New User, Welcome!     Login

Next Page >>

Information Technology

LayerOne 2008 - CFP Released

LayerOne 2008 Information Technology Conference
Call for Papers

May 17 & 18, 2008
Los Angeles, California (Pasadena Hilton)
http://layerone.info/

The fifth annual LayerOne information technology conference is now
accepting submissions for topic and speaker selection. As always, we
are interested seeing a broad range of pertinent topics, and encourage

RE: defining 0day

2. A 0-day VULNERABILITY: no such thing. All vulnerabilities are either Unpatched or Patched. They start out in Unpatched status the moment some programmer creates them. They remain Unpatched until they are Patched.

-------------------------------------
Marvin Simkin
Manager of Information Technology
School of Earth and Space Exploration
Arizona State University
http://simkin.asu.edu/



Calcium web calendar: Reflected XSS

About the author:
Marvin Simkin was one of several security researchers to independently discover "reflected" (type 1) XSS and participate in responsible disclosure in 1999. At the time of discovery, available statistics suggested that at least 95% of all web sites on the Internet were vulnerable.

-------------------------------------
Marvin Simkin
Manager of Information Technology
School of Earth and Space Exploration
Arizona State University
http://simkin.asu.edu/



NSFOCUS SA2011-01 : Microsoft Internet Explorer Link Property Processing Memory Corruption Vulnerability

(c) 2011 NSFOCUS.
-- 
Regards,

NSFOCUS Security Team <security@nsfocus.com>
NSFOCUS Information Technology Co.,Ltd. (http://www.nsfocus.com)

PGP Key fingerprint = F8F2 F5D1 EF74 E08C 02FE 1B90 D7BF 7877 C6A6 F6DA



NSFOCUS SA2009-02 : IBM DB2 JDBC Applet Server Remote DoS Vulnerability

-- 
Regards,

NSFOCUS Security Team <security@nsfocus.com>
NSFOCUS Information Technology Co.,Ltd. (http://www.nsfocus.com)

PGP Key fingerprint = F8F2 F5D1 EF74 E08C 02FE 1B90 D7BF 7877 C6A6 F6DA



Call for Papers: The 7th International Conference for Internet Technology and Secured Transactions (ICITST-2012)

Computer Chapter.
The ICITST is an international refereed conference dedicated to the 
advancement of the
theory and practical implementation of secured Internet transactions and 
to fostering
discussions on information technology evolution. The ICITST aims to 
provide a highly
professional and comparative academic research forum that promotes 
collaborative
excellence between academia and industry. The objectives of the ICITST 
are to bridge

Re: php create_function commond injection vulnerability

> mistake?
>

-----------------------------------------
Mark E. Napier
Director of Information Technology
School of Library and Information Science
Indiana University



(TAD-2011-001) Vulnerability in HTC Peep: Twitter Credentials Disclosure

[1] "The Seven Deadly Sins of Security Vulnerability Reporting". Raul Siles. Taddong. August 15, 2010.
http://blog.taddong.com/2010/08/seven-deadly-sins-of-security.html

-- About Taddong:

Taddong (www.taddong.com) is a company established in Spain in 2010 with the purpose of improving customer's information security, by discovering and eliminating or mitigating the real risks that threaten their networking and information technology infrastructures. To achieve this goal, Taddong's portfolio includes specialized information security services, requiring an in-depth technical knowledge and broad understanding of the information technology market, as well as training services, focused on providing customers with auto-defense skills. Taddong remains at the forefront of the security market through continuous research and education activities.

-- Disclaimer:

The contents of this security advisory are copyright (c) 2011 Taddong S.L., and may be distributed freely provided that no fee is charged for this distribution and proper credit is given.


NSFOCUS SA2009-03 : Windows Kernel Malformed PE File Remote DoS Vulnerability

-- 
Regards,

NSFOCUS Security Team <security@nsfocus.com>
NSFOCUS Information Technology Co.,Ltd. (http://www.nsfocus.com)

PGP Key fingerprint = F8F2 F5D1 EF74 E08C 02FE 1B90 D7BF 7877 C6A6 F6DA



NSFOCUS SA2009-01 : UiTV UiPlayer UiCheck Component Stack Buffer Overflow Vulnerability

-- 
Regards,

NSFOCUS Security Team <security@nsfocus.com>
NSFOCUS Information Technology Co.,Ltd. (http://www.nsfocus.com)

PGP Key fingerprint = F8F2 F5D1 EF74 E08C 02FE 1B90 D7BF 7877 C6A6 F6DA



Sun Solaris 10 filesystem rm(1),find(1),etc, Denial-of-service

- --- 0.Description ---
Solaris is a Unix operating system introduced by Sun Microsystems in 1992 as the successor to SunOS.

Sun Microsystems, Inc. is a wholly owned subsidiary of Oracle Corporation, selling computers, computer components, computer software, and information technology services. Sun was founded on February 24, 1982. The company was headquartered in Santa Clara, California (part of Silicon Valley), on the former west campus of the Agnews Developmental Center.

In computing, ZFS is a combined file system and logical volume manager designed by Sun Microsystems. The features of ZFS include support for high storage capacities, integration of the concepts of filesystem and volume management, snapshots and copy-on-write  clones, continuous integrity checking and automatic repair, RAID-Z and native NFSv4 ACLs.


- --- 1. Sun Solaris 10 filesystem rm(1),find(1),etc, Denial-of-service  ---

IMF 2008 - 2nd Call for Papers

                     mailto:2008@imf-conference.org

------------------------------------------------------------------------


Information technology has become crucial to almost every part of
society. IT infrastructures have become critical in the world-wide
economy, the financial sector the health sector, the government's
administration, the military, and the educational sector.

Although security usually gets involved in the design process of IT

Call for Papers: The 6th International Conference for Internet Technology and Secured Transactions (ICITST-2011)!

The 6th International Conference for Internet Technology and Secured
Transactions (ICITST-2011) is Technical Co-sponsored by IEEE UAE
Computer Chapter. The ICITST is an international refereed conference
dedicated to the advancement of the theory and practical implementation
of secured Internet transactions and to fostering discussions on information
technology evolution. The ICITST aims to provide a highly professional
and comparative academic research forum that promotes collaborative
excellence between academia and industry.
The topics in ICITST-2011 include but are not confined to the
following areas:


SQL-Ledger =?utf-8?Q?=E2=80=93_severa?= =?utf-8?Q?l?= vulnerabilities

Date released: 21.12.2009
Date reported: 28.07.2009
$Revision: 1.1 $

by Alexander Klink
   Fraunhofer Institute for Secure Information Technology
   alexander.klink@sit.fraunhofer.de
   https://www.klink.name/security/aklink-sa-2009-001-sqledger-several-issues.txt
   http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3580
   http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3581
   http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2009-3582

NSFOCUS SA2007-02 : Cisco Security Agent Remote Buffer Overflow Vulnerability

ADVISORY IS NOT MODIFIED IN ANY WAY.

Copyright 1999-2007 NSFOCUS. All Rights Reserved. Terms of use.

NSFocus Security Team <security@nsfocus.com>
NSFOCUS INFORMATION TECHNOLOGY CO.,LTD
(http://www.nsfocus.com)



RE: computer crime statistics

>
> --
> Michael McDonnell, GCIA
> Network Security Analyst
> University of Alberta Libraries
> Information Technology Services
> michael.mcdonnell@ualberta.ca
>  
>   
>> -----Original Message-----
>> From: Choon Ming [mailto:choonming2002@gmail.com]

NSFOCUS SA2007-01 : Microsoft IE5 CSS Parsing Memory Corruption Vulnerability

Copyright 1999-2007 NSFOCUS. All Rights Reserved. Terms of use.


NSFocus Security Team <security@nsfocus.com>
NSFOCUS INFORMATION TECHNOLOGY CO.,LTD
(http://www.nsfocus.com)



2011 Rocky Mountain Information Security Conference Call for Papers

If your presentation is selected for inclusion in the conference, you will be informed in late February. Submitted papers will also be considered for the PreConference Workshops on Thursday, May 12th.  Those selected to present will receive a complimentary registration for the conference.

Guidelines for Submission

RMISC is looking for presentations covering a variety of current and future Information Technology Security, Auditing, Compliance, Privacy, and Cloud Computing topics. Presentations should be geared toward a Management, Technical, Auditing, Compliance, or IT Governance audience. Based on feedback from conference attendees, presentations should be in-depth and focused on a specific issue or technology. Please try to stay away from overviews or summaries. Hands-on demos and case studies with actionable outcomes are encouraged. Participants want to take away skills and information that they can use.

Presentation lengths will be in 60 or 90 minute blocks. If warranted, a presentation may be given two 60-minute blocks.  Thursday's sessions are approximately 4 hours.  Please plan the content of your presentations accordingly.  
 
For a partial list of security and auditing subjects, click here; however, do not feel obligated to choose a topic from this list in which to categorize your paper. 


IMF 2007 - Call for Participation

                      mailto:2007@imf-conference.org 

                  
------------------------------------------------------------------------ 

Information technology has become crucial to almost every part of
society.  IT infrastructures have become critical in the world-wide
economy, the financial sector, the health sector, the government's
administration, the military, and the educational sector.

Due to its importance the disruption or loss of IT capabilities results

Announcement: ClubHACK Magazine Issue 15-April 2011 released

In April issue we have the following articles:-

Tech Gyan - Mozilla Firefox Internals & Attack Strategies
Tool Gyan - FireCAT
Mom's Guide - Being Invisible on the Internet
Legal Gyan - The Information Technology Rules, 2011
Command Line Gyan - Configuring Apache SSL
Matriux Vibhag - Introduction Part 2
Poster of the month - Happy and Safe Surfing.

Thanks,

IMF 2008 - Call for Papers

                     mailto:2008@imf-conference.org

------------------------------------------------------------------------


Information technology has become crucial to almost every part of
society. IT infrastructures have become critical in the world-wide
economy, the financial sector the health sector, the government's
administration, the military, and the educational sector.

Although security usually gets involved in the design process of IT

PlumberCon 10 - Call for Papers

It will combine the knowledge of experienced security speakers,  
hackers, and information warriors with the fun of a small but 1337  
conference at one of Vienna's most comfy & snugly meeting locations:  
the WerkzeugH. Its main goal is to help attendees understand the  
current state of art in information technology and security, and  
showcase projects evolved from the hackerspace movement.


This year's tagline: Make A Good Hack


RE: computer crime statistics

>
> --
> Michael McDonnell, GCIA
> Network Security Analyst
> University of Alberta Libraries
> Information Technology Services
> michael.mcdonnell@ualberta.ca
>  
>   
>> -----Original Message-----
>> From: Choon Ming [mailto:choonming2002@gmail.com]

B-Sides Vienna | NinjaCon 11 Call For Participation

information warfare and digital art.

It will combine the knowledge of experienced security speakers, hackers,
and information warriors with the fun of a small but 1337 conference.
Its main goal therefore is to help attendees understand the current
state of art in information technology and security, and showcase
projects evolved from the hackerspace movement. The official event
language is English.

After the last years' NinjaCon taglines - A Series of Tubes, and Make a
Good Hack - B-Sides Vienna | NinjaCon 11 will take our approach towards

IBM OmniFind - several vulnerabilities

Date released: 11/2010
Date reported: 04/2009

by Fatih Kilic
    Fraunhofer Institute for Secure Information Technology
    fatih.kilic@sit.fraunhofer.de
    http://security.fatihkilic.de/advisory/fkilic-sa-2010-ibm-omnifind.txt

    http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3890
    http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2010-3891

Re[2]: [Full-disclosure] The Death of Defence in Depth ? - An invitation to Hack.lu

The talk is about reality, not an RFC or CISSP Definition.

FYI, while certainly not a reference, here is what Wikipedia has to say:
"Defense in Depth is an Information Assurance (IA) strategy where
multiple layers of defense are placed through out an Information
Technology (IT) system and addresses personnel, technology and
operations for the duration of the system's lifecycle."
http://en.wikipedia.org/wiki/Defense_in_Depth_(computing)

FFL> To the contrary. The paradigm describes an
FFL> approach where you assume that invidual (even multiple) elements of your

RE: computer crime statistics

--
Michael McDonnell, GCIA
Network Security Analyst
University of Alberta Libraries
Information Technology Services
michael.mcdonnell@ualberta.ca
 
> -----Original Message-----
> From: Choon Ming [mailto:choonming2002@gmail.com]
> Sent: Sunday, July 26, 2009 8:11 AM

IMF 2008 - Deadline Extension (2nd try)

                            JUNE  22, 2007

------------------------------------------------------------------------


Information technology has become crucial to almost every part of
society. IT infrastructures have become critical in the world-wide
economy, the financial sector the health sector, the government's
administration, the military, and the educational sector.

Although security usually gets involved in the design process of IT

IMF 2007 - 2nd Call for Participation

                      mailto:2007@imf-conference.org 

                  
------------------------------------------------------------------------ 

Information technology has become crucial to almost every part of
society.  IT infrastructures have become critical in the world-wide
economy, the financial sector, the health sector, the government's
administration, the military, and the educational sector.

Due to its importance the disruption or loss of IT capabilities results

IMF 2008 - Call for Participation

                     mailto:2008@imf-conference.org

------------------------------------------------------------------------


Information technology has become crucial to almost every part of
society. IT infrastructures have become critical in the world-wide
economy, the financial sector the health sector, the government's
administration, the military, and the educational sector.

Although security usually gets involved in the design process of IT

Next Page>>

Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!