Unknown Threats
Apart from honeypots, what are the different methods to find unknown threats which are prevalent? and how to find methods to mitigate them. PS: all the vulnerabilities are known to all the n/w administrators and then can take measures to mitigate attacks but this doesnt happen..Hackers are at least 10 steps ahead..So how to find [...]
Answer Question
| November 2, 2011 2:24 PM
Application security, backdoors, configuration, Current threats, Database, Encryption, Exchange, Firewalls, Forensics, Hacking, human factors, Incident response, Instant Messaging, Intrusion management, Network security, Networking, patching, PEN testing, Platform Security, Secure Coding, Security, Software, Spyware, Tech support, Trojans, Viruses, VPN, vulnerability management, Wireless, worms
Apart from honeypots, what are the different methods to find unknown threats which are prevalent? and how to find methods to mitigate them. PS: all the vulnerabilities are known to all the n/w administrators and then can take measures to mitigate attacks but this doesnt happen..Hackers are at least 10 steps ahead..So how to find [...]
Paranoid about protecting my MAC address–Please read my story
What is the easiest way to protect your MAC address against spoofing? In 2004 I was the victim of a hacker that somehow spoofed my Cable Modem Mac address and used it to cover his identity while serving copyright material thru the internet. I was unsuspecting until my ISP one day suspended my service. I [...]
Answer Question
| May 25, 2008 2:28 PM
Access control, backdoors, Browsers, configuration, Current threats, filtering, Firewalls, Forensics, Hacking, human factors, Incident response, Intrusion management, Network security, patching, PEN testing, Platform Security, Servers, Spyware, SSL/TLS, Trojans, Viruses, VPN, vulnerability management, Web security, Wireless, worms
What is the easiest way to protect your MAC address against spoofing? In 2004 I was the victim of a hacker that somehow spoofed my Cable Modem Mac address and used it to cover his identity while serving copyright material thru the internet. I was unsuspecting until my ISP one day suspended my service. I [...]
browser says “I am spyware”, no spyware or viruses identified
Hello – one of the computers in my office is appending the words “I am spyware” in the title bar of Internet Explorer. For example, when I go to google.com, the title bar says “google.com – I am spyware”. I have scanned the computer with Norton 2006 and Ad-aware and neither application is identifying spyware [...]
Answer Question
| September 26, 2007 11:36 AM
backdoors, Current threats, Hacking, human factors, Microsoft Office, Spyware, Tech support, Trojans, Viruses, worms
Hello – one of the computers in my office is appending the words “I am spyware” in the title bar of Internet Explorer. For example, when I go to google.com, the title bar says “google.com – I am spyware”. I have scanned the computer with Norton 2006 and Ad-aware and neither application is identifying spyware [...]
picture on desktop that cannot be removed
Don’t know if this is the right place, but cannot find an answer elsewhere. Using Windows XP media centre edition with SP2. belongs to a Lao woman in the office. Displays a picture of a naked woman on the desktop which can not be moved. causes great embarrassment. Found it in screensavers, named ‘sex picture.scr’ [...]
Answer Question
| June 11, 2007 12:41 AM
backdoors, Current threats, Hacking, human factors, Spyware, Trojans, Viruses, worms
Don’t know if this is the right place, but cannot find an answer elsewhere. Using Windows XP media centre edition with SP2. belongs to a Lao woman in the office. Displays a picture of a naked woman on the desktop which can not be moved. causes great embarrassment. Found it in screensavers, named ‘sex picture.scr’ [...]
Procedures for a new area.
We are a company where we have expirience on network remote administration and now we have open a new area, The area of security. Now I need to start to make new procedures like when a new customer come to us and ask if we can handle the security for his network… I need to [...]
Answer Question
| May 28, 2008 10:13 PM
Access control, Application security, backdoors, Biometrics, Browsers, Cabling, Compliance, configuration, CRM, Current threats, Database, DataCenter, Digital certificates, Disaster Recovery, Encryption, Exchange, filtering, Firewalls, Forensics, Hacking, Hardware, Hubs, human factors, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, Network management software, Network security, Networking, Outsourcing, patching, PEN testing, Platform Security, Policies, Project management, provisioning, Remote management, Risk management, Routers, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, Spyware, SSL/TLS, Switches, Trojans, Viruses, VPN, vulnerability management, Web security, Wireless, worms
We are a company where we have expirience on network remote administration and now we have open a new area, The area of security. Now I need to start to make new procedures like when a new customer come to us and ask if we can handle the security for his network… I need to [...]
Email Delivery Errors
Hello All, Someone is having problems sending emails to us which did not exist before. Our email server (Unix based) did not list his domain as spam according to our email technician. Also for troubleshooting purposes i’ve asked him to send to my hotmail account which resulted in the same manor not receiving. After several [...]
Answer Question
| January 31, 2007 4:47 AM
Application security, backdoors, Brightmail, CipherTrust, ClearSwift, Current threats, Database, Encryption, Exchange, Hacking, human factors, Instant Messaging, McAfee, MessageLabs, Postini, Rockliffe, Secure Coding, Security, Spam, SpamAssassin, Spyware, SurfControl, Symantec, TrendMicro, Trojans, Viruses, worms
Hello All, Someone is having problems sending emails to us which did not exist before. Our email server (Unix based) did not list his domain as spam according to our email technician. Also for troubleshooting purposes i’ve asked him to send to my hotmail account which resulted in the same manor not receiving. After several [...]
Lotus Notes Incident Response
Hi, I should start by saying that I come from an Exchange background so the Lotus email environment is still a bit new to me…but I’ve been tasked to put together a checklist for Lotus Notes Incident Response and am wondering if anyone is willing to share incident response guidelines or recommendations for reviewing a [...]
Answer Question
| January 16, 2007 3:17 PM
backdoors, Current threats, Firewalls, Forensics, Hacking, human factors, Incident response, Intrusion management, Lotus Domino, Network security, Spyware, Trojans, Viruses, VPN, Wireless, worms
Hi, I should start by saying that I come from an Exchange background so the Lotus email environment is still a bit new to me…but I’ve been tasked to put together a checklist for Lotus Notes Incident Response and am wondering if anyone is willing to share incident response guidelines or recommendations for reviewing a [...]
Moving into the InfoSec role
I work at a company that currently does not have a position dedicated to information security. I come from a background in networking with a good portion of my focus on firewalls and other security related technologies. I am interested in positioning myself into the role of InfoSec Admin at my compnay and was hoping [...]
Answer Question
| December 22, 2006 1:36 PM
Access control, Application security, backdoors, Biometrics, Browsers, Compliance, configuration, CRM, Current threats, Database, Digital certificates, Disaster Recovery, Encryption, Exchange, filtering, Firewalls, Forensics, Hacking, human factors, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, Network security, patching, PEN testing, Platform Security, Policies, provisioning, Risk management, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, Spyware, SSL/TLS, Trojans, Viruses, VPN, vulnerability management, Web security, Wireless, worms
I work at a company that currently does not have a position dedicated to information security. I come from a background in networking with a good portion of my focus on firewalls and other security related technologies. I am interested in positioning myself into the role of InfoSec Admin at my compnay and was hoping [...]
security problem
Hello, I have small workgroup having 10 computers in my office. I do some personal work in office like using yahoo messenger, checking personal e-mails and some online banking site. But how does one of my senior knows it? I do everything lonely and securely so that nobody in the office knows it. But he [...]
Answer Question
| February 19, 2008 3:44 AM
Access control, Application security, backdoors, Backup & recovery, Biometrics, Browsers, Career development, Compliance, configuration, CRM, Current threats, Data analysis, Database, DataCenter, DataManagement, DB2, Desktop management applications, Development, DHCP, Digital certificates, Disaster Recovery, DNS, Ecommerce applications, Encryption, Enterprise Desktop, Exchange, Exchange security, filtering, Firewalls, Forensics, Hacking, human factors, Identity & Access Management, Incident response, Instant Messaging, Intel, Interoperability, Intrusion management, LANDesk, Lotus Domino, McAfee, Microsoft Systems Management Server, Microsoft Windows, Mobile security, Network security, Networking, Networking services, Oracle, patching, PC/Windows Connectivity, PEN testing, Platform Security, Policies, Postini, provisioning, Risk management, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, Software, Spam, Spyware, SSL/TLS, Symantec, Systems management software, Tech support, Trojans, Vector Networks, Viruses, VPN, vulnerability management, Web security, Wireless, worms
Hello, I have small workgroup having 10 computers in my office. I do some personal work in office like using yahoo messenger, checking personal e-mails and some online banking site. But how does one of my senior knows it? I do everything lonely and securely so that nobody in the office knows it. But he [...]
Dos attack
I have been receiving security alert messages from our firewall nearly everyday. e.g TCP Packet – Source:144.120.8.89,39341 Destination:192.168.1.1,25 – [DOS] TCP Packet – Source:210.7.0.36,3473 Destination:210.7.12.23,135 – [DOS] Thu, 2006-10-19 16:30:03 – UDP Packet – Source:192.168.1.111,1443 Destination:202.62.124.238,53 – [Any(ALL) match] can someone help me… Thanks in advance Wanz.
Answer Question
| July 8, 2009 4:36 PM
Access control, Application security, backdoors, Biometrics, Browsers, Compliance, configuration, CRM, Current threats, Database, Digital certificates, Disaster Recovery, Encryption, Exchange, filtering, Firewalls, Forensics, Hacking, human factors, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, Network security, patching, PEN testing, Platform Security, Policies, provisioning, Risk management, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, Spyware, SSL/TLS, Trojans, Viruses, VPN, vulnerability management, Web security, Wireless, worms
I have been receiving security alert messages from our firewall nearly everyday. e.g TCP Packet – Source:144.120.8.89,39341 Destination:192.168.1.1,25 – [DOS] TCP Packet – Source:210.7.0.36,3473 Destination:210.7.12.23,135 – [DOS] Thu, 2006-10-19 16:30:03 – UDP Packet – Source:192.168.1.111,1443 Destination:202.62.124.238,53 – [Any(ALL) match] can someone help me… Thanks in advance Wanz.
Running Syantec Antivirus on a Windows Domain Controller
I am currently in the process of deploying Symantec AntiVirus Corporate edition in my Windows-based network. In the manual it states, Do not install the primary management server on the following: Miscrosoft Exchange Server, Web server, or programs that prevent you from restarting the computer at any given time. I assume the last one would [...]
Answer Question
| November 24, 2007 9:53 AM
Access control, Application security, backdoors, Biometrics, Browsers, configuration, Current threats, Database, Desktops, Development, Digital certificates, Encryption, Exchange, filtering, Hacking, human factors, Identity & Access Management, Instant Messaging, Management, Microsoft Windows, Networking, OS, patching, PEN testing, Platform Security, provisioning, Secure Coding, Security, Security tokens, Servers, Single sign-on, Spyware, SQL Server, SSL/TLS, Trojans, Viruses, vulnerability management, Web security, worms
I am currently in the process of deploying Symantec AntiVirus Corporate edition in my Windows-based network. In the manual it states, Do not install the primary management server on the following: Miscrosoft Exchange Server, Web server, or programs that prevent you from restarting the computer at any given time. I assume the last one would [...]
Best practices involving admin rights for user on user system
We are currently in the middle of figuring out the approach we are going to take in regard to a user having admin rights on their system. Typcially we set up a new user as an administrator on their system when they are logged into the domain. They don’t have a local admin account on [...]
Answer Question
| August 18, 2010 4:23 PM
Access control, Application security, backdoors, Biometrics, Browsers, Business/IT alignment, Compliance, configuration, CRM, Current threats, Database, DataCenter, DataManagement, Desktop management applications, Digital certificates, Disaster Recovery, Encryption, Exchange, Exchange security, filtering, Firewalls, Forensics, Hacking, Hardware, human factors, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, Microsoft Systems Management Server, Network security, patching, PEN testing, Platform Security, Policies, Project management, provisioning, Risk management, Routers, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, Spyware, SSL/TLS, Systems management software, Tech support, Trojans, Viruses, VPN, vulnerability management, Web security, Wireless, worms
We are currently in the middle of figuring out the approach we are going to take in regard to a user having admin rights on their system. Typcially we set up a new user as an administrator on their system when they are logged into the domain. They don’t have a local admin account on [...]
Stopping Invisible Chat
I work for a school district and one of the hottest items for the kids to sneak onto our servers is a tool called Inviible Chat. I tried to google an answer as to how to block off this thing, since it poses a problem as far as the obvious implications of cheating and/or not [...]
Answer Question
| September 14, 2006 5:20 AM
backdoors, Current threats, Hacking, human factors, Security, Spyware, Trojans, Viruses, worms
I work for a school district and one of the hottest items for the kids to sneak onto our servers is a tool called Inviible Chat. I tried to google an answer as to how to block off this thing, since it poses a problem as far as the obvious implications of cheating and/or not [...]
SECURE FTP SITE ON Windows 2003
We have a Windows 2003 IIS server setup behind our firewarll which is a PIX firewall. What is the best method to establish a secure FTP site on this IIS server? I have reviewed this topic on the internet and actually talked with somebody from IPSWITCH and the best method available is to purchase a [...]
Answer Question
| September 8, 2006 8:22 AM
3Com, Access, Access control, Application security, Availability, backdoors, Bandwidth, BEA, Biometrics, BroadVision, Browsers, Cabling, Cisco, Citrix Systems, Compliance, configuration, Corporate portal applications, CRM, Current threats, Database, DataCenter, Desktops, Development, Digital certificates, Disaster Recovery, Encryption, Epicentric, Exchange, filtering, Firewalls, Forensics, Hacking, Hardware, Hubs, human factors, IBM, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, Management, Microsoft Office, Microsoft Windows, Network security, Networking, Oracle, OS, Patch management, patching, PEN testing, PeopleSoft, Performance management, Ping, Platform Security, Plumtree, Policies, provisioning, Risk management, Routers, SAP, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, Spyware, SQL Server, SSL/TLS, Switches, Sybase, TIBCO, Trojans, Viruses, VPN, vulnerability management, Web security, Web services, Web Services Standards, Web site design & management, Wireless, worms
We have a Windows 2003 IIS server setup behind our firewarll which is a PIX firewall. What is the best method to establish a secure FTP site on this IIS server? I have reviewed this topic on the internet and actually talked with somebody from IPSWITCH and the best method available is to purchase a [...]
FU_RootKit.B – need removal
I believe that a user at my company has gotten a RootKit installed on her laptop. Research on the Internet particularly at http://sandbox.norman.no/live_2.html?logfile=810935 leads me to think that the malware is an updated version of the FU_RootKit. I say updated because the registry keys and files names don’t quite match. This appears to be a [...]
Answer Question
| June 26, 2008 5:36 PM
backdoors, Current threats, Hacking, human factors, Spyware, Trojans, Viruses, worms
I believe that a user at my company has gotten a RootKit installed on her laptop. Research on the Internet particularly at http://sandbox.norman.no/live_2.html?logfile=810935 leads me to think that the malware is an updated version of the FU_RootKit. I say updated because the registry keys and files names don’t quite match. This appears to be a [...]
terminal server and gpo
i have a server 2003 that configure as a terminal server, and i want implement a strict acess to this server from client (xp pro) to that server, i create ou that called “for terminal users” and create for that ou a gpo, now,, i want to know how should i change the gpo to [...]
Answer Question
| August 7, 2006 5:01 PM
Access control, Application security, backdoors, Biometrics, Brightmail, Browsers, Business/IT alignment, Career development, CipherTrust, ClearSwift, Compliance, configuration, CRM, Current threats, Data analysis, Database, Digital certificates, Disaster Recovery, E-business, Encryption, Exchange, Exchange security, filtering, Firewalls, Forensics, Hacking, human factors, Identity & Access Management, Incident response, Instant Messaging, Intrusion management, McAfee, MessageLabs, Network security, Outsourcing, Partner facing, patching, PEN testing, Platform Security, Policies, Postini, Project management, provisioning, Risk management, Rockliffe, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, Spam, SpamAssassin, Spyware, SSL/TLS, SurfControl, Symantec, TrendMicro, Trojans, Viruses, VPN, vulnerability management, Web security, Wireless, worms
i have a server 2003 that configure as a terminal server, and i want implement a strict acess to this server from client (xp pro) to that server, i create ou that called “for terminal users” and create for that ou a gpo, now,, i want to know how should i change the gpo to [...]
Installation and updates
Howdy folks, Tryin to keep things going around here….need some advice. I have Win2003 servers and Active Directory…..single domain….approx. 100 client computers…..one location. Am upgrading all computers from Office XP to Office 2003. My project: Install Office 2003 and all updates remotely without going to each machine. My progress: I tried the method of creating [...]
Answer Question
| April 23, 2008 9:36 PM
Access control, Active Directory, Application security, backdoors, Bandwidth, Browsers, Cabling, Cisco, Compliance, configuration, CRM, Current threats, Database, DataCenter, Desktop management applications, Desktops, Development, DHCP, Disaster Recovery, Distribution/logistics applications, DNS, Encryption, Ethernet, Exchange, filtering, Firewalls, Forensics, General Directories, Hacking, Hardware, Help Desk, Hubs, human factors, Incident response, Instant Messaging, Intrusion management, Lotus Domino, Management, Microsoft Office, Microsoft Operations Manager, Microsoft Systems Management Server, Microsoft Windows, Network applications management, Network management software, Network monitoring, Network protocols, Network security, Networking, Networking services, OS, Patch management, patching, PEN testing, Platform Security, Policies, Project management, Protocol analysis, Remote management, Risk management, Routers, Secure Coding, Security, Security Program Management, Servers, Software, Software testing, Spyware, SQL Server, SSL/TLS, Switches, Systems management software, TCP, Tech support, Trojans, Viruses, VPN, vulnerability management, Web security, Wireless, worms
Howdy folks, Tryin to keep things going around here….need some advice. I have Win2003 servers and Active Directory…..single domain….approx. 100 client computers…..one location. Am upgrading all computers from Office XP to Office 2003. My project: Install Office 2003 and all updates remotely without going to each machine. My progress: I tried the method of creating [...]
Network Connection Freezes
For some reason, at random, among 20 PCs on my network, in the morning or during the day, the network connection stops responding for both intranet and internet communications. The only solution thus far is to remove the NIC from the Device Manager, reboot the PC, and let Windows XP Pro find the network card [...]
Answer Question
| September 1, 2010 11:31 AM
3Com, Access, Access control, Active Directory, Application security, Availability, Avaya, backdoors, Bandwidth, Bind, Biometrics, Browsers, Cabling, Cisco, Compliance, configuration, CRM, Current threats, Database, DataCenter, Dell, Desktops, DHCP, Digital certificates, Disaster Recovery, DNS, Encryption, Enterasys, Ethernet, Exchange, FDDI, filtering, Firewalls, Forensics, Foundry, Frame Relay, General Directories, H.323, Hacking, Hardware, Hewlett-Packard, Hubs, human factors, Identity & Access Management, Incident response, Instant Messaging, Interoperability, Intrusion management, IPv4, IPv6, Juniper Networks, LDAP, Lotus Domino, Lucent, Management, Microprocessors, Microsoft Office, Microsoft Windows, MPLS, NetBIOS, Network monitoring, Network protocols, Network security, Networking, Networking services, NFS, NIC, Nortel, Novell IPX/SPX, Novell NDS, OS, Patch management, patching, PEN testing, Performance management, Ping, Platform Security, Policies, Printers, provisioning, Risk management, Routers, Secure Coding, Security, Security Program Management, Security tokens, Servers, Single sign-on, SIP, Software, Spyware, SQL Server, SSL/TLS, Switches, TCP, Tech support, Trojans, Viruses, VPN, vulnerability management, Web security, WINS, Wireless, worms
For some reason, at random, among 20 PCs on my network, in the morning or during the day, the network connection stops responding for both intranet and internet communications. The only solution thus far is to remove the NIC from the Device Manager, reboot the PC, and let Windows XP Pro find the network card [...]
Manipulatoin Engine Definition
Hi all! I’ve read the term “manipulation engine” (related to passwords) in a couple of papers but aside from guessing could not find a proper definition of it (not even in this website !!!). Can anyone please redirect me to / provide a clear definition of this term, related to “Security”? Many thanks, Diego.
Answer Question
| August 28, 2006 9:31 PM
backdoors, Current threats, Hacking, human factors, Security, Spyware, Trojans, Viruses, worms
Hi all! I’ve read the term “manipulation engine” (related to passwords) in a couple of papers but aside from guessing could not find a proper definition of it (not even in this website !!!). Can anyone please redirect me to / provide a clear definition of this term, related to “Security”? Many thanks, Diego.
USB Flash Drives Not Installing On XP
Hello All! I’ve been noticing recently that certain USB drives have not been installing automatically to windows XP pro. I’m working on one right now and have not found a solution to it yet. A user needs to install a Sandisk Cruzer Mini USB Drive to her machine which uses XP Pro. Instead of installing [...]
Answer Question
| July 28, 2006 8:57 PM
Access control, Application security, Availability, backdoors, Backup & recovery, Browsers, Career development, Current threats, Database, DataCenter, Desktop management applications, Desktops, Development, Encryption, Exchange, filtering, Hacking, Hardware, Hewlett-Packard, human factors, Instant Messaging, Management, Microsoft Office, Microsoft Windows, Networking, OS, Patch management, SCSI, Secure Coding, Security, Servers, Software, Software testing, Spyware, SQL Server, SSL/TLS, Storage, Storage management, Storage products and equipment, Tape drives/Libraries, Tech support, Training, Trojans, Viruses, Web security, worms
Hello All! I’ve been noticing recently that certain USB drives have not been installing automatically to windows XP pro. I’m working on one right now and have not found a solution to it yet. A user needs to install a Sandisk Cruzer Mini USB Drive to her machine which uses XP Pro. Instead of installing [...]





