SECURITY + or MICROSOFT Course 2810 Review Study Slides
get latest powerpoint viewer here (need 2002 support for
these slides)
SOCIAL ENGINEERING ATTACKS
Social Engineering Fundamentals, Part I many excellent links at the bottom of this page too!
SANS Institute: Social Engineering
FRONTLINE SPECIAL: A report on the exploit of hackers
Confessions of a White Hat Hacker
Hacking and Securing Windows 2000/NT
How to harden the TCP/IP stack against denial of service attacks
NETWORK ATTACKS
Gibson Research: Shields Up port scanner
Find out what TCP and UDP ports your remote host is using
On the lookout for "Dsniff": IBM
SOFTWARE BASED ATTACKS
Cost of Malicious Code to Businesses requires acrobat reader
Major Online Security Threats requires acrobat reader
How to check if "Back Orifice" is installed
Symantec information on BO and NetBUS
Deconstructing SubSeven: The Trojan Horse of Choice: SANS
Distributed Denial of Service Attacks and You Microsoft TechNet
Threat and Vulnerability Analysis Table
Bell-LaPadula Model know for MAC system
Lesson 2 Hardening Internal Systems and Services
Introduction to Windows 2000 Security
Security Toolkit : Guides, Updates and Tools
Securing an Existing 2000 System
Kerberos v5 Administrator's Guide
Windows XP Baseline Security Checklist
Download SANS Acceptable Use Policy
Business Introduction to Security
Step-by-step guide to using the Security Configuration and Analysis
2000 Security Templates defined
Microsoft Virus Protection Strategies
Lesson 3 Hardening Internetwork Devices and Services
Hardening Systems and Services : Checklists and Guides
Additional Registry Settings for Network Attacks
VanDyke vShell SSH2/SFTP Server for Windows
VanDyke Secure FX SSH2/SFTP client for Windows
Security Policy Tips from Novell
Exchange 2000 Server Resource Kit Online
Chapter 30 from Resource Kit on Exchange Security
Security Resources for Exchange
Lesson 4: Securing Network Communications
3-COM 802.11b PDF download paper
Lesson 6: Managing Certificates
Lesson 7: Enforcing Organizational Security Policy
Sample Information Security Policy at TechRepublic (login/profile required)
Lesson 8: Monitoring the Security Infrastructure
Known ports vulnerable to DOS attacks
RealSecure Desktop Protection: DEMO too
Department of Information Technology Michigan Incident Respone
Anatomy of a Security Info Response Team
Expectations for Computer Security Incident Response: RFC 2350