KeePass is a free/open-source password manager or safe to help you
manage your passwords in a secure way. Put all your passwords in one
database, which is locked with one master key or a key-disk. The
databases are encrypted using the best and most secure encryption
algorithms currently known (AES and Twofish).
Blog
-
Store Passwords in a Secure Password Safe
-
Is The Security+ Still Worth It?
I took the Security+ test a few weeks ago. I think the process of learning all of the security nuaces in preparation for the test is a really good start of begining security professionals and IT folks wanting to round out their resume. If you prepare for the test it is easy.. I don't think that it is a walkin' off the street type test but it is not that hard.How relevant is it? Just do as Michelle Rowton did and do a search for it on Monster or Dice.. compare those results to other certs that employers are looking for.
I was taking the Security+ to prepare for the CISSP. As I've been studying for the CISSP the Security+ seems to have been a drop in the ocean. While I was able to draw on my years of experience to pass the Security+ (and not study as much) the CISSP is spread so thin over so MANY domains that it requires much more dedication.
Comment from DIGG:
In my opinion the Security+ certification is over-rated and is no more than another logo and a cert on the wall. Several people probably take the test as a stepping stone to the CISSP, or they take it for the simple fact that it?s a cheap certification that they never have to renew.
-
My Top 10 Tips For Preparing and Passing the CISSP Exam
Compared with most other technical certification exams, the CISSP exam is quite long. Passing the test requires not only the prerequisite knowledge to answer the questions correctly, but the stamina and mental fortitude to get through the six-hour, 250-question paper-based exam.
CertCitie's Tony Bradley nails down his Top 10 tips to passing the CISSP exam. I've been doing most of them.
-
Using VNC & SSH
How to use VNC along with SSH to remotely and securely access your computer desktop by way of tunneling.
VNC is a huge vulnerability on a network without encryption. Particularly on medium to large networks with lots of users. I use it at home but don't see the need for encryption there.
-
Use Google To Find Passwords
Google hackers have been doing this for a while now. Here is a tutorial on finding passwords using google. This could be used to secure your own web server.
Security Professionals charged with protecting IT infrastrutures would do well to become the most aggressive hacker of their own networks. This would help them to proactively seek out new exploits on their network, webserver, or IS they protect.
-
Top 75 Security tools
Like the title says; Insecure.org's top seventy five security tools. All the usual suspects (Nmap, Nessus, Ethereal, Snort, etc.) plus some nice ones that never came up on my radar before. Though Yl33tMMV
Many of these tools can be found on the KNOPPIX STD live CD and WHAX/Whoppix. Great tools for network security assessments and/or pentests. I just wonder why there are no Google Hacker tools in there. -
Startup Aims To Overload Spammer Web Sites
A startup security firm is taking the fight to spammers by enlisting end users to create what's called a Do-Not-Intrude registry whose purpose is to make it too painful for junk mailers to operate.
This is MY kind of company! I really despise spam. My biggest problem is the Spam filth that is actual scams or malware that downloads to your computer. This is a bigger problem than people realize. Just look at that virus on those Micheal Jackson emails that nuked thousands of people.
-
GoogleOS with Screenshot!
Real or Fake?
Here is a story about GoogleOS and a screenshot! ooooo the pretty colors. -
WiFi Secruity Test
In just a few seconds, JiWire's free Wi-Fi Security Test gives you critical information about your Wi-Fi connection and whether or not it is vulnerable to wireless hackers and thieves.
-
Trojans attacks up 500% in the last few weeks
A company in San Diego called Websense is reporting a 400-500% increase in Trojan horse viruses and phishing attacks just within the last 3 weeks.