[Full-Disclosure] Security Documentation

From: Hardy, Nigel (full-disclosure@lists.netsys.com)
Date: 08/13/02


From: full-disclosure@lists.netsys.com (Hardy, Nigel)
Date: Tue, 13 Aug 2002 16:06:12 +0100

This message is in MIME format. Since your mail reader does not understand
this format, some or all of this message may not be legible.

------_=_NextPart_001_01C242DA.F6732440
Content-Type: text/plain

The NSA recently released a load of documentation on best practice etc which
can be found here http://nsa1.www.conxion.com./
<http://nsa1.www.conxion.com./> , this may be of some help
cheers
Nigel

-----Original Message-----
From: Monima Abrams [mailto:esecurityspecialist@hotmail.com]
Sent: 13 August 2002 15:48
To: full-disclosure@lists.netsys.com
Subject: [Full-Disclosure] Security Documentation

Hello all,

Would anyone know where I can find documentation regarding security
standards and best practices. I am looking for industry standards for ALL
types of security. From Unix to MS and any/all applications in between. If
anyone can help, please direct me to the right place.

Questions are welcome.

Thanks in advance for your time,

Moe

  _____

Join the world's largest e-mail service with MSN Hotmail. Click
<http://g.msn.com/1HM1ENUS/c157??PI=44364> Here
_______________________________________________ Full-Disclosure - We believe
in it. Charter: http://lists.netsys.com/full-disclosure-charter.html

------_=_NextPart_001_01C242DA.F6732440
Content-Type: text/html
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD>
<META HTTP-EQUIV=3D"Content-Type" CONTENT=3D"text/html; =
charset=3DUS-ASCII">

<META content=3D"MSHTML 6.00.2600.0" name=3DGENERATOR></HEAD>
<BODY>
<DIV><SPAN class=3D474450815-13082002><FONT color=3D#0000ff =
size=3D2>The NSA recently=20
released a load of documentation on best practice etc which can be =
found=20
here&nbsp; <A=20
href=3D"http://nsa1.www.conxion.com./">http://nsa1.www.conxion.com./>=
&nbsp; ,=20
this may be of some help</FONT></SPAN></DIV>
<DIV><SPAN class=3D474450815-13082002><FONT color=3D#0000ff=20
size=3D2>cheers</FONT></SPAN></DIV>
<DIV><SPAN class=3D474450815-13082002><FONT color=3D#0000ff=20
size=3D2>Nigel</FONT></SPAN></DIV>
<BLOCKQUOTE>
  <DIV class=3DOutlookMessageHeader dir=3Dltr align=3Dleft><FONT =
face=3DTahoma=20
  size=3D2>-----Original Message-----<BR><B>From:</B> Monima Abrams=20
  [mailto:
esecurityspecialist@hotmail.com]<BR><B>Sent:</B> 13 August =
2002=20
  15:48<BR><B>To:</B> =
full-disclosure@lists.netsys.com<BR><B>Subject:</B>=20
  [Full-Disclosure] Security Documentation<BR><BR></FONT></DIV>
  <DIV>
  <DIV>
  <P></P>
  <P class=3DMsoNormal style=3D"BACKGROUND: white"><SPAN=20
  style=3D"FONT-SIZE: 10pt; FONT-FAMILY: Arial">Hello all,</SPAN></P>
  <P class=3DMsoNormal style=3D"BACKGROUND: white"><SPAN=20
  style=3D"FONT-SIZE: 10pt; FONT-FAMILY: Arial">Would anyone know where =
I can find=20
  documentation regarding security standards and best practices.&nbsp; =
I am=20
  looking for industry standards for ALL types of security.&nbsp; From =
Unix to=20
  MS and&nbsp;any/all applications in between.&nbsp; If anyone can =
help, please=20
  direct me to the right place.&nbsp; </SPAN></P>
  <P class=3DMsoNormal style=3D"BACKGROUND: white"><SPAN=20
  style=3D"FONT-SIZE: 10pt; FONT-FAMILY: Arial">Questions are =
welcome.</SPAN></P>
  <P class=3DMsoNormal style=3D"BACKGROUND: white"><SPAN=20
  style=3D"FONT-SIZE: 10pt; FONT-FAMILY: Arial">Thanks in advance for =
your=20
  time,</SPAN></P>
  <P><SPAN=20
  style=3D"FONT-SIZE: 10pt; FONT-FAMILY: Arial; =
mso-fareast-font-family: 'Times New Roman'; mso-ansi-language: EN-US; =
mso-fareast-language: EN-US; mso-bidi-language: =
AR-SA">Moe</SPAN><BR><BR></P></DIV></DIV><BR=20
  clear=3Dall>
  <HR>
  Join the world's largest e-mail service with MSN Hotmail. <A=20
  href=3D"http://g.msn.com/1HM1ENUS/c157??PI=3D44364">Click=20
  Here</A><BR>_______________________________________________ =
Full-Disclosure -=20
  We believe in it. Charter:=20
http://lists.netsys.com/full-disclosure-charter.html></BODY>=
</HTML>

------_=_NextPart_001_01C242DA.F6732440--



Relevant Pages

  • Re: Security vs. Simplicity
    ... We can cover most of the vulnerabilities, ... Read a security documentation on section maintenance; ... argument about complexity impacting security. ...
    (Security-Basics)
  • Re: Hacked via Microsoft Servers!
    ... There is no way to script the policy settings in local of group ... Security Templates, ... Microsoft MVP ... > documentation that was not accurate from elsewhere I attempted to find ...
    (microsoft.public.windows.group_policy)
  • Re: The Schneider Scam
    ... You can't fail somebody for driving, ... him the practice time, or you don't allow him to complete the course. ... I don't know about a dumbell, since I asked you to e-mail me documentation. ... First of all Schneider training isn't free, ...
    (misc.transport.trucking)
  • Re: Privilege-escalation attacks on NT-based Windows are unfixable
    ... >>>From the Orange Book documentation on C2 security ... >> work as claimed in the system documentation. ... >>developer made a call in his program that turned all privileges off. ... incoming windows messages. ...
    (comp.os.ms-windows.nt.admin.security)
  • Re: How much do you disclose to customers?
    ... an admin came in and informed him that the "scanning the security guys were ... Our "CYA" was the manager in that case. ... We had detailed documentation and logs of our activities proving ...
    (Pen-Test)