In this Security Zone from Sanam, you will find links to Information System, Security related links - including Security sites, magazines/newsgroups, Vulnerabilities, Firewall, Intrusion Detection System, Hackers & Crackers, Protocols & Cryptography. There are also links for CISSP & CCNA exam.
If you find any broken links or want to add any links here, let me know. If you want to encrypt the mail, my PGP Key is here.
Check out what anybody from Internet can find out about you and your PC - Analysis, Shields Up ( from Gibson ).
Check out my other pages : Home, Win2000, India, Web, Cricket, Online Library.
SECURITY RELATED SITES :
Securityfocus - good site with news & articles : also hosts Bugtraq and other mailing list archives
Securitynewsportal - latest breaking news on security
Infosyssec - great site with many links, papers, tools & search engine
CERT
- internet security incidents reporting center @ Carnegie Mellon University
- Security
Improvement Modules for Server, Desktop,
Firewalls, Intrusion
- Virus
Resources
SANS
- System Admin, Networking, and Security. Many documents and
alerts/News
- Model
Security Policy
- Incidents.org
: Sans' center for intrusion detection analysis, forensics and incident
handling
- Reading
Room - large library of research reports
CIAC - Computer Incident Advisory Capability from Dept. of Energy
NIPC - Natinal Infra. Protection Center (from FBI & Dept of Justice)
COAST (Computer Operations, Audit, and Security Technology) project at Purdue University.
IETF Security Area, IETF RFC page, Site Security Handbook, IT Security Handbook
Computer Security Resource Clearinghouse (from national Inst. of Std & Tech) - policies drafts
Black Hat Conferences - check out these media archives for all previous briefings/presentations
Secure.net - listing of cryptographic, security, encryption, PKI, law, privacy sites
l0pht.com - many tools to find security holes like L0phtcrack, ncat ( now for NT )
Security in Windows @ SearchWin2000.com
Information Warfare, Security Search Engine, Network Ice - Infosec DB
Network Security Library - many good books and papers
Secure
Zone, NewOrder - lots of sites and
tools
Policy :
How to Develop a Network Security Policy - from Sun
A Guide for Drafting Comprehensive and Effective Computer Policies
Acceptable
Use Policy
Certification : CISSP ( from ISC
), GIAC(Global Incident Analysis Center - Level
one Security Cert., Certified
Intrusion Analysts ( from SANS
)![]()
Info Security Magazine ( from ICSA )
The Orange Book - U.S. DeptOfDef. doc. outlines trusted computer system evaluation criteria and requirements. ( HTML file around 275K ).
Other Rainbow series - click here
- Checkpoint - Firewall-1, VPN-1, Floodgate-1, Opsec
- alt.security
- alt.security.pgp
- alt.2600, alt.2600.hackerz
- alt.crackers
- comp.lang.java.security
- comp.os.netware.security
- comp.os.ms-windows.nt.admin.security
- comp.security.announce
- comp.security.misc
- comp.security.ssh
- comp.security.unix
- comp.security.pgp, comp.security.pgp.discuss, comp.security.pgp.resources, comp.security.pgp.tech
- comp.security.firewalls
- comp.society.privacy
- microsoft.public.proxy
- microsoft.public.win2000.security
- Some very good Yahoo groups (you might have to subscribe to read some): firewalls, CISSP-Discuss, CISSPforum (only for CISSPs), BCPforum
- Counterpane, ISS, ODS (Kane Sys, CMDS), Cybersafe
- PGP, RSA, Tripwire, Lancope, Checkpoint
- SATAN (Security Administrator's Tool for Analyzing Networks)
- NT Objectives - Network Security Auditing Tools
- Vulnerabilities - General, Root Shell
- CVE (Common Vulnerabilities & Exposure project) @ Mitre Corp.
- How To Eliminate The Ten Most Critical Internet Security Threats - From SANS
- Computer threats & vulnerabilities Database from X-Force ( ISS )
- Nikto - good web server scanner
FIREWALL
:
VPN
HACKERS,
CRACKERS & Script Kiddies :
Scriptkeeper - home of all scripts
Hacked sites mirror : Attrition.org, Alldas.de ( also has some good stats ), Safemode
Sniffing (network wiretap, sniffer) FAQ - good desc. of sniffers, how to detect/defeat them, also have Firewall and IDS FAQ
NETWORKS,
PROTOCOLS & CRYPTOGRAPHY :
| SSL | |
| SSH |
|
| TCP/IP and IPv6 |
|
| Cryptography | |
| Privacy |
|
| Audit, Forensic & Incident Response |
|
CCNA : Cisco Certified Network
Associates & CISSP (Certified Info. Sys
Security Professional )
Cisco's certification page - for latest info on exam ( CCNA 1.0 is expiring in July 2000 )
Book I used for the study - CCNA Study Guide by Todd Lammle ( Sybex, Hardcover, ISBN 0782123813 )
Some good sites with study guides & sample questions @ Cram Session, MCSE Guide, Mason Tech, Cert Notes, CheckPoint, Group Study, IT 2002, TCP Mag
CCNA Cheat Sheet - from Boson Software ( this one is really helpfull )
Forum at Network Study Guides
Newsgroup/Mailing list/Chat - Groupstudy.cisco (you can chat with some good authors here)
Sample questions @ NetCert,
Checkpoint (Doc ), CCPrep,
GoCertify
(ISC)2 - administers CISSP & SSCP exams. Maintains CBK (Common Body of Knowledge)
CCCure - CISSP Open Study Guide : great site with many resources, get study guide for each domain here.
CICCP Summary - a good summary on all 10 domains of the exam.
CISSPs.com - bookstore and forum on exam.
Security Books : Here are some
good security reference books. Following
links are given for Amazon store, but before ordering, check out the comparison
prices on this site.
Secrets and Lies - by cryptographer Bruce Scheiner. Good entry level book, not too deep into technical aspect, but covers security from a management perspective. {ISBN: 0471253111}
Process Of Network Security - by Thosmas Wadlow - very good book for InfoSec Planning {ISBN: 0201433176}.
Intrusion Detection Systems - An Analyst's Handbook - by Stephen Northcutt (must buy for any IDS Analyst ) {ISBN: 0735710082}
TCP/IP Illustrated - Vol I - by W. Richard Stevens - (another must buy for IDS/Network analyst ) {ISBN: 0201633469}
Practical Unix and Internet Security - by Simson Garfinkel & Gene Spafford. Good reference book on Unix Security. {ISBN: 1565921488}
Firewall & Internet Security : Repelling the wily hacker - by Steven Bellovin & William Cheswick. Oldie but goldy on Firewall {Free Book}.
Web
Security, Privacy & Commerce - by By Simson Garfinkel & Gene Spafford.
Get this book if you're handling web server - covers digital certificates,
PKI, SSL, etc {ISBN:
0596000456}.
Hacking Exposed - by Stuart McClure, Joel Scambray. Get behind the scene with hacking tools - hands-on book {ISBN: 0072193816}.
Cuckoo's Egg - by Clifford Stoll - probably first recorded hacker pursuit - oldie by goldy.{ISBN: 0743411463}
Know your Enemy - by Honeynet Project team. Book based on two years of research by the Honeynet project. Practical examples are worth the book price {ISBN: 0201746131}.
The
Art of Deception - by Kevin Mitnick {ISBN: 0471237124}.
Read first
chapter of book (which is removed from published book), Web
blog of her girlfriend (you will see more of Kevin on TechTV for sure).
CISSP Prep Guide - by Ronald L. Krutz - covers CISSP exam as well as good reference book. {ISBN: 0471413569}
Information
Security Management Handbook : 4th Edition ( had 3 volumes ). - edited
by Micki Krause & Harold Tipton. All 3 volume contains different
topics, so get all 3 to prepare for CISSP as well as for reference. {ISBN:
0849398290, 0849308003, 0849311276}
Crypto - by Steven Levy - (book from author of Hackers), fascinating story behind Crypto revolution. {ISBN: 0140244328}
Applied Cryptography - by Bruce Schneier. Comprehensive coverage on crypto technology {ISBN: 0471117099}.
The
Codebreakers - the comprehensive history - David Kahn - get this book if you want to know all about Crypto history.
Free books :
Computer Vulnerabilities - by Knight : good informative whitepaper.
Firewalls Complete - by Marcus Goncalves - {from Network Security Librbary}
Handbook of Applied Cryptography - by Alfred Menezes (reference book)
The Hacker Crackdown: Law and Disorder on the Electronic Frontier - by Bruce Sterling
The Hacker's Handbook (Cornwall) - oldtime hacker info.
Also visit my other pages : Home, Win2000, India, Web, Cricket, Online Library.