
Look at U.S.
Government's National Security Agency (NSA)'s
recommendations for "hardening" various OS and equipment platforms!
See also my URL references from Microsoft's
2604 Security Clinic.
My list of hacking
& cracking software tools
Vendor links
| Site Name | Additional Info |
| 2600.com | Hacker site |
| Microsoft Course 6416B Mod13 Acronym List | |
| AccessData Corporation | Several password recovery products and criminal investigation/forensic products, such as the PRTK. I believe it also claims that it can bust EFS. |
| Advanced EFS Data Recovery (AEFSDR) from Elcom | Can fairly handily bust EFS protected files, even if a machine was SYSKEY protected. |
| A couple of scary/cool tools for scanning, such as the Angry IP Scanner [see screen capture elsewhere on this site], and placing a Trojan on a machine. Free tools, the developer is from Estonia. | |
| Anonymizer | Allows users to surf "anonymously". |
| Antionline.com | A worldwide community of security professionals, thousands of articles and thousands of programs. |
| Astalavista.box.sk | Hacker site. |
| Attrition.org | Off-beat "security" website |
| BlackHat.com | Digital Self Defense. "Know Your Enemy". Briefings, training and more. |
|
Online, Base64 encoder/decoders. Here's one from OptionatedGeek |
These may also work...
Here's
one
(David Carter-Tod) |
| Computer Emergency Response Team (CERT) Advisories | Funded by the U.S. Government to respond to Internet security incidents. |
| CRAK Software | Password busting software for Quicken, Excel, Word, Access, .PST files, and more. You GOTTA KNOW stuff like this exists. |
| Crackerkonsole.de | A German site, definitely on the wrong side of the fence. |
| Counterpane by Bruce Schneier, author of the "CRYPTO-GRAM" | The Counterpane Cryptogram Security products, articles, white papers, seminars...cool site! Check this article on a cryptanalysis of PPTP! |
| Cryptome | Various articles in various industries related to security topics. |
| Daniel Petri's MCSEWorld website | Domain Admin and workstation password cracking tools, freely downloadable! |
| Datakey | Security products like smart card readers, see also my "Networking Technologies" page. |
| D.O.E. Sysworks from Joe Peschel | "Computer Security, Encryption, and Cryptanalysis". |
| Denial of Service Help | |
| DumpSec (formerly DumpACL) | A freeware ACL reporting tool to determine if certain security holes exist. |
| eBlaster | Automatically sends you a copy of a computers emails, chats and keystrokes...great if you want to monitor your kids remotely. |
| Encryption Software to Avoid | An article on how to purchase encryption software |
| Enterprise Security Today | Security website. |
| Foundstone | Some free analysis tools available. |
| Hackers.com | Hacker site. |
| Gibson Research | A must-visit security site to make sure your computers are secure. |
| L0pht Crack from Heavy Industries, then acquired by @tStake, then by Symantec | L0pht Crack, pre-Windows 2000 (NTLM) password busting tool. |
| Insecure.org | Home of NMap, the Unix oriented port scanner. |
| ISA Server.org | Unofficial ISA Server resource site. |
| iSpyNow software | Remote Internet surveillance software. |
| John the Ripper password cracking software | |
| Do a search for "Key Loggers", programs that track your every keystroke. Here's one that's free! | There are plenty of them. |
| "Keeping Your Secrets Secret" by Roberta Bragg | An excellent primer online article on cryptography. |
| Lance's security white papers | |
| Magical Jelly Bean Keyfinder | Freeware used to determine your Windows OS product code. |
| Microsoft Windows 2000 Security Technical Overview | Download the available .doc file. |
| Microsoft/TechNet/security/web.asp | |
| Solving Securiy problems is not a Mission Impossible (about forged drivers licenses and identification documents) | An C/NET editorial by David Myers. |
| Netcraft | Will tell you what OS a website is running [somewhat accurately]. |
| Network World E-mail Newsletters | Scroll down to the Network Management area for security newsletters. |
| Neworder.box.sk | Hacker site. |
| Nomad Mobile Research Center NMRC | Hacker/Anti-hacker site. |
| NTAccess from SunbeltSoftware | A software tool used to reassign the Administrator password when one can obtain access to a WinNT, WinXP or Win2000 machine! |
| Oxid.it (Password cracking and other resources) | |
| A Random Password Generator | from Winguides.com Here's another... |
| PacketStormSecurity.org | Security tools and other resources. |
| Password Safe | An Open Source project that creates a database to store the myriad of passwords we must maintain. |
| RainbowCrack | Supposedly a faster method for cracking password hashes. Found at the Project RainbowCrack website. |
| The Risks Digest Forum | Click on "The Risks Digest Forum" for links to security articles. |
| RSA Corporation | Security products and information. I bought one of their books on cryptography. |
| SANS Institute | Click on "Resources", Security newsletter. |
| SearchSecurity website | with links to many other valuable websites. |
| Securityportal | Very good security reference site. |
![]() Special Ops: Host and Network Security for Microsoft, Unix, and Oracle |
A book, ISBN 1931836698 by Syngress, from Erik Pace Burkholz. |
| Beware of Snake Oil crypto software | From InterHack. |
| Stinger Anti-virus (removal) tool from McAfee | |
| From Thawte, information on cryptography such as... | What are hashes, and what are encryption "keys", along with examples...pretty cool. |
| Windows & .Net Magazines "Security Administrator" | Publication and website. |
| Wireless Info & Security Links | |
| Vendor Links | |
| Truesecure | Products and reference information; related to the ICSA, formerly the NCSA |
| Verisign Corporation | Security products, such as digital
certificates. See also this link, which defines some of the authenticity checks the CA goes through to validate identity of the certificate applicant. |
| ZoneAlarm | From ZoneLabs; a freeware tool. ZoneAlarmPro is not free to act as a software firewall on your PC. |
IIS Related Security Topics links copied from Microsoft's website
See several SSL related references