Skip to main content

Spam

XML: You'd think it couldn't get worse

posted onOctober 21, 2001
by hitbsecnews

Source: The Register

There is an old saying about things having to get worse before they get better. And the news that yet more XML standards are being proposed is at least an indication that things are still getting worse.

The first new standard is VCML and the second, which doesn't have a name yet, is to be developed by the Salt Forum.

VCML, which stands for the Value Chain Markup Language, has been developed by Vitria and uses XML to transmit documents created using EDI (Electronic Data Interchange).

Tcl/TK quick start

posted onOctober 18, 2001
by hitbsecnews

This tutorial introduces the Tcl/Tk scripting language, including its history, key features of the language and interpreter, some extensions, and several examples of Tcl/Tk in action. If you have experience in one or more programming or scripting languages, this tutorial will be great for you.

Nmap 2.54BETA30 released

posted onOctober 15, 2001
by hitbsecnews

Well looks like everyone's favourite network scanner, nmap has reached a BETA 30 release. The new version contains a number of important fixes and updates. The CHANGELOG entry is listed below...

Best Practices for Secure Development

posted onOctober 11, 2001
by hitbsecnews

The following document is intended as a guideline for developing secure applications. It is not about how to configure firewalls, intrusion detection, DMZ or how to resist DDoS attacks. In short, it is not about infrastructure and network security. Compared to a year ago, the availability of consolidated material intended for developers has definitely improved but effort is still required to make the developer community more security-aware.

raw-socket-programming No. 2

posted onSeptember 27, 2001
by hitbsecnews

This paper is only to get to know and to understand the "high security" networking and for those who can create simple raw-sockets. If you didn't read rooty's raw-socket-programming No. 1, it's a waste of your time. In this paper we will develop an application, which grabs all TCP packets and lets us see the some interesting things.

Continue reading this article over at Netflood.

raw-socket-programming No. 1

posted onSeptember 27, 2001
by hitbsecnews

This paper is only to get to know and to understand "high security" networking. This paper is for people, who are able to write simple sockets. Raw-sockets are socket, where you get the raw packet. That means you must fill or read each byte of a packet. In this paper I will explain some basic raw-socket-programming.

Other papers about raw-socket-programming are following. In this we lern how to write the IP-heder, ICMP-header and how to get the checksum.

Loxias Kernelspace portscan detection

posted onSeptember 8, 2001
by hitbsecnews

Thomas Walpuski, an member of the Unix Developer Team "H Zero Seven" (www.h07.org)
released now v 1.0 of loxias a kernelspace portscan detection for OpenBSD. Loxias logs: Sys Scans, Stealth
Scans, Null Scans, icmp echo requests and much more. Download it from h07.org.

UltraWipe

posted onSeptember 8, 2001
by hitbsecnews

UltraWipe is a software utility
designed to routinely erase previous versions of
documents that have been automatically saved (whole and
in fragments) on the computer hard drive. UltraWipe
serves as an "electronic digital shredder", destroying
all previous versions of documents and leaving only the
final, encrypted version on the disk. This prevents