2 msgspeaking about ssl problems...
3 msgproblems with libssl security update
3 msgIs there a known rpc.statd buffer overflow?
2 msgCurrent-stable trouble getting through http proxy
3 msgpackage name case in DSAs ?
3 msgLooking for PAM module
1 msgRe: [SECURITY] [DSA 888-1] New OpenSSL packages...
1 msgclamav 0.84-2.sarge.5 in stable-proposed-update...
1 msgBug#337624: All local users can view the webcal...
1 msgRe: [SECURITY] [DSA 883-1] New thttpd packages ...
2 msgAntispam
1 msgRe: [SECURITY] [DSA 882-1] New OpenSSL packages...
1 msgRe: [SECURITY] [DSA 881-1] New OpenSSL 0.9.6 pa...
4 msgeth interface with no IP
1 msgvolunteer computer-geek to help us for FREE? pl...
6 msgclamav and magic byte
1 msgPatrina Graham?
4 msgRe: whitehat
4 msgRe: [SECURITY] [DSA 879-1] New gallery packages...

whitehat to test a security config
\ alex black (1 Nov 2005)
. \ Alvin Oga (1 Nov 2005)
. . \ Harry (1 Nov 2005)
. . . \ Alvin Oga (1 Nov 2005)
. . . \ Rob Burgers (2 Nov 2005)
. \ Bernd Eckenfels (2 Nov 2005)
. . \ Javier Fernández-Sanguino Peña (4 Nov 2005)
. . . \ Bernd Eckenfels (4 Nov 2005)

Subject:Re: whitehat to test a security config
Group:Debian-security
From:Bernd Eckenfels
Date:4 Nov 2005


 
On Fri, Nov 04, 2005 at 01:19:36AM +0100, Javier Fernández-Sanguino Peña wrote:
> But also somewhat wrong: a black-box test is much cheaper than a full
> security audit of a system.

Well, I guess you mean "port scan". A Tiger Team who helps your security is
most often quite expensive cause it takes a lot of attacks - including
on-site social engeneering.

To run nessus you do not need to spend any money, thats right.

Gruss
Bernd


--
To UNSUBSCRIBE, email to debian-security-REQUEST
with a subject of "unsubscribe". Trouble? Contact listmaster



© 2004-2008 readlist.com