3.0
Online references for ECT 582
Suggested background links.
Caution: Hacker and virus information links are prime locations for
viruses, and for hackers to have fun. (Hacker humor.) Be sure your firewall
is up to date, and your browser set to high restriction.
- Good Firewall FAQ
Thanks Shoma.
-
Purdue Index to security materials, tools, software. Great resource site.
- Code Red, Nimda,
etc. papers.
- Library of Security Papers, including this one Virus Generators
- CAUTION! Virus Creation
Toolkits You should know that such sites exist.
Online Virus creation and Information about Virus
constructors
- Virus
Hoaxes
-
IETF Working Group on intrusion detection.
- Network Scanners
like SATAN, etc. Download links. Review at will, but use at your own
discretion.
- Key Logging
Software Note: use at your own risk. I have not tested this free
download product.
- MS Passport
Vulnerability Short-lived, but damaging.
-
Case study of a WORM that Beagle Worm. Jason Gordon, and
Part 2
Long.
- General Attacks
discussed at CKNOW.COM Computer Knowledge Newsletter. Non-technical
with examples (but from 2002).
- Some
reviews of Denial of Service Attack solutions.
- NAPTHA
Denial of Service / Resource Starvation attack.
- Denial
of Service Attack Russian Mafia and NFL Gambling. And Here
-
Replacements for Passwords relatively long, non-technical, article.
-
Data Security Standard Visa. Standards for keeping credit card
information safe. (Thanks J. Lambertson)
-
phishing with keylogging
- Phishing Archive
- DNS
hijack example
- DNS Hijack
Technical article. Thanks J. Berry.
-
Web Services White Paper April 7th, 2002, IBM and Microsoft. Good
examples, and sub-links. Thanks Ouglis.
- RFID Passports
not encrypted -- thanks Brendan for topic.
Contrasting view
- X.500
directory overview with useful graphics. Links to tutorials.
- Kerberos
explained very carefully Brian Tung, of ISI.
- SAML
myths demystified Frank Cohen, PushToTest.com. 08 July 2003.
- SSL / TLS
home site for IETF standards group. Recommended to browse.
-
OpenPGPG for SSL / TLS recommended to browse.
-
Rosenberg / Remy public key technologies.
XML Security Guide online.
- Microsoft Passport home site.
- simple .NET introduction
and pointers to related information at microsoft.
- Liberty Alliance Project
for federated trust -- structured sharing of identity and trust information.
- xmethods.net explore working web services
online. Thanks JD.
- Web Services Interoperability
-
Web Services white paper by Brian Robinson, Sept. 20, 2004.
-
Phillip Hallam-Baker, Verisign Web Services. Powerpoint. 2005-04-10
- Mark Colan / Jeff Miller
Understanding Web Services Security. 2005-04-10
- IBM
Web Services Roadmap Older article from 04-2005. IT overview of WSS.
2005-04-10.
-
Digital Signatures: THE reference
- XPath Filter 2.0 TR's
(Technical Reports)
-
Tutorial on XQuery -- good reading
-
XPATH -- easy to understand examples
- XML Signature
Really should be required reading.
-
16 year old cracks DVD code for linux.
- Why Cryptography Is Harder Than It Looks by Bruce Schneier, Counterpane Internet Security, Inc.
- Dr. Phillip M. Hallam-Baker C.Eng. FBCS VeriSign Inc.
Web Services Security Standards Forum
- The
Bea-webServices.ppt link. School of Business and Economics
Michigan Technological University.
- xacml
- Securing Web
Services using XKMS Discusses that this is java based, and not
part of .net at the time of writing.
- Patrick Gannon PPT slides www.layer7-tech.com
-
Mayors Conference PPT