Thursday, July 15, 2010

A few more odds & ends

Still no time for original content, but here a few more resources I sent to my sec560 students, figured I would share them on here as well...


Sec560 week 4 resources:


Here is the free online version of Fyodor's NMAP book, Not all chapters are available, but still a great read - http://nmap.org/book/toc.html


Great tutorial on Scapy:

http://www.secdev.org/projects/scapy/doc/usage.html#interactive-tutorial


Also, a Python tutorial to go with it - http://docs.python.org/tutorial/



Here are two of the papers I mentioned in class:

Exploiting Tomorrow's Internet Today Penetration Testing with IPv6 - http://www.uninformed.org/?v=10&a=3

Insertion, Evasion & Denial of Service, Eluding Network Intrusion Detection - http://insecure.org/stf/secnet_ids/secnet_ids.html



These are some of the blogs I read (or more accurately, try to find time to read)

http://www.darkoperator.com/ - Carlos Perez

http://blog.metasploit.com/ - HD Moore, Egypt & others..

http://taosecurity.blogspot.com/ - Richard Bejtlich

http://www.packetstan.com/ - Judy Novak, Mike Poor, Josh Wright

http://pauldotcom.com/ - Paul Assadorian, Larry Pesce, Carlos Perez, John Strand, Mick Douglas

http://blog.commandlinekungfu.com/ - Ed Skoudis, Hal Pomeranz, Tim Medin

http://carnal0wnage.attackresearch.com/ - Chris Gates, Valsmith & others..

http://vrt-sourcefire.blogspot.com/ - Sourcefire Vulnerability Research Team

http://theharmonyguy.com/ - Joey Tyson

http://blog.harmonysecurity.com/ - Stephen Fewer

http://isc.sans.edu/index.html - SANS Internet Storm Center

No comments:

Post a Comment