![]() |
HOW TO SECURE Windows 2000/XP/Server 2003 & VISTA |
Thread Tools | Search this Thread |
|
|
|
|
Elite Member
Posts: 370
Name: The Duke of URL
Karma:
|
Signature test...
&, the addition of such a "guide" as this one is for Windows folks here, albeit for MacOS X users too now ("straight-from-the-horses'-mouth" no less, @ Apple), here on these forums now: http://www.thenewtech.com/forums/net...963/#post15358 (It's just NOT as "automated", & yes, simple as is this one is, via CIS Tool guidance for Windows (& yes, for Linux distros/Solaris/& other BSD variants (just not MacOS X afaik)): ![]() * See here, in your NETWORKING & SECURITY SECTION, in the URL above! APK
__________________
"I'm Reese: Sgt. TechComVN38416, assigned to protect you - You've been TARGETTED FOR TERMINATION!" Last edited by APK; Jun 3, 2008 at 06:31pm. |
|
|
|
|
|
|
|
Elite Member
Posts: 370
Name: The Duke of URL
Karma:
|
For those of you interested in using custom HOSTS files (for BOTH added security & added speed online)?
"APK Hosts File Grinder 4.0++" ![]() ---- The application above has been built by myself, for folks just like YOU, & of course, myself! ---- It allows you the end-user, the ability to:
It has allowed me to: A.) Take valid HOSTS file data EVERY known & respected HOSTS file there is (noted from the wikipedia link above, & also from SRI, Shadowserver, Dancho Dancheve's Blog, SpyBot S&D, Spamhaus, Phishtank, + others also, such as my own research into this area), & integrate them FIRST into a HUGE 20mb file, & then via normalization, reducing its size to 12mb on disk (removing repeats which they will have between one another & sometimes inside of themselves even), reduce its size that way (1/2 the intial size almost from all that date), first... B.) It has also made a 12mb SUPER-COMPREHENSIVE custom HOSTS file out of an intially 20++ mb sized one, from the sources above... allowing the SAME function as they offer (because their HOSTS FILES' many times using 127.0.0.1, or, 0.0.0.0 formats, instead into a MORE EFFICIENT ONE, of 0<singlespace>URL<cr+lf>)... thus, MASSIVELY reducing its size on disk & in RAM once loaded into your local DNS cache, yet offering the SAME function! C.) Create a CUSTOM HOSTS FILE loaded with FULLY alphabetized entries into your HOSTS file (so it is easy to search thru, even via notepad.exe). ----- * It can do the same for you as well, should you be interested in such a tool... if you are? Email me, here: apk4776239@hotmail.com APK P.S.=> General statistics on its, while in operation: 700k-5900k memory occupancy prior to load of HOSTS file data... ( & up to 167mb IF a "huge" hosts file (like 1 million++ line entries) is used) Its runtimes (noted above) will vary, depending on the size of the HOSTS file being processed (should NOT exceed 3 hrs (&, for most folks, since they do NOT have files of such size in their HOSTS file? Heh, it will be the "blink of an eye" on most all sections (scrub, add/remove entries - validate entries, normalization-removal of repeated items, & save to disk) up to 2 minutes or so) PLUS - It was built in the MOST efficient & fastest code combination I know of (Borland Delphi 7.x, Win32 API, & Inline Assembler code) (Especially for this type of string processing (of which Delphi alone in math & strings often MORE THAN DOUBLED (sometimes, tripled) the speed of both MSVB & MSVC++ in, in (of all places) Visual Basic Programmer's Journal Sept./Oct. 1997 issue "INSIDE THE VB COMPILER" issue)) + A truly "SUPER-EFFICIENT" algorithm, on each area of processing (especially normalization, taken down from DAYS time over 1 million++ records, to only 3 hours time max, if no repeats exist... if repeats? Far, FAR faster!) Which speaks worlds alone right there... this app makes FAR shorter work of this, than does using ping.exe (for speedup of sites), MsAccess (via SQL Select Distinct queries work, & the potential import/export hassles it can have (leaving trailing spaces &/or quotes for example, bloating files on export)), & notepad.exe (good luck normalizing one using its Edit-Replace menus is all I can say... especially IF you have a BIG hosts file)... apk
__________________
"I'm Reese: Sgt. TechComVN38416, assigned to protect you - You've been TARGETTED FOR TERMINATION!" |
|
|
|
|
|
|
|
Elite Member
Posts: 370
Name: The Duke of URL
Karma:
|
Researcher to demonstrate attack code for Intel chips:
http://www.infoworld.com/article/08/...l_chips_1.html SALIENT/PERTINENT EXCERPT: ---------------------------------------------------- "Kaspersky says CPU bugs are a growing threat, with malware being written that targets these vulnerabilities... Security researcher and author Kris Kaspersky plans to demonstrate how an attacker can target flaws in Intel's microprocessors to remotely attack a computer using JavaScript or TCP/IP packets, regardless of what operating system the computer is running." ---------------------------------------------------- * Now can anyone see WHY I recommended turning off Java/Javascript (& other browser addons/extension languages) for "every site you use under the sun" + IFrames etc.? Personally, this one's pretty bad, worse than what is out there/here now, worse than rootkits even in some ways... However, I also think worse are on the way even moreso... (... & I mentioned the architecture they could possibly use, quite "terminator-like", for rootkit delivery systems & such here earlier. Especially ones that can flash your BIOS, &/or other updateable PROMS (mainly because if usermode tools from vendors like ASUS + GIGABYTE & doubtless others can do it, from inside Windows, so can malwares & same way (via drivers & bios img files)) APK P.S.=> There are more examples inside this guide, & of this SAME type of idea (crank off the java/javascript etc. et al & ONLY keep it active on sites you ABSOLUTELY need it for, to have the site function properly - lessening your potentially attackable surface online basically).. heck, even adbanners have exploits of this nature in them lately... The examples I put in this guide ARE far older too, dating back 1-3 yrs. but the point is only here, again, & moreso (far more dangerous this time, imo @ least)... apk
__________________
"I'm Reese: Sgt. TechComVN38416, assigned to protect you - You've been TARGETTED FOR TERMINATION!" Last edited by APK; Jul 15, 2008 at 01:40am. Reason: Adding detail & reference to earlier "theoretical" potentially possible worse threats, & their possible architecture too (I mentioned it a few posts back)... apk |
|
|
|
| Thread Tools | Search this Thread |