Infosecurity.US

Information Security & Occasional Forays Into Adjacent Realms

  • Web Log

Ristić Releases OpenSSL Cookbook 2nd Edition →

March 05, 2015 by Marc Handelman in All is Information, Information Security, Network Security, Network Protocols

News, via Ivan Ristić, announcing the availability of his latest reference work - OpenSSL Cookbook, 2nd Edition. Published at no cost to you, simply traverse the open interwebs to FeistyDuck to download your free copy in EPUB, PDF or Kindle/MOBI formats. You can also read the document on-line.

March 05, 2015 /Marc Handelman
All is Information, Information Security, Network Security, Network Protocols

Mythos of IPv6, It's Too New to be Attacked... →

February 21, 2015 by Marc Handelman in All is Information, Common Sense, Communications, Compute Infrastructure, Cryptography, Data Security, Encryption, ICANN, IANA, Information Security, Internet Governance, IPSec, Network Security, Network Protocols, Networks, Signals

More IPV6 myths exposed by ISOC's Deploy360 Director Chris Grundemann. This time focusing on the myth that IPv6 is too new to be attacked. Today's MustRead!

February 21, 2015 /Marc Handelman
All is Information, Common Sense, Communications, Compute Infrastructure, Cryptography, Data Security, Encryption, ICANN, IANA, Information Security, Internet Governance, IPSec, Network Security, Network Protocols, Networks, Signals

IPv6 Security Myth: No NAT Means No Security

February 04, 2015 by Marc Handelman in All is Information, Common Sense, Communications, Compute Infrastructure, Cryptography, Data Security, Encryption, ICANN, IANA, Information Security, Internet Governance, IPSec, Network Protocols, Network Security, Networks, Signals

Astoundingly, myths still arise in this epoch of science, strangely so, when dealing with new technologies [Read: new means new in the final two years of the last century as IPv4 was originally codified by the IETF in 1981, with the acceptance of RFC 791] - in this case the vaunted move to IPv6. Now,  arising from the ashes of IPv4 exhaustion hysteria, comes a current popular myth surrounds the utilization NATs in IPv4  and the lack of a counterpart construct in IPv6.

⌘

February 04, 2015 /Marc Handelman
All is Information, Common Sense, Communications, Compute Infrastructure, Cryptography, Data Security, Encryption, ICANN, IANA, Information Security, Internet Governance, IPSec, Network Protocols, Network Security, Networks, Signals

ICS-CERT: Remote Code Execution Flaw, Network Time Protocol

December 22, 2014 by Marc Handelman in All is Information, Compute Infrastructure, Computer Science, Information Security, TCP/IP Internetworking, Web Security, Time, Network Protocols

Reports of newly discovered targeted attack code harshed our collective holiday mellow late last week, with the notification via the ICS CERT of flaws in the Network Time Protocol (in this case, prior to NTP version 4.2.8). The NTP 4.28 tarball is here, for folks that need to update their NTP deployments.

"NTP users are strongly urged to take immediate action to ensure that their NTP daemon is not susceptible to use in a reflected denial-of-service (DRDoS) attack. Please see the NTP Security Notice for vulnerability and mitigation details, and the Network Time Foundation Blog for more information. (January 2014) " - via NTP.org

 

December 22, 2014 /Marc Handelman
All is Information, Compute Infrastructure, Computer Science, Information Security, TCP/IP Internetworking, Web Security, Time, Network Protocols
  • Newer
  • Older