SecurityFocus Linux Newsletter #231

Peter Laborge <[email protected]> 12 Apr 2005 22:22:21 -0000
Newsgroups gmane.comp.security.news.linux
Message-ID <[email protected]>
SecurityFocus Linux Newsletter #231
------------------------------------

Need to know what's happening on YOUR network? Symantec DeepSight Analyzer
is a free service that gives you the ability to track and manage attacks.
Analyzer automatically correlates attacks from various Firewall and network
based Intrusion Detection Systems, giving you a comprehensive view of your
computer or general network. Sign up today!

http://www.securityfocus.com/sponsor/Symantec_sf-news_041130

------------------------------------------------------------------------
I. FRONT AND CENTER
     1. Cleaning Up Disclosure
     2. Absolute Security is a Myth
II. LINUX VULNERABILITY SUMMARY
     1. Remstats Local Insecure Temporary File Creation Vulnerabilit...
     2. Remstats Remote Command Execution Vulnerability
     3. GNU Sharutils Unshar Local Insecure Temporary File Creation ...
     4. PHPNuke Multiple Module Cross-Site Scripting Vulnerabilities
     5. Linux Kernel Asynchronous Input/Output Local Denial Of Servi...
     6. IBM iSeries AS400 LDAP Server Remote Information Disclosure ...
     7. GNU GZip CHMod File Permission Modification Race Condition W...
     8. Gaim Gaim_Markup_Strip_HTML Remote Denial Of Service Vulnera...
     9. CommuniGate Pro LIST Unspecified Denial of Service Vulnerabi...
     10. Gaim IRC Protocol Plug-in Markup Language Injection Vulnerab...
     11. Gaim Jabber File Request Remote Denial Of Service Vulnerabil...
     12. PHP-Nuke Your_Account Module Username Cross-Site Scripting V...
     13. PHP-Nuke Your_Account Module Avatarcategory Cross-Site Scrip...
     14. PHP-Nuke Downloads Module Lid Parameter Cross-Site Scripting...
     15. Vixie Cron Crontab File Disclosure Vulnerability
     16. PHP-Nuke Web_Links Module Multiple Cross-Site Scripting Vuln...
     17. PHP-Nuke Banners.PHP Cross-Site Scripting Vulnerability
     18. PHP-Nuke Top Module SQL Injection Vulnerability
     19. SurgeFTP LEAK Command Denial of Service Vulnerability
     20. PHP-Nuke Web_Links Module Multiple SQL Injection Vulnerabili...
     21. Axel HTTP Redirection Buffer Overflow Vulnerability
     22. Macromedia ColdFusion MX Updater Remote File Disclosure Vuln...
     23. PHP-Nuke Downloads Module Multiple SQL Injection Vulnerabili...
     24. SUSE Netapplet Unspecified Local Privilege Escalation Vulner...
     25. SUSE Tetex tmp File Existence Disclosure Vulnerability
     26. PostNuke Phoenix OP Parameter Remote Cross-Site Scripting Vu...
     27. PostNuke Phoenix Module Parameter Remote Cross-Site Scriptin...
III. LINUX FOCUS LIST SUMMARY
     1. Linux and DB2 (Thread)
     2. Firebird question (Thread)
     3. vsftp question (Thread)
     4. Libre Software Meeting - Security Topic - RFP (Thread)
     5. Réf. : Linux and DB2 (Thread)
IV. NEW PRODUCTS FOR LINUX PLATFORMS
     1. CoreGuard Core Security System
     2. EnCase Forensic Edition
     3. KeyGhost SX
     4. SafeKit
     5. Astaro Linux Firewall
     6. CAT Cellular Authentication Token and eAuthentication Servic...
V. NEW TOOLS FOR LINUX PLATFORMS
     1. NuFW 1.0.0
     2. ldaupenum 0.02alpha
     3. File System Saint 1.02a
     4. Umbrella v0.5
     5. Travesty 1.0
     6. OCS 0.1
VI. BOOK EXCERPTS
VII. UNSUBSCRIBE INSTRUCTIONS
VIII. SPONSOR INFORMATION

I. FRONT AND CENTER
-------------------
1. Cleaning Up Disclosure
By Mark Rasch
A new federal law requires all U.S. financial institutions to notify their
customers when a sensitive database breach has occurred. Newly proposed
state laws may go even further.
http://www.securityfocus.com/columnists/316

2. Absolute Security is a Myth
By Jason Miller
No operating system is completely immune to security threats, and that
includes Apple's OS X.
http://www.securityfocus.com/columnists/313

II. LINUX VULNERABILITY SUMMARY
-------------------------------
1. Remstats Local Insecure Temporary File Creation Vulnerabilit...
BugTraq ID: 12979
Remote: No
Date Published: Apr 04 2005
Relevant URL: http://www.securityfocus.com/bid/12979
Summary:
A local insecure file creation vulnerability affects Remstats.  This issue is due to a design error that causes a file to be insecurely opened or created and subsequently written to.

An attacker may leverage this issue to corrupt arbitrary files with the privileges of an unsuspecting user that activates the affected application.

2. Remstats Remote Command Execution Vulnerability
BugTraq ID: 12980
Remote: Yes
Date Published: Apr 04 2005
Relevant URL: http://www.securityfocus.com/bid/12980
Summary:
A remote command execution vulnerability affects Remstats.  This issue is due to a failure of the application to properly sanitize user-supplied input prior to using it to carry out critical functionality.

An attacker may leverage this issue to execute arbitrary commands with the privileges of the unsuspecting users that activated the affected application.

3. GNU Sharutils Unshar Local Insecure Temporary File Creation ...
BugTraq ID: 12981
Remote: No
Date Published: Apr 04 2005
Relevant URL: http://www.securityfocus.com/bid/12981
Summary:
A local insecure temporary file creation vulnerability affects the GNU Sharutils 'unshar' utility. This issue is due to a design error that causes a file to be insecurely opened or created and subsequently written to.

An attacker may leverage this issue to corrupt arbitrary files with the privileges of an unsuspecting user that activates the affected application.

4. PHPNuke Multiple Module Cross-Site Scripting Vulnerabilities
BugTraq ID: 12983
Remote: Yes
Date Published: Apr 03 2005
Relevant URL: http://www.securityfocus.com/bid/12983
Summary:
PHPNuke is reported prone to multiple cross-site scripting vulnerabilities affecting various modules.  The affected modules include 'Search', 'FAQ', and 'Encyclopedia'.  The 'banners.php' script is also affected.

An attacker can exploit these issues by creating a malicious link containing HTML and script code and send this link to a vulnerable user.  This can allow for theft of cookie-based authentication credentials and other attacks. 

PHPNuke 7.6 and prior versions are reportedly affected by these issues.

5. Linux Kernel Asynchronous Input/Output Local Denial Of Servi...
BugTraq ID: 12987
Remote: No
Date Published: Apr 04 2005
Relevant URL: http://www.securityfocus.com/bid/12987
Summary:
A local denial of service vulnerability affects the Linux kernel.  This issue arises due to a failure of the application to properly manage input/output resources.

A local attacker may leverage this issue to cause an affected Linux kernel to panic, effectively denying service to legitimate users.

6. IBM iSeries AS400 LDAP Server Remote Information Disclosure ...
BugTraq ID: 12991
Remote: Yes
Date Published: Apr 04 2005
Relevant URL: http://www.securityfocus.com/bid/12991
Summary:
A remote information disclosure issue affects IBM iSeries AS400 LDAP Server.  This issue is due to a failure of the application to properly secure sensitive information.

An authenticated attacker may leverage this issue to disclose user names and account information of users in their group.  This may facilitate further attacks against the affected server.

7. GNU GZip CHMod File Permission Modification Race Condition W...
BugTraq ID: 12996
Remote: No
Date Published: Apr 05 2005
Relevant URL: http://www.securityfocus.com/bid/12996
Summary:
gzip is reported prone to a security weakness; the issue is only present when an archive is extracted into a world or group writeable directory. It is reported that gzip employs non-atomic procedures to write a file and later change the permissions on the newly extracted file.

A local attacker may leverage this issue to modify file permissions of target files.

This weakness is reported to affect gzip versions 1.2.4 and 1.3.3 and previous versions.

8. Gaim Gaim_Markup_Strip_HTML Remote Denial Of Service Vulnera...
BugTraq ID: 12999
Remote: Yes
Date Published: Apr 05 2005
Relevant URL: http://www.securityfocus.com/bid/12999
Summary:
Gaim is reported prone to a remote denial of service vulnerability. The issue manifests when the Gaim client handles a malformed HTML string triggering an out-of-bounds read operation.

A remote attacker may exploit this vulnerability to deny service for legitimate users.

This vulnerability is reported to affect Gaim version 1.2.0 and previous versions.

9. CommuniGate Pro LIST Unspecified Denial of Service Vulnerabi...
BugTraq ID: 13001
Remote: Yes
Date Published: Apr 05 2005
Relevant URL: http://www.securityfocus.com/bid/13001
Summary:
CommuniGate Pro is prone to a denial of service when multipart messages are sent to a list.  Successful exploitation could cause the server to crash.

10. Gaim IRC Protocol Plug-in Markup Language Injection Vulnerab...
BugTraq ID: 13003
Remote: Yes
Date Published: Apr 05 2005
Relevant URL: http://www.securityfocus.com/bid/13003
Summary:
Gaim IRC protocol plug-in is reported prone to an input validation vulnerability. The issue is reported to exist due to a lack of sufficient sanitization performed on 'irc_msg' data. 

A remote attacker may exploit this vulnerability to execute arbitrary Gaim and Pango Markup language in the context of the user that is running the affected software.

This vulnerability is reported to affect Gaim version 1.2.0 and previous versions

11. Gaim Jabber File Request Remote Denial Of Service Vulnerabil...
BugTraq ID: 13004
Remote: Yes
Date Published: Apr 05 2005
Relevant URL: http://www.securityfocus.com/bid/13004
Summary:
Gaim is reported prone to a remote denial of service vulnerability. The issue manifests when the Gaim client handles an unspecified Jabber file transfer request, triggering an out-of-bounds read operation.

A remote attacker may exploit this vulnerability to deny service for legitimate users.

This vulnerability is reported to affect Gaim version 1.2.0 and previous versions.

12. PHP-Nuke Your_Account Module Username Cross-Site Scripting V...
BugTraq ID: 13007
Remote: Yes
Date Published: Apr 05 2005
Relevant URL: http://www.securityfocus.com/bid/13007
Summary:
It is reported that the PHP-Nuke 'Your_Account' module is affected by a cross-site scripting vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied URI input. 

This problem presents itself when malicious HTML and script code is sent to the application through the 'username' parameter of the 'Your_Account' module.   

This issue could permit a remote attacker to create a malicious URI link that includes hostile HTML and script code. If this link were to be followed, the hostile code may be rendered in the web browser of the victim user. This would occur in the security context of the affected web site and may allow for theft of cookie-based authentication credentials.

This vulnerability is reported to affect PHP-Nuke version 7.6 and previous versions.

13. PHP-Nuke Your_Account Module Avatarcategory Cross-Site Scrip...
BugTraq ID: 13010
Remote: Yes
Date Published: Apr 05 2005
Relevant URL: http://www.securityfocus.com/bid/13010
Summary:
It is reported that the PHP-Nuke 'Your_Account' module is affected by a cross-site scripting vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied URI input. 

This problem presents itself when malicious HTML and script code is sent to the application through the 'Avatarcategory' parameter of the 'Your_Account' module.   

This issue could permit a remote attacker to create a malicious URI link that includes hostile HTML and script code. If this link were to be followed, the hostile code may be rendered in the web browser of the victim user. This would occur in the security context of the affected web site and may allow for theft of cookie-based authentication credentials.

This vulnerability is reported to affect PHP-Nuke version 7.6 and previous versions.

14. PHP-Nuke Downloads Module Lid Parameter Cross-Site Scripting...
BugTraq ID: 13011
Remote: Yes
Date Published: Apr 05 2005
Relevant URL: http://www.securityfocus.com/bid/13011
Summary:
It is reported that the PHP-Nuke 'Downloads' module is affected by a cross-site scripting vulnerability. This issue is due to a failure of the application to properly sanitize user-supplied URI input.

This problem presents itself when malicious HTML and script code is sent to the application through the 'Downloads' module.  

This issue could permit a remote attacker to create a malicious URI link that includes hostile HTML and script code. If this link were to be followed, the hostile code may be rendered in the web browser of the victim user. This would occur in the security context of the affected web site and may allow for theft of cookie-based authentication credentials.

This vulnerability is reported to affect PHP-Nuke version 7.6 and previous versions.

15. Vixie Cron Crontab File Disclosure Vulnerability
BugTraq ID: 13024
Remote: No
Date Published: Apr 06 2005
Relevant URL: http://www.securityfocus.com/bid/13024
Summary:
Vixie cron crontab is reported prone to an information disclosure vulnerability that may allow local attackers to disclose users' crontab files.

It is reported that this issue arises due to a design error resulting in the insecure creation of a temporary file in the '/tmp' directory.  This occurs when crontab is executed with the '-e' option used for editing the current crontab.

An attacker may leverage this issue to disclose potentially sensitive data, which may be used to carry out further attacks against a computer.

Vixie cron 4.1-24_FC3 running on Fedora Core 3 is reported vulnerable.  It is possible that other versions on different operating systems are affected as well.

This issue may be specific to Red Hat operating systems.  It is also possible that this issue is related to BID 1845 (HP-UX crontab /tmp File Vulnerability).

16. PHP-Nuke Web_Links Module Multiple Cross-Site Scripting Vuln...
BugTraq ID: 13025
Remote: Yes
Date Published: Apr 06 2005
Relevant URL: http://www.securityfocus.com/bid/13025
Summary:
PHP-Nuke is reportedly affected by multiple cross-site scripting vulnerabilities in the Web_Links Module.  These issues are due to a failure in the application to properly sanitize user-supplied input.

An attacker may leverage these issues to have arbitrary script code executed in the browser of an unsuspecting user.  This may facilitate the theft of cookie-based authentication credentials as well as other attacks.

17. PHP-Nuke Banners.PHP Cross-Site Scripting Vulnerability
BugTraq ID: 13026
Remote: Yes
Date Published: Apr 06 2005
Relevant URL: http://www.securityfocus.com/bid/13026
Summary:
PHP-Nuke is reportedly affected by a cross-site scripting vulnerability.  This issue is due to a failure in the application to properly sanitize user-supplied input.

An attacker may leverage this issue to have arbitrary script code executed in the browser of an unsuspecting user.  This may facilitate the theft of cookie-based authentication credentials as well as other attacks.

18. PHP-Nuke Top Module SQL Injection Vulnerability
BugTraq ID: 13047
Remote: Yes
Date Published: Apr 06 2005
Relevant URL: http://www.securityfocus.com/bid/13047
Summary:
PHP-Nuke is prone to an SQL injection vulnerability.  This issue arises due to insufficient sanitization of user-supplied input.

This issue may allow a remote attacker to manipulate query logic, potentially leading to unauthorized access to sensitive information such as the administrator password hash or corruption of database data. SQL injection attacks may also potentially be used to exploit latent vulnerabilities in the underlying database implementation.

19. SurgeFTP LEAK Command Denial of Service Vulnerability
BugTraq ID: 13054
Remote: Yes
Date Published: Apr 07 2005
Relevant URL: http://www.securityfocus.com/bid/13054
Summary:
SurgeFTP is prone to a denial of service condition.  This issue exists when the LEAK command is issued to the FTP server.  Successful exploitation will cause the FTP server to either refuse new connections or not be able to send or receive files.

20. PHP-Nuke Web_Links Module Multiple SQL Injection Vulnerabili...
BugTraq ID: 13055
Remote: Yes
Date Published: Apr 07 2005
Relevant URL: http://www.securityfocus.com/bid/13055
Summary:
The Web_Links module of PHP-Nuke is affected by multiple SQL injection vulnerabilities.  These issues are due to a failure in the application to properly sanitize user-supplied input before using it in SQL queries.

Successful exploitation could result in a compromise of the application, disclosure or modification of data, or may permit an attacker to exploit vulnerabilities in the underlying database implementation.

These issues are reported to affect PHP-Nuke version 7.6; earlier versions may also be affected.

21. Axel HTTP Redirection Buffer Overflow Vulnerability
BugTraq ID: 13059
Remote: Yes
Date Published: Apr 07 2005
Relevant URL: http://www.securityfocus.com/bid/13059
Summary:
Axel is prone to a buffer overflow vulnerability when handling HTTP redirection.  A malicious HTTP response can trigger this issue, potentially allowing for arbitrary code execution.

22. Macromedia ColdFusion MX Updater Remote File Disclosure Vuln...
BugTraq ID: 13060
Remote: Yes
Date Published: Apr 07 2005
Relevant URL: http://www.securityfocus.com/bid/13060
Summary:
A remote file disclosure vulnerability affects Macromedia ColdFusion MX.  The problem presents itself due to a design error that causes potentially sensitive files to be stored in insecure locations.

An attacker may leverage this issue to gain access to compiled Java class files processed by the affected application server.  This may facilitate further attacks and application code disclosure.

23. PHP-Nuke Downloads Module Multiple SQL Injection Vulnerabili...
BugTraq ID: 13061
Remote: Yes
Date Published: Apr 07 2005
Relevant URL: http://www.securityfocus.com/bid/13061
Summary:
PHP-Nuke Downloads module is reportedly affected by multiple SQL injection vulnerabilities.  These issues are due to a failure in the application to properly sanitize user-supplied input before using it in SQL queries.

Successful exploitation could result in a compromise of the application, disclosure or modification of data, or may permit an attacker to exploit vulnerabilities in the underlying database implementation.

These issues are reported to affect PHP-Nuke version 7.6; earlier versions may also be affected.

24. SUSE Netapplet Unspecified Local Privilege Escalation Vulner...
BugTraq ID: 13068
Remote: No
Date Published: Apr 08 2005
Relevant URL: http://www.securityfocus.com/bid/13068
Summary:
Netapplet is prone to a local input validation issue.  This could allow a local user to gain elevated privileges.

Specific details of this vulnerability are not currently known.

25. SUSE Tetex tmp File Existence Disclosure Vulnerability
BugTraq ID: 13072
Remote: No
Date Published: Apr 08 2005
Relevant URL: http://www.securityfocus.com/bid/13072
Summary:
teTex is prone to a symbolic link issue that could allow users to determine the existence of files in directories they do not have permission to access.

Information gathered through this vulnerability could be used to carry out further attacks against the computer.

26. PostNuke Phoenix OP Parameter Remote Cross-Site Scripting Vu...
BugTraq ID: 13075
Remote: Yes
Date Published: Apr 08 2005
Relevant URL: http://www.securityfocus.com/bid/13075
Summary:
A remote cross-site scripting vulnerability affects PostNuke. This issue is due to a failure of the application to properly sanitize user-supplied input prior to including it in dynamically generated Web content. 

An attacker may leverage this issue to have arbitrary script code executed in the browser of an unsuspecting user.  This may facilitate the theft of cookie-based authentication credentials as well as other attacks.

27. PostNuke Phoenix Module Parameter Remote Cross-Site Scriptin...
BugTraq ID: 13076
Remote: Yes
Date Published: Apr 08 2005
Relevant URL: http://www.securityfocus.com/bid/13076
Summary:
A remote cross-site scripting vulnerability affects PostNuke. This issue is due to a failure of the application to properly sanitize user-supplied input prior to including it in dynamically generated Web content. 

An attacker may leverage this issue to have arbitrary script code executed in the browser of an unsuspecting user.  This may facilitate the theft of cookie-based authentication credentials as well as other attacks.

III. LINUX FOCUS LIST SUMMARY
-----------------------------
1. Linux and DB2 (Thread)
Relevant URL:

http://www.securityfocus.com/archive/91/395444

2. Firebird question (Thread)
Relevant URL:

http://www.securityfocus.com/archive/91/395294

3. vsftp question (Thread)
Relevant URL:

http://www.securityfocus.com/archive/91/395292

4. Libre Software Meeting - Security Topic - RFP (Thread)
Relevant URL:

http://www.securityfocus.com/archive/91/394984

5. Réf. : Linux and DB2 (Thread)
Relevant URL:

http://www.securityfocus.com/archive/91/394983

IV. NEW PRODUCTS FOR LINUX PLATFORMS
------------------------------------
1. CoreGuard Core Security System
By: Vormetric
Platforms: AIX, Linux, Solaris, Windows 2000, Windows XP
Relevant URL: http://www.vormetric.com/products/#overview
Summary: 

CoreGuard System profile

The CoreGuard System is the industry's first solution that enforces
acceptable use policy for sensitive digital information assets and
protects personal data privacy across an enterprise IT environment.
CoreGuard's innovative architecture and completeness of technology
provide a comprehensive, extensible solution that tightly integrates all
the elements required to protect information across a widespread,
heterogeneous enterprise network, while enforcing separation of duties
between security and IT administration. At the same time, CoreGuard is
transparent to users, applications and storage infrastructures for ease
of deployment and system management.

CoreGuard enables customers to:
* Protect customer personal data privacy and digital information assets 
* Protect data at rest from unauthorized viewing by external attackers
and unauthorized insiders
* Enforce segregation of duties between IT administrators and security
administration
* Ensure host & application integrity * Block malicious code, including
zero-day exploits

2. EnCase Forensic Edition
By: Guidance Software Inc.
Platforms: DOS, FreeBSD, Linux, MacOS, NetBSD, OpenBSD, PalmOS, Solaris, UNIX, Windows 2000, Windows 95/98, Windows NT, Windows XP
Relevant URL: http://www.guidancesoftware.com/products/EnCaseForensic/index.shtm
Summary: 

EnCase Forensic Edition Version 4 delivers the most advanced features for computer forensics and investigations. With an intuitive GUI and superior performance, EnCase Version 4 provides investigators with the tools to conduct large-scale and complex investigations with accuracy and efficiency. Guidance Software?s award winning solution yields completely non-invasive computer forensic investigations while allowing examiners to easily manage large volumes of computer evidence and view all relevant files, including "deleted" files, file slack and unallocated space. 

The integrated functionality of EnCase allows the examiner to perform all functions of the computer forensic investigation process. EnCase's EnScript, a powerful macro-programming language and API included within EnCase, allows investigators to build customized and reusable forensic scripts.

3. KeyGhost SX
By: KeyGhost Ltd
Platforms: BeOS, DOS, Linux, OS/2, Solaris, SunOS, Windows 2000, Windows 95/98, Windows NT, Windows XP
Relevant URL: http://www.keyghost.com/SX/
Summary: 

KeyGhost SX discreetly captures and records all keystrokes typed, including chat conversations, email, word processor, or even activity within an accounting or specialist system. It is completely undetectable by software scanners and provides you with one of the most powerful stealth surveillance applications offered anywhere. 

Because KeyGhost uses STRONG 128-Bit encryption to store the recorded data in it?s own internal memory (not on the hard drive), it is impossible for a network intruder to gain access to any sensitive data stored within the device.

4. SafeKit
By: Evidian Inc.
Platforms: AIX, HP-UX, Linux, Solaris, Windows 2000
Relevant URL: http://www.evidian.com/safekit/index.htm
Summary: 

Evidian's SafeKit technology makes it possible to render any application available 24 hours per day. With no extra hardware: just use your existing servers and install this software-only solution.

This provides ultimate scalability. As your needs grow, all you need to do is add more standard servers into the cluster. With the load balancing features of SafeKit, you can distribute applications over multiple servers. If one system fails completely, the others will continue to serve your users.

5. Astaro Linux Firewall
By: Astaro
Platforms: Linux
Relevant URL: http://www.astaro.com/php/statics.php?action=asl&lang=gb
Summary: 

Astaro Linux Firewall: All-in-one firewall, virus protection, content filtering and spam protection internet security software package for Linux. 
Free download for home users.

6. CAT Cellular Authentication Token and eAuthentication Servic...
By: Mega AS Consulting Ltd
Platforms: Java, Linux, OpenBSD, Os Independent, SecureBSD, Solaris, UNIX, Windows 2000, Windows NT
Relevant URL: http://www.megaas.co.nz
Summary: 

Low cost, easy to use Two Factor Authentication One Time Password token using the Cellular. Does not use SMS or communication, manages multiple OTP accounts - new technology. For any business that want a safer access to its Internet Services. More information at our site.
 
We also provide eAuthentication service for businesses that will not buy an Authentication product but would prefer to pay a monthly charge for authentication services from our our CAT Server.

V. NEW TOOLS FOR LINUX PLATFORMS
--------------------------------
1. NuFW 1.0.0
By: INL
Relevant URL: http://www.nufw.org
Platforms: Linux
Summary: 

NuFW performs an authentication of every single connections passing through the IP filter, by transparently requesting user's credentials before any filtering decision is taken. Practically, this brings the notion of user ID down to the IP layers.

2. ldaupenum 0.02alpha
By: Roni Bachar & Sol Zehnwirth
Relevant URL: https://sourceforge.net/projects/ldapenum
Platforms: Linux, Perl (any system supporting perl), Windows 2000, Windows 95/98, Windows NT, Windows XP
Summary: 

ldapenum is a perl script designed to enumerate system and password information from domain controllers using the LDAP service when IPC$ is locked. The script has been tested on windows and linux.

3. File System Saint 1.02a
By: Joshua Fritsch
Relevant URL: http://www.unixgeeks.org/saint
Platforms: Linux, UNIX
Summary: 

A fast, flexible, lightweight perl-based host IDS.

4. Umbrella v0.5
By: Umbrella
Relevant URL: http://umbrella.sf.net/
Platforms: Linux
Summary: 

A combination of process-based access control (PBAC) and authentication of binaries (like DigSig) - in addition the binaries have the security policy included within the binary, thus when it is executed, the policy is applied to the corrosponding process. Umbrella provides developers with a "restricted fork" which enables him to further restrict a sub-process from e.g. accessing the network.

5. Travesty 1.0
By: Robert Wesley McGrew
Relevant URL: http://cse.msstate.edu/~rwm8/travesty/
Platforms: Linux
Summary: 

Travesty is an interactive program for managing the hardware addresses (MAC) of ethernet devices on your computer.  It supports manually changing the MAC, generating random addresses, and applying different vendor prefixes to the current address.
 It also allows the user to import their own lists of hardware addresses and descriptions that can be navigated from within the Travesty interface.  Travesty is written in Python, and is very simple to add functionality to, or modify.

6. OCS 0.1
By: OverIP
Relevant URL: http://hacklab.altervista.org/download/OCS.c
Platforms: Linux
Summary: 

This is a very reliable and fast mass scanner for Cisco router with telnet/enable default password.

VI. BOOK EXCERPTS
----------------------------
1. Google Hacking for Penetration Testers by Johnny Long (Syngress)
Chapter 8 discusses tracking down Web servers, login portals, and network hardware .
http://www.securityfocus.com/excerpts/syngress

2. Buffer Overflow Attacks by James C. Foster (Syngress)
Chapter 7 looks at format string attacks, what they are and how to defend against them.
http://www.securityfocus.com/excerpts/syngress-1

3. The Art of Computer Virus Research and Defense, by Peter Szor (Symantec)
Chapter 9 presents the strategies of computer worms in detail.
http://www.securityfocus.com/excerpts/symantec

VII. UNSUBSCRIBE INSTRUCTIONS
----------------------------
To unsubscribe send an e-mail message to [email protected] from the subscribed address. The contents of the subject or message body do not matter. You will receive a confirmation request message to which you will have to answer. Alternatively you can also visit http://www.securityfocus.com/newsletters and unsubscribe via the website. 

If your email address has changed email [email protected] and ask to be manually removed. 
    
VIII. SPONSOR INFORMATION
-----------------------

Need to know what's happening on YOUR network? Symantec DeepSight Analyzer
is a free service that gives you the ability to track and manage attacks.
Analyzer automatically correlates attacks from various Firewall and network
based Intrusion Detection Systems, giving you a comprehensive view of your
computer or general network. Sign up today!

http://www.securityfocus.com/sponsor/Symantec_sf-news_041130

------------------------------------------------------------------------