Categories
News Technical

Dynamic IP Restrictions in IIS7

The Dynamic IP Restrictions Extension for IIS provides IT Professionals and Hosters a configurable module that helps mitigate or block Denial of Service Attacks or cracking of passwords through brute-force by temporarily blocking Internet Protocol (IP) addresses of HTTP clients who follow a pattern that could be conducive to one of such attacks. This module […]

Categories
Personal

My thoughts on hacking

Hacking an account, exploiting someone’s false sense of security is, in my opinion, a great example of where the security failures are really: in the humans. I am sure; that EVERY account hacked in known history has been made because of the end users’ negligence. Giving their password to someone else, using a third-party application, […]

Categories
News

Microsoft releases critical update for Remote Desktop

Microsoft has released a critical update that addresses a Remote Desktop flaw that affects all versions of Windows. On top of that, the company anticipates an exploit to be developed by hackers. From Microsoft:  “We urge you to promptly apply this security update. We also encourage you to consider how you might harden your environment […]

Categories
How-To Software Technical

Admin Access – SQL Server 2008 R2

Recently I was asked to assist someone with access to a Microsoft SQL 2008 R2 Server. Under normal conditions I would simple add them, but this isn’t the normal. I do not have access I need, so I will add myself so that I can add them. Issue: No one seems to have admin access […]

Categories
How-To Technical

Configure Vyatta as a single interface proxy / content filter

As some of you may know I am anti antivirus solutions that actively run and scan my systems.  So I take many precautions to prevent infection from malware and virus infections.  All of which involve running systems with non-privilege accounts, host file blocking of sites and now adding a content filtering proxy into the configuration, […]

Categories
Software

The Top Security Tools in the Ubuntu Repositories

Sniffers: dsniff Various tools to sniff network traffic for cleartext insecurities This package contains several tools to listen to and create network traffic: * arpspoof – Send out unrequested (and possibly forged) arp replies. * dnsspoof – forge replies to arbitrary DNS address / pointer queries on the Local Area Network. * dsniff – password […]