<?xml version="1.0" encoding="gb2312"?>
<rss version="2.0">
<channel>
<title>中国安全网-安全您的网络</title>
<link>http://www.securitycn.net</link>
<description> 中国安全网-安全您的网络 的 技术研究 最近更新</description>
<language>zh-cn</language>
<generator>power by www.securitycn.net</generator>
<webmaster>vitter@mail.securitycn.net</webmaster>
<ttl>60</ttl>
<item>
    <title>我的一台linux肉鸡的简单手工入侵检测过程</title>
    <link>http://www.securitycn.net/html/research/service/6208.html</link>
    <description>今天发现一台肉鸡上某人的ssh连到另外一台服务器上，记录下了密码...</description>
    <pubDate>2009-09-03 15:59:43</pubDate>
    <category>安全服务</category>
    <author>vitter</author>
    <comments>出处：中国安全网</comments>
</item>
<item>
    <title>内网渗透测试笔记</title>
    <link>http://www.securitycn.net/html/research/vul/6207.html</link>
    <description>最近渗透测试中遇到的几个值得注意的情况，记录下：...</description>
    <pubDate>2009-09-03 15:57:36</pubDate>
    <category>漏洞挖掘</category>
    <author>vitter</author>
    <comments>出处：中国安全网</comments>
</item>
<item>
    <title>防范网页挂马攻击 从对WEB站点进行安全评估开始</title>
    <link>http://www.securitycn.net/html/research/service/5723.html</link>
    <description>对WEB站点进行安全评估是WEB安全防范处理过程中非常重要的一个环节，它应当贯穿站点的整个生命周期。对WEB站点实施安全评估的目的就是指安全评估人员，使用相应的评估工具和技术，经过一系列恰当的方法，对WEB服务器本身、服务器系统、后台数据库系统及网络中已经实施的安全机制，进行全面的检测和评估...</description>
    <pubDate>2009-05-04 17:20:01</pubDate>
    <category>安全服务</category>
    <author>刘源</author>
    <comments>出处：IT专家网</comments>
</item>
<item>
    <title>信息安全之专家谈风险评估过程中的风险</title>
    <link>http://www.securitycn.net/html/research/service/5670.html</link>
    <description>做信息安全的人都知道风险评估，而我在这里不谈那些技术评估、应用评估、流程评估等评估过程中的问题，只谈我们作为乙方在做咨询项目中通常都要做到的信息资产的风险评估，而这个风险评估过程中的“风险”也是指的在评估过程中遇到的实施风险...</description>
    <pubDate>2009-04-20 13:06:10</pubDate>
    <category>安全服务</category>
    <author>李达</author>
    <comments>出处：中国安全网</comments>
</item>
<item>
    <title>无线D.O.S之验证洪水攻击</title>
    <link>http://www.securitycn.net/html/research/vul/5604.html</link>
    <description>这里我们讲述的是有线D.O.S攻击的延伸--无线D.O.S中的其中一种类型：验证洪水攻击...</description>
    <pubDate>2009-04-03 15:42:29</pubDate>
    <category>漏洞挖掘</category>
    <author>Christopher Yang</author>
    <comments>出处：IT168</comments>
</item>
<item>
    <title>浅谈逆向工程在网络安全研究中的运用</title>
    <link>http://www.securitycn.net/html/research/vul/5086.html</link>
    <description>在软件破解或者软件加密、解密这个圈子里面，大家对于逆向工程这个词语并不陌生，因为大家兴趣爱好的原因，使大家每天都在与逆向工程这个词语进行着斗争，当然，我们这里使用的逆向工程这个概念，指的是计算机软件方面的逆向工程，而没有包括逆向工程这个词语所包含的所有范围...</description>
    <pubDate>2008-11-13 00:00:00</pubDate>
    <category>漏洞挖掘</category>
    <author>waterwave</author>
    <comments>出处：IT专家网</comments>
</item>
<item>
    <title>一次小区内的无线路由入侵渗透测试</title>
    <link>http://www.securitycn.net/html/research/vul/4833.html</link>
    <description>前一段时间在我刚买无线路由的时候，拿笔记本在家做了次小区里面的无线路由渗透测试，籍此再次提醒大家，无线路由安全问题应该引起重视...</description>
    <pubDate>2008-08-28 00:00:00</pubDate>
    <category>漏洞挖掘</category>
    <author>vitter</author>
    <comments>出处：中国安全网</comments>
</item>
<item>
    <title>一次Linux下ARP欺骗嗅探公司邮箱密码的内部渗透测试</title>
    <link>http://www.securitycn.net/html/research/vul/4271.html</link>
    <description>一次Linux下ARP欺骗嗅探公司邮箱密码的内部渗透测试...</description>
    <pubDate>2008-04-08 00:00:00</pubDate>
    <category>漏洞挖掘</category>
    <author>vitter</author>
    <comments>出处：中国安全网</comments>
</item>
<item>
    <title>电信数据网安全评估准则的研究</title>
    <link>http://www.securitycn.net/html/research/service/3205.html</link>
    <description>本文就电信数据网安全评估的若干关键问题，包括电信数据网安全评估准则、电信数据网风险分析方法、电信数据网安全等级划分原理、电信数据网安全评估过程、电信数据网安全评估工具等，进行了探讨...</description>
    <pubDate>2007-07-13 00:00:00</pubDate>
    <category>安全服务</category>
    <author>佚名</author>
    <comments>出处：中国安全网</comments>
</item>
<item>
    <title>企业网络信息安全保护措施的探讨与实践</title>
    <link>http://www.securitycn.net/html/research/service/2337.html</link>
    <description>随着企业网络的普及和网络开放性，共享性，互连程度的扩大，网络的信息安全问题也越来越引起人们的重视。一个安全的计算机网络应该具有可靠性、可用性、完整性、保密性和真实性等特点。计算机网络不仅要保护计算机网络设备安全和计算机网络系统安全，还要保护数据安全...</description>
    <pubDate>2007-02-09 00:00:00</pubDate>
    <category>安全服务</category>
    <author>佚名</author>
    <comments>出处：中国安全网</comments>
</item>
<item>
    <title>高手对付DDoS攻击的绝招</title>
    <link>http://www.securitycn.net/html/research/service/2316.html</link>
    <description>如果说以前网络管理员对抗Dos可以采取过滤IP地址方法的话，那么面对当前DdoS众多伪造出来的地址则显得没有办法。所以说防范DdoS攻击变得更加困难，如何采取措施有效的应对呢?本文将为大家从两个方面进行介绍...</description>
    <pubDate>2007-02-08 00:00:00</pubDate>
    <category>安全服务</category>
    <author>佚名</author>
    <comments>出处：中国安全网</comments>
</item>
<item>
    <title>Linux 内核文件系统与设备操作流程分析</title>
    <link>http://www.securitycn.net/html/research/dev/2195.html</link>
    <description>本笔记对 linux kernel 的文件系统操作以及设备操作进行了分析，主要是针对 ext3 文件系统的 open 流程的分析...</description>
    <pubDate>2007-01-24 00:00:00</pubDate>
    <category>程序开发</category>
    <author>sinister</author>
    <comments>出处：Whitecell Security Systems</comments>
</item>
<item>
    <title>网上银行等电子支付平台的WEB登陆安全性简要分析</title>
    <link>http://www.securitycn.net/html/research/vul/2080.html</link>
    <description>网上银行以及电子商务支付平台的安全性不容乐观,尽管各网上银行采取SSL加密防止通过嗅探网络封包的方式截取密码；对于防止WEB登陆时密码被窃取，网上银行采取了安全控件或者动态软键盘的方法，但考虑的仍不全面，我们还是能采取相应的方法截获用户输入的密码...</description>
    <pubDate>2007-01-09 00:00:00</pubDate>
    <category>漏洞挖掘</category>
    <author>xyzreg</author>
    <comments>出处：www.xyzreg.net</comments>
</item>
<item>
    <title>一次linux肉鸡入侵检测</title>
    <link>http://www.securitycn.net/html/research/service/1786.html</link>
    <description>&amp;nbsp;作者：baoz&lt;BR&gt;&lt;BR&gt;&lt;A href=&quot;http://baoz.net/&quot; target=_blank&gt;http://baoz.net&lt;/A&gt;&lt;BR&gt;&lt;A href=&quot;http://xsec.org/&quot; target=_blank&gt;http://xsec.org&lt;/A&gt;&lt;BR&gt;1妹儿：perlish(*)gmail.com or fatb@zzu.edu.cn (有时gmail收不到信或者会被当垃圾邮件过滤掉)&lt;BR&gt;欢迎转......</description>
    <pubDate>2006-11-23 00:00:00</pubDate>
    <category>安全服务</category>
    <author>baoz</author>
    <comments>出处：baoz.net</comments>
</item>
<item>
    <title>安全漏洞杂谈</title>
    <link>http://www.securitycn.net/html/research/vul/1785.html</link>
    <description>&amp;nbsp;目录:&lt;BR&gt;&amp;nbsp;&amp;nbsp;一、不同角度看安全漏洞的分类&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;BR&gt;&amp;nbsp;&amp;nbsp;二、不同角度看待漏洞利用&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;BR&gt;&amp;nbsp;&amp;nbsp;三、漏洞发掘方法&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&lt;BR&gt;&amp;nbsp;&amp;nbsp;四、漏洞等级评定&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;......</description>
    <pubDate>2006-11-23 00:00:00</pubDate>
    <category>漏洞挖掘</category>
    <author>watercloud</author>
    <comments>出处：xfocus.org</comments>
</item>
<item>
    <title>解密企业安全风险评估</title>
    <link>http://www.securitycn.net/html/research/analyse/1775.html</link>
    <description>&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 当前，无论是政府还是企业，对于自身的信息安全都非常关注。因此，企业信息安全风险评估再一次引起了业界的关注。那么，此类评估有什么标准？对企业的价值又体现在何处呢？&lt;BR&gt;&lt;BR&gt;&lt;B&gt;&lt;FONT color=#6f0d11 size=4&gt;认识存在的......</description>
    <pubDate>2006-11-22 00:00:00</pubDate>
    <category>行业分析</category>
    <author>佚名</author>
    <comments>出处：中国安全网</comments>
</item>
<item>
    <title>安全是平的 从身份认证与内网安全说起</title>
    <link>http://www.securitycn.net/html/research/analyse/1712.html</link>
    <description>《世界是平的》是美国《纽约时报》专栏作家托马斯·弗里德曼今年最轰动的著作，继早年的《凌志汽车与橄榄树》之后，弗里德曼再一次将全球化的平坦之路呈现在全球读者面前，只不过，这次的主角是IT...</description>
    <pubDate>2006-11-08 00:00:00</pubDate>
    <category>行业分析</category>
    <author>赵晓涛</author>
    <comments>出处：网络世界</comments>
</item>
<item>
    <title>谁动了我们的DNS</title>
    <link>http://www.securitycn.net/html/research/analyse/1616.html</link>
    <description>&amp;nbsp;本文遵从GPL协议，欢迎转载&lt;BR&gt;&lt;BR&gt;|=------------------------------------------------------------------------=|&lt;BR&gt;&lt;BR&gt;---------[ Table of Contents ]&lt;BR&gt;&lt;BR&gt;&amp;nbsp;&amp;nbsp;0x1&amp;nbsp;&amp;nbsp; - 前言&lt;BR&gt;&amp;nbsp;&amp;nbsp;0x2&amp;nbsp;&amp;nbsp; - 一些怪现象&lt;BR&gt;&amp;nbsp;&amp;......</description>
    <pubDate>2006-10-17 00:00:00</pubDate>
    <category>行业分析</category>
    <author>root</author>
    <comments>出处：xfocus</comments>
</item>
<item>
    <title>SYN flood攻击的原理及其防御</title>
    <link>http://www.securitycn.net/html/research/vul/1578.html</link>
    <description>介绍了SYN Flood攻击的基本原理，详细地描述了目前几种比较有效的两种防御措施：SYN－cookie技术和地址状态监控技术...</description>
    <pubDate>2006-10-11 00:00:00</pubDate>
    <category>漏洞挖掘</category>
    <author>佚名</author>
    <comments>出处：中国安全网</comments>
</item>
<item>
    <title>服务器拒绝服务攻击的解决方法</title>
    <link>http://www.securitycn.net/html/research/vul/1577.html</link>
    <description>　　Internet给全世界的人们带来了无限的生机，真正实现了无国界的全球村。但是还有很多困扰我们的因素，象IP地址的短缺，大量带宽的损耗，以及政府规章的限制和编程技术的不足。现在，由于多年来网络系统累积下了无数的漏洞，我们将面临着更大的威胁，网络中潜伏的好事......</description>
    <pubDate>2006-10-11 00:00:00</pubDate>
    <category>漏洞挖掘</category>
    <author>佚名</author>
    <comments>出处：中国安全网</comments>
</item>
<item>
    <title>典型D.D.O.S攻击原理及抵御措施</title>
    <link>http://www.securitycn.net/html/research/vul/1576.html</link>
    <description>smurf、trinoo、tfn、tfn2k以及stacheldraht是比较常见的DoS攻击程序，本文将对它们的原理以及抵御措施进行论述，以帮助管理员有效地抵御DoS风暴攻击，维护站点安全...</description>
    <pubDate>2006-10-11 00:00:00</pubDate>
    <category>漏洞挖掘</category>
    <author>佚名</author>
    <comments>出处：中国安全网</comments>
</item>
<item>
    <title>DDoS攻击原理及防范</title>
    <link>http://www.securitycn.net/html/research/vul/1575.html</link>
    <description>DDoS攻击原理及防范...</description>
    <pubDate>2006-10-11 00:00:00</pubDate>
    <category>漏洞挖掘</category>
    <author>佚名</author>
    <comments>出处：中国安全网</comments>
</item>
<item>
    <title>DDoS的攻击原理与防御方法</title>
    <link>http://www.securitycn.net/html/research/vul/1574.html</link>
    <description>DDoS的攻击原理与防御方法...</description>
    <pubDate>2006-10-11 00:00:00</pubDate>
    <category>漏洞挖掘</category>
    <author>佚名</author>
    <comments>出处：中国安全网</comments>
</item>
<item>
    <title>分布式反射拒绝服务攻击：新一代的DDoS攻击 的原理与防御</title>
    <link>http://www.securitycn.net/html/research/vul/1463.html</link>
    <description>分布式反射 ：新一代的DDoS攻击 的原理与防御...</description>
    <pubDate>2006-09-22 00:00:00</pubDate>
    <category>漏洞挖掘</category>
    <author>佚名</author>
    <comments>出处：中国安全网</comments>
</item>
<item>
    <title>黑客经典之恶意SSH登录企图分析</title>
    <link>http://www.securitycn.net/html/research/service/1395.html</link>
    <description>本文回顾了使用&quot;蜜罐&quot;（honeypot）对恶意SSH登录企图进行分析的方法，并提出了我们可以从这一活动中学到的东西。接着本文给出了关于如何使自己的系统安全面对这些攻击的建议...</description>
    <pubDate>2006-09-15 00:00:00</pubDate>
    <category>安全服务</category>
    <author>佚名</author>
    <comments>出处：中国安全网</comments>
</item>
<item>
    <title>入侵检测及其对未来网络安全发展的探讨</title>
    <link>http://www.securitycn.net/html/research/analyse/1186.html</link>
    <description>&lt;P&gt;随着网络安全风险系数不断提高，曾经作为最主要的安全防范手段的防火墙，已经不能满足人们对网络安全的需求。作为对防火墙及其有益的补充，IDS（入侵检测系统）能够帮助网络系统快速发现攻击的发生，它扩展了系统管理员的安全管理能力（包括安全审计、监视、进攻识别......</description>
    <pubDate>2006-08-16 00:00:00</pubDate>
    <category>行业分析</category>
    <author>佚名</author>
    <comments>出处：securitycn</comments>
</item>
<item>
    <title>无规矩难成方圆 聚焦信息安全服务管理问题</title>
    <link>http://www.securitycn.net/html/research/analyse/1018.html</link>
    <description>&lt;SPAN id=zoom&gt;
&lt;P style=&quot;TEXT-INDENT: 2em&quot;&gt;&lt;B&gt;服务渐成安全之重&lt;/B&gt; &lt;/P&gt;
&lt;P style=&quot;TEXT-INDENT: 2em&quot;&gt;当信息安全产品市场快速发展到一定阶段的时候，信息安全服务自然就会形影相随地发展起来，这已是在国外信息安全市场上得到验证的一个产业规律。IDC的报告所提供......</description>
    <pubDate>2006-07-19 00:00:00</pubDate>
    <category>行业分析</category>
    <author>崔光耀</author>
    <comments>出处：信息安全与通信保密</comments>
</item>
<item>
    <title>网络与信息安全研究热点浅析</title>
    <link>http://www.securitycn.net/html/research/analyse/975.html</link>
    <description>网络与信息安全研究热点浅析...</description>
    <pubDate>2006-07-11 00:00:00</pubDate>
    <category>行业分析</category>
    <author>佚名</author>
    <comments>出处：中国安全网</comments>
</item>
<item>
    <title>IDS开发商和研究者应认真考虑的问题</title>
    <link>http://www.securitycn.net/html/research/analyse/846.html</link>
    <description>对于IDS的设计者和实现者来说，研究所使用的数据源、权衡使用这些数据源的利弊以及是否可能有更好的方法，都是至关重要的...</description>
    <pubDate>2006-06-21 00:00:00</pubDate>
    <category>行业分析</category>
    <author>佚名</author>
    <comments>出处：中国安全网</comments>
</item>
<item>
    <title>FireFox 1.0.7 编译方法及步骤</title>
    <link>http://www.securitycn.net/html/research/dev/49.html</link>
    <description>&lt;P&gt;　　根据 Mozilla 官方网站上的编译步骤操作总会遇到各种各样的错误提示，以下是在虚拟机环境下验证通过的编译步骤。&lt;/P&gt;
&lt;P&gt;1、准备工作&lt;/P&gt;
&lt;P&gt;　　1) 依次安装 Visual C++ 6, Visual C++ Service Pack 5, Visual C++ Processor Pack。&lt;BR&gt;　　&lt;BR&gt;　　2) 安装 c......</description>
    <pubDate>2006-02-27 00:00:00</pubDate>
    <category>程序开发</category>
    <author>佚名</author>
    <comments>出处：大成天下</comments>
</item>
<item>
    <title>基于Webshell的sniffer可行性研究</title>
    <link>http://www.securitycn.net/html/research/vul/48.html</link>
    <description>&lt;TABLE cellSpacing=0 cellPadding=0 width=&quot;100%&quot; border=0&gt;
&lt;TBODY&gt;
&lt;TR&gt;
&lt;TR&gt;
&lt;TD vAlign=top align=left width=&quot;98%&quot; bgColor=#f7fbfe height=142&gt;&lt;SPAN class=top11&gt;
&lt;P&gt;
&lt;P&gt;&lt;FONT size=2&gt;前言:&lt;BR&gt;&lt;BR&gt;幻影Mix修改的flashsky的那个端口复用下的嗅探serv-u,经......</description>
    <pubDate>2006-02-27 00:00:00</pubDate>
    <category>漏洞挖掘</category>
    <author>佚名</author>
    <comments>出处：hhuai.cn</comments>
</item>
<item>
    <title>程序行为追踪（API TRACING）</title>
    <link>http://www.securitycn.net/html/research/dev/47.html</link>
    <description>&lt;H1 id=articlename&gt;&lt;FONT size=1&gt;&lt;/FONT&gt;&amp;nbsp;&lt;/H1&gt;
&lt;DIV class=content id=Zoom&gt;
&lt;P&gt;　　对木马类程序处理多了，就渐渐觉得静/动态手工分析过程在很大程度上都是重复劳动。总要先花半个钟头了解程序特性，手工分析时还生怕漏掉某项隐蔽的关键操作，导致最终清除不彻......</description>
    <pubDate>2006-02-27 00:00:00</pubDate>
    <category>程序开发</category>
    <author>佚名</author>
    <comments>出处：大成天下</comments>
</item>
<item>
    <title>企业秘密保护与陷阱网络</title>
    <link>http://www.securitycn.net/html/research/service/46.html</link>
    <description>&lt;DIV class=content id=Zoom&gt;&lt;BR&gt;&lt;TR&gt;&lt;TD height=&quot;142&quot; valign=&quot;top&quot;&gt;
&lt;P&gt;　　前些时候考虑企业秘密保护时，认为陷阱网络能够在其中发挥一定的作用，因此做了些构思，基于一定的访问控制策略，违规者发送的数据将被透明地转发至陷阱主机，但对正常操作者毫无影响。&lt;/P&gt;......</description>
    <pubDate>2006-02-27 00:00:00</pubDate>
    <category>安全服务</category>
    <author>佚名</author>
    <comments>出处：大成天下</comments>
</item>
<item>
    <title>Linux(RedHat)主机加固</title>
    <link>http://www.securitycn.net/html/research/service/45.html</link>
    <description>&lt;P&gt;Linux(RedHat)主机加固&lt;BR&gt;&lt;BR&gt;序：&lt;BR&gt;众所周知，网络安全是个很重要的课题，而对于Linux这个源代码开放的操作系统是公认的比较安全的系统，一旦Linux系统中发现漏洞Internet上来自世界各地的志愿者会踊跃修补它。然而，系统管理员往往不能及时地得到信息并进行更正......</description>
    <pubDate>2006-02-27 00:00:00</pubDate>
    <category>安全服务</category>
    <author>佚名</author>
    <comments>出处：vfocus</comments>
</item>
<item>
    <title>*nix下溢出获取root的感想</title>
    <link>http://www.securitycn.net/html/research/vul/15.html</link>
    <description>&lt;H3 class=title&gt;*nix下溢出获取root的感想&lt;/H3&gt;
&lt;P&gt;今天看到篇文章：《默认Samba版本在RedHat 9上的溢出获取root演示》&lt;/P&gt;
&lt;P&gt;从近日对被黑服务器的安全分析来看，我找到该用户提升权限的工具。他是利用了Samba的安全漏洞提升为了ROOT。&lt;BR&gt;这几天服务器因为要放到公......</description>
    <pubDate>2006-02-24 00:00:00</pubDate>
    <category>漏洞挖掘</category>
    <author>佚名</author>
    <comments>出处：vfocus</comments>
</item>
<item>
    <title>使用rsync从linux到linux或到windows对网站进行镜像备份</title>
    <link>http://www.securitycn.net/html/research/analyse/14.html</link>
    <description>&lt;CENTER&gt;&lt;B&gt;&lt;FONT size=3&gt;使用rsync从linux到linux或到windows对网站进行镜像备份&lt;/FONT&gt;&lt;/B&gt;&lt;BR&gt;&lt;/CENTER&gt;
&lt;P&gt;
&lt;BLOCKQUOTE&gt;&lt;BR&gt;&lt;FONT class=b1&gt;BY：vitter (Vitter@safechina.net)&lt;BR&gt;Our Web：http://www.safechina.net&lt;BR&gt;My Web：http://www.vfocus.net&lt;BR&gt;My Bl......</description>
    <pubDate>2006-02-24 00:00:00</pubDate>
    <category>行业分析</category>
    <author>佚名</author>
    <comments>出处：vfocus</comments>
</item>
<item>
    <title>国内网络安全风险评估市场与技术操作</title>
    <link>http://www.securitycn.net/html/research/service/13.html</link>
    <description>&lt;STRONG&gt;版本控制&lt;BR&gt;&lt;BR&gt;&lt;/STRONG&gt;&lt;EM&gt;　　v0.1 04/01/2004 文档创建，包含大量示例文件内部发布&lt;BR&gt;　　v0.2 04/19/2004 删除部份敏感信息，增加国内市场分析、BS7799和OCTAVE概述后，对外发布&lt;/EM&gt; 
&lt;P&gt;　　近两年网络安全风险评估渐渐为人们所重视，不少大型企业尤......</description>
    <pubDate>2006-02-24 00:00:00</pubDate>
    <category>安全服务</category>
    <author>佚名</author>
    <comments>出处：xfocus</comments>
</item>
</channel>
</rss>
