Security Basics
How to prevent zero day attacks May 22 2012 06:04AM
amishra jsr gmail com (7 replies)
Re: How to prevent zero day attacks May 24 2012 11:31PM
Peter Thomas (hackertarget admin gmail com) (1 replies)
RES: How to prevent zero day attacks May 26 2012 01:40PM
Fábio Soto (fabio andradesoto com br)
Great resource... thanks

-----Mensagem original-----
De: listbounce (at) securityfocus (dot) com [email concealed] [mailto:listbounce (at) securityfocus (dot) com [email concealed]] Em nome de Peter Thomas
Enviada em: quinta-feira, 24 de maio de 2012 20:31
Para: amishra.jsr (at) gmail (dot) com [email concealed]
Cc: security-basics (at) securityfocus (dot) com [email concealed]
Assunto: Re: How to prevent zero day attacks

The Australian department of defence has a good resource on protecting
systems against threats for which there are no signatures available.

These are the Top 4, from a full list of 35. Implementing the Top 4
will provide a significant increase in security.

1. patch applications such as PDF readers, Microsoft Office, Java,
Flash Player and web browsers
2. patch operating system vulnerabilities
3. minimise the number of users with administrative privileges
4. use application whitelisting to help prevent malicious software and
other unapproved programs from running.

More details are available here -
http://www.dsd.gov.au/infosec/top35mitigationstrategies.htm

Regards,

Peter
--------------------------------------------------
Security Scanning Tools On-line
Web: http://hackertarget.com/
--------------------------------------------------

On Tue, May 22, 2012 at 4:04 PM, <amishra.jsr (at) gmail (dot) com [email concealed]> wrote:
> Hello,
> Traditionally all the anitvirus, IPS works using signature based technique. This doesn't help in zero day attack. Therefore, what can be done to prevent zero-day attacks?
>
> ------------------------------------------------------------------------

> Securing Apache Web Server with thawte Digital Certificate
> In this guide we examine the importance of Apache-SSL and who needs an SSL certificate. We look at how SSL works, how it benefits your company and how your customers can tell if a site is secure. You will find out how to test, purchase, install and use a thawte Digital Certificate on your Apache web server. Throughout, best practices for set-up are highlighted to help you ensure efficient ongoing management of your encryption keys and digital certificates.
>
> http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442
f727d1
> ------------------------------------------------------------------------

>

------------------------------------------------------------------------

Securing Apache Web Server with thawte Digital Certificate
In this guide we examine the importance of Apache-SSL and who needs an SSL certificate. We look at how SSL works, how it benefits your company and how your customers can tell if a site is secure. You will find out how to test, purchase, install and use a thawte Digital Certificate on your Apache web server. Throughout, best practices for set-up are highlighted to help you ensure efficient ongoing management of your encryption keys and digital certificates.

http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442
f727d1
------------------------------------------------------------------------

------------------------------------------------------------------------

Securing Apache Web Server with thawte Digital Certificate
In this guide we examine the importance of Apache-SSL and who needs an SSL certificate. We look at how SSL works, how it benefits your company and how your customers can tell if a site is secure. You will find out how to test, purchase, install and use a thawte Digital Certificate on your Apache web server. Throughout, best practices for set-up are highlighted to help you ensure efficient ongoing management of your encryption keys and digital certificates.

http://www.dinclinx.com/Redirect.aspx?36;4175;25;1371;0;5;946;e13b6be442
f727d1
------------------------------------------------------------------------

[ reply ]
Re: How to prevent zero day attacks May 23 2012 02:55AM
GreyHat LispHacker (greyhatlisphacker gmail com)
RE: How to prevent zero day attacks May 22 2012 05:31PM
David Gillett (gillettdavid fhda edu)
Re: How to prevent zero day attacks May 22 2012 03:10PM
Nathan Sherlock (nsherlock herjavecgroup com)
Re: How to prevent zero day attacks May 22 2012 03:08PM
Brandon Edmunds (brandonedmunds gmail com)
Re: How to prevent zero day attacks May 22 2012 03:05PM
Littlefield, Tyler (tyler tysdomain com)
Re: How to prevent zero day attacks May 22 2012 03:01PM
AK (platsakos gmail com) (1 replies)
Re: How to prevent zero day attacks May 22 2012 03:16PM
Cody Alexander (tab604 hotmail com)


 

Privacy Statement
Copyright 2010, SecurityFocus