cybersoft main logoComputer Security For Your World - For Unix, Linux, and Mac OS X Anti-virus and more!Earth

CyberSoft Presentations

Selecting and Using UNIX-TCP/IP Audit and Security Tools

Table of Contents

TCP/IP and UNIX Information Warfare

The Internet is a Policy Problem

Firewalls

TCP/IP

Directed Attacks From the Internet

NIS/NFS

R-Commands - Email Spoofing

TCP/IP

COPS, CRACK, ISS, SATAN

Publications

Unix Immunity

Attack Self Preservation

Trojan Horses and Bombs

A Favorite Payload

Master Payloads

Locating Trojans and Time Bombs

Common Protection Schemes

Documented Attacks

Infection of PCs from Unix server

Transplatform Viruses

CPU and BIOS Chips

Traditional Categories of Protection

Multiple Permission Sets

Inspection

Protection Choices

CIT

Non Traditional Categories

Currently Available Tools

What the Future Holds

Attack Scenario/Final Words

The cost of security

  • The cost of security should be balanced against the cost of what you are trying to protect AND the damage caused by not protecting it.
  • Is it justified to spend $2000 in security protecting $500 in equipment? Yes, if the cost of lost labor, customer satisfaction or other indirect costs exceeds the $2000 cost of security
  • Customer satisfaction can be enhanced if they know that you have good security. It pleases customers to know that their competitors won't be tipped off to their activities by doing business with you.

Notes:

Bullet 2 - 100 engineers sitting around for 8 hours waiting for the computer to be fixed.

	 100	Engineers
	x$60	per hour
	x  8	Hours per day

------------------------------------------------------------- $48,000 wasted i8n one day because of a computer failure

Previous | Next

Back to Presentations

Back To White Papers