features

post news


(SMS/Articles)

search files, exploits & links sections:

Recent News
First secure USB flash drive to fully support Mac OS X
@ Dec 04 2008, 22:25 (UTC+0)
From: gr00ve :
   SanDisk Cruzer Enterprise is the first secure USB flash drive to fully support Apple Mac OS X computers. It is designed to meet the unique USB security, compliance and manageability needs of today’s enterprises by imposing a hardware-based USB encryption solution that puts mandatory access control on all files as protection against theft or loss of the drive.

Continued...

read (0) write comment

Gartner's Top 10 disruptive datacenter technologies
@ Dec 04 2008, 22:22 (UTC+0)
From: gr00ve :
   A new computing fabric to replace today's blade servers and a "pod" approach to building datacenters are two of the most disruptive technologies that will affect the enterprise datacenter in the next few years, Gartner said at its annual datacenter conference Wednesday. Datacenters increasingly will be built in separate zones or pods, rather than as one monolithic structure, Gartner analyst Carl Claunch said in a presentation about the Top 10 disruptive technologies affecting the datacenter.

Continued...

read (0) write comment

Mozilla to pull antiphishing feature from Firefox 2.0 at Google's request
@ Dec 04 2008, 22:20 (UTC+0)
From: gr00ve :
   Mozilla Corp. will drop antiphishing protection from the final version of Firefox 2.0 at Google Inc.'s request when Mozilla updates the browser later this month, a company executive confirmed today.

Continued...

read (0) write comment

Criminals take control of CheckFree Web site
@ Dec 04 2008, 13:57 (UTC+0)
From: gr00ve :
   Online criminals took control of the Domain Name System (DNS) record for payment processor CheckFree and briefly redirected the site's visitors to a their own server. The site was redirected at around 12:30 a.m. Eastern Time on Tuesday after someone logged into CheckFree's Network Solutions account and changed the domain's DNS settings, said Susan Wade, a Network Solutions spokeswoman. "Somebody got hold of the customer's login information," she said. "I don’t know how they got access."

Continued...

read (0) write comment

Time for forced updates? Conficker botnet makes us wonder
@ Dec 04 2008, 13:53 (UTC+0)
From: gr00ve :
   The security industry is currently riding high on a string of successful malware-friendly ISP takedowns, but the rising specter of a new major botnet has driven spam levels back to previous levels before McColo was kicked offline. The new botnet is currently known by several names: Trend Micro calls it Downad.a, Microsoft uses Conficker.a, and Symantec labeled it Downadup. No matter what you call it, it's causing some problems, though various antimalware companies have held out hope that it can be contained before it grows to the size of Storm or Srizbi.

Continued...

read (0) write comment

Comcast usage monitor coming in January
@ Dec 04 2008, 03:07 (UTC+0)
From: byte69 :
   DSL Reports has gotten word that Comcast will soon be offering its Internet subscribers a bandwidth usage meter as early as the first week of January. With the new system users would presumably be able to see how much bandwidth they've used, akin to cellular service providers offering estimates to keep customers from going over their allotted limit. Such a tool for Internet bandwidth would let customers adjust their usage habits accordingly.

more....

read (0) write comment

Plug-N-Play Network Hacking
@ Articles -> Link     Dec 04 2008, 23:49 (UTC+0)
Universal Plug-N-Play (UPnP) is a protocol that allows various network devices to auto-configure themselves. One of the most common uses of this protocol is to allow devices or programs to open up ports on your home router in order to communicate properly with the outside world (Xbox, for example, does this). The UPnP protocol is built on top of pre-existing protocols and specifications, most notably, UDP, SSDP, SOAP and XML.

This article will address some of the security issues related to UPNP, briefly describe the inner workings of the protocol, and show how to identify and analyze UPNP devices on a network using open source tools. While we will be specifically focusing on IGDs (Internet Gateway Devices, aka, routers), it is important to remember that there are many other devices and systems that support UPNP as well, and they may be vulnerable to similar attacks.

Continued...

read comments (0) / write comment

views: 12   printer-friendly version

ISA Firewall Web Caching Capabilities
@ Articles -> Link     Dec 03 2008, 13:01 (UTC+0)
ISA can act as a firewall, as a combined firewall and Web caching server (the best “bang for the buck”), or as a dedicated Web caching server. You can deploy ISA as a forward caching server or a reverse caching server. The Web proxy filter is the mechanism that ISA uses to implement caching functionality.

Article covers the following:
- Introduction
- Using the Caching Feature
- ISA Firewall Cache Rules
- Cache Rules to Specify Content Types That Can Be Cached
- Using Cache Rules to Specify How Objects are Retrieved and Served from Cache
- The Content Download Feature
- Control Caching via HTTP Headers

Continued...

read comments (1) / write comment

views: 47   printer-friendly version

Browser Power Consumption
@ Articles -> Link     Dec 03 2008, 12:54 (UTC+0)
A study By Robert Hansen (RSnake) examines relationship between modern feature rich webpages and their effect on power consumption.

Preface: In the modern era of green energy and power conservation, it is worth looking at methods of conservation that are closer to the average consumer. In combining the areas of modern browser security and the power needs of "rich" or dynamic web pages, an interesting crossover appears, that shows the two concepts work hand in hand with computer power conservation. While this exercise was not a real scientific study, it provided enough evidence to point to clear areas of power consumption in every day web applications.

Continued...

read comments (2) / write comment

views: 46   printer-friendly version

(IN)SECURE MAG Issue 19, Dec 2008
@ Articles -> Link     Dec 02 2008, 00:11 (UTC+0)
(IN)SECURE MAG Issue 19, Dec 2008
is available!

* The future of AV: looking for the good while stopping the bad
* Eight holes in Windows login controls
* Extended validation and online security: EV SSL gets the green light
* Interview with Giles Hogben, an expert on identity and authentication technologies working at ENISA
* Web filtering in a Web 2.0 world
* RSA Conference Europe 2008
* The role of password management in compliance with the data protection act
* Securing data beyond PCI in a SOA environment: best practices for advanced data protection
* Three undocumented layers of the OSI model and their impact on security
* Interview with Rich Mogull, founder of Securosis

Continued...

read comments (1) / write comment

views: 107   printer-friendly version


the older posts:

even older posts...

Neworder File and Link Archive
Anonymity - How to stay hidden.
Archive Sites - Archives full of a broad range of information.
Books and Guides - The literature. Books, Guides, Papers, Tutorials and Ezines.
CGI/Web Security - Web based attacks.
Coding - Sorted by language.
Cracking - Literature about cracking and the programs you need.
Cryptography - Resources on encryption and decryption.
Culture - Literature about hackers and what they like to do.
E-Commerce and Internet Banking - Information related to E-Commerce and Internet banking.
E-Mail Security & Utilities - Literature and software.
Emulation - Various emulators for your games and applications.
Exploits and Vulnerabilities - For various operating systems.
Freedom of Speech and Rights - Sites that deal with sharing knowledge in speaking form.
General Computing - General information about computers.
Hacking Challenges - Educational hacking/sites specially made for hacking.
Hardware - Processors, motherboards, video cards... It's all in here.
Information Security Presentations - Links to Information Security Presentations. From gatherings such as BlackHat, Defcon, and others.
IRC - Internet Relay Chat texts, scripts, and clients.
Law - Links covering topics such as computer crime law and free speech.
Members' Sites - The web presence of fellow neworder boxters.
Miscellaneous - All other topics.
Networking - Links and information related to networking.
Open Source Operating systems. - Linux/BSD/Others.
Phreaking - Telephony hacking.
Security - Security in general, portals, news sites, directories, commercial.
Security Certification - Links to security certifications, and study help.
Shell Accounts - Shell accounts for learning Unix commands, etc.
Teams and Advisories - The scene, groups, own tools production, security research, etc.
Unix/Linux/BSD - Unix/Linux/BSD related information, articles, exploits, and tools.
Utilities - Tools and miscellaneous programs.
Virii - Sites dedicated to inform about viruses and trojans, and antiviral software.

suggest a link

Top of page

random article
Power Render 5.0 Trial
hxApr 4 2003

featured download

GFI LANguard Vulnerability Manager:
Scan for and remediate security vulnerabilities - Download free 30-day trial!
Download here


Audit your Web security with Acunetix SiteAudit Order Here


Event log monitoring and management of Windows event logs, W3C, Syslog and SNMP Traps. Download a free 30-day trial!
featured article
Pod slurping:
an easy technique of stealing data
read here
poll
What is the first protocol you used to administer a remote system?

 ssh
 telnet
 rsh
 Remote Desktop
 VNC
total votes: 33
read comments (0)
write comment

Poll archive
linking & backends
Information about how to link to NewOrder.

New Order news rss feed, a sms rss feed or a complete list.