Skull and Crossbones for ComputerSecurity.cc
| Where to Report Hackers | Info | Faqs | Sitemap

 

 

ComputerSecurity.cc

 

 

black hat and white hat for domain hackingbeginners.com
INFORMATION
FAQs
BUY
SITEMAP
HOME
 

Computer Security Learning Center

Advanced Port Scanner
Active X, Java Applets, and Javascript
Anti Virus Programs
Apple, Mac, or PC
Attack Research
Audit Directories
Audit Reports
Back Up Logs
Baseline
Beating Keystroke Loggers
Browsers
Buffer Overflows
Cert
CGI Scripting
CH Rootkit
Checksum Analysis
Common Criteria
Cookies
Counter Attacks
Cult of the Dead Cow
Downloads
Email Security
Email Servers
Network Protocol Analyzer
Ethereal
Event Viewer
Fighting Spam
File Size and Date and Time Stamps
Firewall Brands
Free Programs
Gmail and S/Mime
Hacker Resources
Hacker Server
Hard Drive and File Encryption
Hardware Firewalls
Hide Your IP
Honey Pots
Illicit Server
Insecure Dot Org
Instant Messaging
Intrusion Detection
Ipsec
Ipv6
Keyloggers
Linux
Logging Activity
Malware Removal
Managed Logging
Outlook Express
Nessus and Snort
Netstat
Network Interface Card
Network Protocol Analyzer
Nmap
Ntfs and Fat 32
Password Cracking
Personal Firewalls
Ping
Ping Scanner Pro
Port Sentry
Proxy Servers
Read Only Drives
Registry Edit
Root Kits
RSA Email
Sans Institute
Scroogle
Search Engine History
Security Focus
Secure Ftp
Sessions
Sniffers
Software Firewalls
Speed Up the Computer
System Logs
Telnet
Telnet Filtering
Trip Wire
TTAP
Tunnel Brokers
Types of Hackers
Uptime
Vulnerability Assessment
Web and Ftp Servers
Windows Administrator Account
Why People Hack You

Faqs
Buy
Sitemap

 

 


This site, is devoted to the extreme computer security needed in todays world of cybercrime. Many of us think we are secure and most of us are not. Please email ideas or tips to admin@computersecurity.cc.

Hand Penetrating Computer for Domain ComputerSecurity.cc

Intrusion Detection System (IDS)

One of the main selling points of an intrusion detection system is that you can trace the attack to learn more about the hacker and prepare for legal repercussions.  The IDS is also a good tool to find out what is going on behind the firewall.  For example, are your personnel adhering to security protocol or are they also hacking your system.  When looking to purchase an IDS system, look at how the managers and agents interact with each other.  All transmissions should be encrypted.  

E-trust and Snort are popular IDS Systems. Snort is open source freeware.  To use Snort,in windows, you should first download WinPcap.  WinPcap is a driver that lets you sniff packets from a network interface.  To work with Snort, you need to configure the Snort.Conf file.  If, for example, the ip address was 192.168.0.1, the Snort address would be 192.168.0.1/24 and the subnet would be 255.255.255.0.  For multiple subnets, separate the IP with square brackets and a comma [192.168.0.1/24, 192.168.0.2/24]. You should also add rules to this same file. 

After using Snort, go to the Snort directory and open the alert.ids file.  This file contains the packets that Snort thinks are attacks.  On the command line you will key in type alert.ids to see the packet attacks.

To use Snort to capture data at the application layer, you will need to restart with the command  Snort -d -c snort.conf -l e:\snort.log.  If you find ICMP unreachable destinations, it could be due to a dos attack or a URL that doesn’t exist.    

Types of IDS

Host Based 

The program reads the log files and issues alerts.

Network Based

A NIC is set in promiscuous mode to listen for attacks.


 


 

 

Home | Contact Us | News Center | Link To Us

copyright © 2008