The Security Eunoia

Blogging about Security Auditing, IdM & Access Mgmt, Web App Security etc

Entries Tagged ‘Auditing’

IBM’s answer to the Endpoint Security problem

Remember the post about how big security vendors are moving down the food chain to consolidate their hold on the security market? Well IBM through its partnership with (a much smaller) BigFix has released a desktop security solution that is positioned to enhance endpoint security and “reduce cost”.

Leave a Comment

5 Security Tools to beat the Budget Crunch

Many are the articles suggesting ways by which departments can make the most of shrinking budgets in these hard times. If you are a small company, allocating funds for all the security resources you need can prove very challenging. You need to be smart about security spending. Therefore security tools that just do the work for as little as possible is a ‘must consider’.

Leave a Comment

Fighting Botnets with BotHunter

Aiming to take the fight to the bot herders, a company - SRI International - has released a tool called BotHunter. It is free. The software works by monitoring the communication between compromised hosts on a corporate network and bot-herding computers also known as command & control centres.

BotHunter uses what sounds more like heuristic methods and processes (where detection is based on patterns) or than signatures (where detection is based on known attacks). This is how it works:

Leave a Comment

CAINE - A digital forensic project on Live CD

CAINE - Computer Aided INvestigative Environment -is a digital forensics project based on Ubuntu Hardy Heron. It comes complete with the full complement of Ubuntu’s traditional Gnome interface. On top of the Ubuntu kernel is an assembly of open source computer forensics tools held together by a perl wrapper. Tools included are:

Grissom Analizer
Automated Image & [...]

Comments (4)

The Damn Vulnerable Linux project

The Damn Vulnerable Linux (DVL) is a Linux-based security environment for IT security education. DVL distribution has been deliberately weakened to facilitate ethical hacking education. It is regularly updated with exploitable exercises with the solutions and corresponding exploits submitted by the community. It contains a plethora of IT security tools thus making it a good [...]

Leave a Comment