Network and Computer Security

The Network and Computer Security Blog

Bookmark this site!

August 3, 2006

Demystifying Denial-Of-Service attacks

Filed under: Articles — SecuNews @ 11:27 am

We often see articles and sews about denial of service and distributed denial of service attacks (”DoS” and “DDoS”), but besides the fact they render a service useless by trying to overloading it, few details are usually given.

As it turns out, the mechanism is a bit more complicated and it’s not exactly an ‘Overloading’ of the service is the sence we usually mean it, but most of the time it’s actually a flood of the networking layer of the target machine(s).

Abhishek Singh wrote a very good acticle that explains this technique very well. It’s a very good read and a very well illustrated article. Definately worth the read!

July 24, 2006

Why popular antiviruses still don’t work well

Filed under: Virus, Articles — SecuNews @ 12:13 pm

It’s no news that no antivirus is 100% safe.

It has always been that way and will always be. The answer is simple: there are actually very few antiviruses sharing the biggest market share (the top 5 AVs most likely represent more than 95% of the installed base). So the virus writters can very quickly check their “lastest,not-released-in-the-wild-yet” virus and see which antivirus applications detect it as a malware and modify it accordingly.

ZDNet just published a good paper on the subject: Why popular antivirus apps ‘do not work’?

July 17, 2006

July 15th edition of Bruce Schneier’s CRYPTO-GRAM

Filed under: Articles, Newsletters — SecuNews @ 9:27 am

The July 15th issue of Bruce Schneier’s Crypto-Gram newsletter is out.

As usualy, plenty of great articles that give a real insight into what matters as far is computer security is concerned. In particular, make sure you read the “Economics and Information Security” article, as it’s the best I’ve read on this subject so far!

Here’s the summary of the newsletter:
Economics and Information Security
Crypto-Gram Reprints
Google and Click Fraud
A Minor Security Lesson from Mumbai Terrorist Bombings
News
Getting a Personal Unlock Code for Your O2 Cell Phone
The League of Women Voters Supports Voter-Verifiable Paper Trails
Brennan Center and Electronic Voting
Comments from Readers

July 1, 2006

Want to know that the best antivirus software is?

Filed under: News, Virus, Articles — SecuNews @ 11:25 am

We’re all wondering which antivirus is the best one to protect our servers.

The guys from Nephentes wondered the same thing and took the time to submit a sample of 4987 viruses to 14 antivirus softwares running on *nix platforms (some free some not).

The full study is here, but if you’re impatient here’s the summary:

Rank Product Hit Rate Trend
1 Antivir 99,04% +7,07%
2 BitDefender 96,23% +1,52%
3 VirusBlokAda 95,17% +1,42%
4 F-Prot 94,02% +2,39%
4 Authentium 94,02% new
5 Norman Virus Control 93,78% +1,19%
6 Fortinet 87,29% +2,35%
7 F-Secure Antivirus 85,22% +5,99%
8 Kaspersky 85,10% +5,73%
9 VirusBuster 82,53% +11,76%
10 Trend Micro 76,19% +5,14%
11 ClamAV 71,41% -0,85%
12 NOD32 70,06% +4,05%
13 Sophos SWEEP 68,58% +2,45%
14 eTrust 63,97% new

(Note: the ‘Trend’ percentage is the variation between the current test and the previous one)

June 18, 2006

June 15th edition of Bruce Schneier’s CRYPTO-GRAM

Filed under: Articles, Newsletters — SecuNews @ 11:46 am

The June 15th issue of Bruce Schneier’s Crypto-Gram newsletter is out.

The Value of Privacy
Movie-Plot Threat Contest Winner
Crypto-Gram Reprints
Diebold Doesn’t Understand the Security Threat
News
Hacking Computers Over USB
The Doghouse: KRYPTO 2.0
Counterpane News
Aligning Interest with Capability
Comments from Readers

May 16, 2006

May 15th edition of CRYPTO-GRAM available.

Filed under: Articles, Newsletters — SecuNews @ 9:22 am

The May 15th issue of Bruce Schneier’s Crypto-Gram newsletter is out.

Summary:

Movie Plot Threat Contest: Status Report
Who Owns Your Computer?
Crypto-Gram Reprints
Identity-Theft Disclosure Laws
When “Off” Doesn’t Mean Off
News
RFID Cards and Man-in-the-Middle Attacks
Software Failure Causes Airport Evacuation
Counterpane News
Microsoft’s BitLocker
The Security Risk of Special Cases
Comments from Readers

As usual it is an excellent reading, but if you don’t have time to read it all, make sure you read at least the Who Owns Your Computer? and Microsoft’s BitLocker articles, they are especially enlightening!

April 15, 2006

Crypto-Gram Newsletter

Filed under: Articles, Newsletters — SecuNews @ 10:00 am

The April 15th issue of Bruce Schneier’s Crypto-Gram newsletter is out.

Summary:
Movie-Plot Threat Contest
Airport Passenger Screening
80 Cameras for 2,400 People
Crypto-Gram Reprints
VOIP Encryption
Security through Begging
DHS Privacy and Integrity Report
News
KittenAuth
Terrorism Risks of Google Earth
New Kind of Door Lock
Counterpane News
Evading Copyright Through XOR
iJacking
Security Screening for New York Helicopters
Comments from Readers

You can read it here.

« Previous Page