当前位置:首页 » 软件开发
开发技术指南» 文章正文
    引言: security plus notessecurity+ 笔记C
 

 

 ·firefox一个漏洞价值500美元    »显示摘要«
    摘要: mozilla 开源基金会给一位安全问题研究员支付了总共2500美元,用于奖励他在firefox 浏览器漏洞发现方面所作的贡献。 获奖者michael krax 来自德国,他总共发现了5个漏洞,mozilla 基金会分别对每个漏洞支付500美元的报酬。原文链接:firefox一个漏洞价值500美元 mozilla 开源基金会给一位安全问题研究员支付了总共2500美元,用于奖励他在firefox ......
 ·connection tracking    »显示摘要«
    摘要:在iptables里,包是和被跟踪连接的四种不同状态有关的。它们是new,established,related和invalid。connection trackingif you wish to read some more general information about iptables before returning, please click here. what is connec......


security + 笔记
security plus notes

security+ 笔记

1. day zero attacks: a day zero attacks occurs when an attacker discovers and exploits a previously unknown flaw. 【程序编程相关:入侵检测系统FAQ(全)

chap 1 【推荐阅读:Windows命令使用大全(贡献给CU的

integrity完整真实: ensures that information is correct and no unauthorized person or malicious software program can or has altered that data. 【扩展信息:AS/400系统安全

2. information security protects:

confidentially信任: ensures that only authorized parties can view information.

availability: restrict access attempts by unauthorized users, it must still make the data available to allow authorized users immediate access.

真对国家安全性的: cyberterrorism

3. asset: something that has a value---- employee database

threat: an event or object that might defeat the security measures in place and results in a loss ---- steal data

threat agent: a person or thing that has the power to carry out a threat ---- attacker, virus, tornado

vulnerability: weakness that allows a threat agent to bypass security ---- software defect

exploiting: taking advantage of the vulnerability ---- send virus to unprotected email server

risk: the likehood that sth will be stolen ---- educate users

chap 2

攻击者种类

1 hackers: except for the normal way of understanding, theres also the ethical hackers, which who claims their motive is to improve security, consider it their responsiblity to seek our security holes so they can be fixed.

2 crackers: who violates system security with malicious intent.(harm and break)


...   下一页
 ·网络命令之:net命令<转>    »显示摘要«
    摘要:许多 windows nt 网络命令以 net 开始。这些 net 命令有一些公共属性: 通过键入 net /? 可查阅所有可用的 net 命令。 通过键入 net help 命令可在命令行中获得 net 命令的语法帮助。例如,要得到 net accounts 命令的帮助,请键入 net help accounts。 所有 net 命令接受选项 / yes 和 /no(可缩写为 / y 和 /n ......
» 本期热门文章:

©2000-2007 All Rights Reserved. 最佳浏览:1024X768 MSIE