original creator of material featured on this website and want it removed,
please contact the webmaster
Copyright © 1998-2006 Charles Michael Beaver.