Security Basics mailing list archives

Re: RE: Malware and DoS analysis


From: Joe <bitshield () gmail com>
Date: Sun, 23 Jul 2006 16:18:30 +0200

On Sans I found indeed some good sources:
- a webcast about defending DoS:
https://www.sans.org/webcasts/show.php?webcastid=90621
- an article discussing the defence of DDoS:
http://www.sans.org/dosstep/?portal=6b3aca04a117d3f1f664c52681700709

thanks
Joe

On 7/20/06, Roger A. Grimes <roger () banneretcs com> wrote:
Check out SANS.org.

-----Original Message-----
From: bitshield () gmail com [mailto:bitshield () gmail com]
Sent: Wednesday, July 19, 2006 2:05 AM
To: security-basics () securityfocus com
Subject: Malware and DoS analysis

Hello

I'm trying to analyse a company's vulnerability to malware (Viruses,
Trojans, Backdoors, etc)  and DoS. I'm however a little bit stuck in
finding an approach to do that. I'm trying to collect properties that
make a corporate environment vulnerable to certain kinds of malware and
DoS attacks.

Some of the points I want to have a closer look are:
-  Internet Access architecture
- Intranet and DMZ architecture
- General Network defences
- Anti-Virus deployment
- Deployed Operating Systems and their patch level
- Employees' awareness regarding malware
- Proper defence-in-depth concept

Do you guys have any other ideas? What can be considered to analyze DoS
susceptibility?

Thanks for your feedbacks
Joe

------------------------------------------------------------------------
---
This list is sponsored by: Norwich University

EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE The NSA has
designated Norwich University a center of Academic Excellence in
Information Security. Our program offers unparalleled Infosec management
education and the case study affords you unmatched consulting
experience.
Using interactive e-Learning technology, you can earn this esteemed
degree, without disrupting your career or home life.

http://www.msia.norwich.edu/secfocus
------------------------------------------------------------------------
---



---------------------------------------------------------------------------
This list is sponsored by: Norwich University

EARN A MASTER OF SCIENCE IN INFORMATION ASSURANCE - ONLINE
The NSA has designated Norwich University a center of Academic Excellence in Information Security. Our program offers unparalleled Infosec management education and the case study affords you unmatched consulting experience. Using interactive e-Learning technology, you can earn this esteemed degree, without disrupting your career or home life.

http://www.msia.norwich.edu/secfocus
---------------------------------------------------------------------------


Current thread: