Alerts This Week
Warning Icon 1 637
Alerts This Week
Warning Icon 1 637

Stay Ahead With Linux Security News

Filter Icon Refine news
X Clear Filters
X Clear Filters
View More

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Loading...

Explore Latest Linux Security news

We found -2 articles for you...
74

Nessus: Effective Network Security Assessment On Red Hat Linux

As it says in the Bible in Hezekiah 5:10, "The one who sets the plan in motion, but verifies it not, is worse than a fool." Okay, you know that there's no book of Hezekiah in the Bible. But, the statement is accurate, especially as it pertains to verifying the state of our security. And verification does not take an advanced science degree.. . .. As it says in the Bible in Hezekiah 5:10, "The one who sets the plan in motion, but verifies it not, is worse than a fool." Okay, you know that there's no book of Hezekiah in the Bible. But, the statement is accurate, especially as it pertains to verifying the state of our security. And verification does not take an advanced science degree. NetSec Letter #18, 10 April 2002 Using Network VATs for Verification Fred Avolio, Avolio Consulting, Inc., / As it says in the Bible in Hezekiah 5:10, "The one who sets the plan in motion, but verifies it not, is worse than a fool." Okay, you know that there's no book of Hezekiah in the Bible. But, the statement is accurate, especially as it pertains to verifying the state of our security. And verification does not take an advanced science degree. (After teaching three classes for NASA Kennedy Space Center, I've shied away from saying, "not rocket science.") All it takes is a plan and a tool. The Importance and Ease of Verifying Years ago, when I was in the firewalls business, I sent someone on an installation job. The customer was replacing a packet-filtering firewall with our more robust application gateway firewall. Unlike today, when everyone has detailed specific, up-to-date, and relevant policies, the customer did not have a security policy, besides the Primordial Security Policy (see NetSec Letter #17, NetSec Letter #17, 4 March 2002 ). In the process of gathering firewall-specific policies, the installer asked, "Do you permit outbound FTP requests?" To which he got the reply, "No." The installer sat down at a screen, typed in the FTP client command "ftp ftp.uu.net" and found indeed they *did* permitit. The written policy or the policy in the administrator's head did not permit it, but the policy as implemented did. All it took to verify the policy was typing that one command. Yes, it is really more involved than that. To be thorough, one would have to test every network port. To do that, you use an automated tool. There are commercial tools such as ISS's Internet Security Scanner () and freely available tools like NMAP (https://nmap.org/) and Nessus (https://www.tenable.com/ You aim these scanners at the system or systems you wish to test, and pull the trigger. They automatically scan ports, look for known vulnerabilities. A note of warning: running scanners against systems is considered a hostile act, and in some places is a criminal offense. Don't think of scanning a computer that you don't own, or for which you are not responsible, or that you have not been hired to scan. Using Nessus Recently, my company took on the task of assessing the vulnerability of a web server. There is more to a vulnerability assessment than running a scanner and interpreting the results, but this is part of what we did. We used Nessus running on Red Hat Linux and were very happy with the results. First, we started with a plan, and so should you. All I mean by this is, know what you are testing. Know what should be there. If you are testing an FTP server and you find and FTP listener running on port 21, it is not a surprise. If you know you are testing a web server, and you were told that it is only used for web-related services, you should be surprised to find running listeners for SMTP (e-mail), and TELNET (terminal services). Nessus can use NMAP, as well as other tools, for port scanning. It also comes with "plug-ins" -- add-on tools that test and look for known vulnerabilities. There are 900 plug-ins in the database in 22 areas. It will produce a report, complete with graphs, lists of vulnerabilities found (classifying them as "high," "serious," "medium," and "low"), and explanations of what it found. Youmay also specify how far Nessus will go in its testing. We set it in "safe" mode. This directs Nessus to not attempt to exploit indicated vulnerabilities. In this installation, Nessus found ports running services we did not expect. The written and verbal information we received did not indicate they should be running. It also found a directory with example CGI scripts -- some exploitable. It reported old, potentially vulnerable, versions of software, a potential vulnerability in a particular server, and server banner responses that give out too much information (for example, "220 ProFTPD 1.20pre1 Server"). When the scanning was done, we were not finished. We still had to look at the report to see if it was accurate, and convey to the client what items were really important to deal with immediately, what might be false positives -- with suggestions for "manual" verification steps, and what could be ignored -- and why. Next Steps Verifying security is as important as initially planning and implementing it. And verification should be on going -- a never-ending process. Our final recommendation to our client was this: "After addressing the concerns herein, scan the site monthly to see if the security posture changes, and account for those changes (or address them)." Promotions, Self and Otherwise There are 3 columns I wrote for WatchGuard Technologies I have not mentioned to you before. The first, from their "Foundations" series is "What Are Intrusion Detection Systems (IDS)?" at WatchGuard LiveSecurity: Foundations: What Are Intrusion Detection Systems? . The second, "Security Tokens: Why Aren?t You Using Them?" at . And the third is "Basic IP Router Security" which you can find at WatchGuard LiveSecurity: Editorial: Basic IP Router Security . While doing some research for a class I am developing, I came across this short article from *CIO Magazine*: "How to make a firewall sandwich," . Ron DuFresne has an interesting paper on his website entitled " Extrusion Detection Systems; the art ofnetwork monitoring." You may find it at https://saw.com/buy-domain May 6 and 7 in Las Vegas, Dave Piscitello, Joel Snyder, and I will again be presenting our two VPN classes, "Introduction to VPNs" and "VPN Design and Deployment." See Frederick M. Avolio - 2005 Speaking and Teaching Calendar for information about these and other courses. On May 30, I'm delivering the 11AM Keynote address at the eSecurity conference ( ). The title is "Network Security: It's Not Just for Security Guys Anymore." I'll also be at CSI's NetSec 2002 in San Francisco in June ( ). I'll deliver a talk on wireless security, another on how to secure your web (or any other) server, and will teach my 2-day "Tools and Techniques" class ( Tools and Techniques for the Network Security Practitioner ). . As it says in the Bible in Hezekiah 5:10, 'The one who sets the plan in motion, but verifies it not,. bible, hezekiah, motion, verifies. . Anthony Pell

Calendar 2 Apr 11, 2002 User Avatar Anthony Pell Network Security
83

Enhancing Network Security: Firewalk and Scanner Tools Overview

Network scanning, password grabbing, trojaned software -- all are the bane of the righteous sysadmin. Craig Ozancin reveals how to beef up network security and ward off attackers at the LinuxWorld Expo, as reported by Rick Moen. "Nessus, the older SATAN . . . . Network scanning, password grabbing, trojaned software -- all are the bane of the righteous sysadmin. Craig Ozancin reveals how to beef up network security and ward off attackers at the LinuxWorld Expo, as reported by Rick Moen. "Nessus, the older SATAN and SAINT packages, Firewalk (which probes and identifies a network's firewall ruleset), or proprietary scanners such as Internet Security Systems's Internet Scanner and Axxent Technologies' NetRecon -- as well as checking Websites on the target network for known-exploitable CGI scripts. " The link for this article located at LinuxWorld [LinuxToday] is no longer available. . Network scanning, password grabbing, trojaned software -- all are the bane of the righteous sysadmin. network, scanning, password, grabbing, trojaned, software, righteous, sysadmin. . LinuxSecurity.com Team

Calendar 2 Aug 30, 2000 User Avatar LinuxSecurity.com Team Hacks/Cracks
74

Exploring Security Scanners' Role in Linux Network Protection

This paper discusses the differnt types of security scanners available for Linux. "A scanner is a program that automatically detects security weaknesses in a remote or localhost.". Scanners are important to Internet security because they reveal weaknesses in the . . .. This paper discusses the differnt types of security scanners available for Linux. "A scanner is a program that automatically detects security weaknesses in a remote or localhost.". Scanners are important to Internet security because they reveal weaknesses in the network. System administrators can strengthen the security of networks by scanning their own networks. The link for this article located at Linux.com --Â Â is no longer available. . Discover key Linux security scanners like Nmap, OpenVAS, Nikto, and more to find and fix vulnerabilities, enhancing your network's defenses. Linux Network Scanners, Vulnerability Assessment Tools, Security Scanner Advantages. . Anthony Pell

Calendar 2 May 16, 2000 User Avatar Anthony Pell Network Security
News Add Esm H340

Get the latest News and Insights

Get the latest Linux and open source security news straight to your inbox.

Community Poll

What got you started with Linux?

No answer selected. Please try again.
Please select either existing option or enter your own, however not both.
Please select minimum {0} answer(s).
Please select maximum {0} answer(s).
/main-polls/150-what-got-you-started-with-linux?task=poll.vote&format=json
150
radio
0
[{"id":483,"title":"Self-taught through trial and error","votes":545,"type":"x","order":1,"pct":78.42,"resources":[]},{"id":484,"title":"Formal training or courses","votes":30,"type":"x","order":2,"pct":4.32,"resources":[]},{"id":485,"title":"A job that required it","votes":34,"type":"x","order":3,"pct":4.89,"resources":[]},{"id":486,"title":"Other","votes":86,"type":"x","order":4,"pct":12.37,"resources":[]}] ["#ff5b00","#4ac0f2","#b80028","#eef66c","#60bb22","#b96a9a","#62c2cc"] ["rgba(255,91,0,0.7)","rgba(74,192,242,0.7)","rgba(184,0,40,0.7)","rgba(238,246,108,0.7)","rgba(96,187,34,0.7)","rgba(185,106,154,0.7)","rgba(98,194,204,0.7)"] 350
bottom 200
Your message here