Alma Whitten and J. D. Tygar Usability of Security.
Definition :

Human factors are perhaps the greatest current barrier to effective computer security. Most security
mechanisms are simply too difficult and confusing for the average computer user to manage correctly.
Designing security software that is usable enough to be effective is a specialized problem, and user
interface design strategies that are appropriate for other types of software will not be sufficient to solve it.
By Alma Whitten and J. D. Tygar.



Case study on the spread and victims of an Internet worm.
Definition :

On July 19, 2001, more than 359,000 computers
connected to the Internet were infected with the Code-
Red (CRv2) worm in less than 14 hours. The cost of this
epidemic, including subsequent strains of Code-Red, is estimated
to be in excess of $2.6 billion.
By CAIDA, San Diego Supercomputer Center,
University of California
.


LURHQ SQL "Slammer" Case Study
Definition :

At 12:30am on Jan. 25, 2003, LURHQ Corporation's Secure Operations Center detected massive scanning for UDP Port
1434 across its customer base. LURHQ's Intrusion Analysis team determined the cause of this unusual traffic to be the
propagation of a new Internet Worm known as W32.SQLExp or "SQL Slammer."
By LURHQ - Managed Security Solutions -


Windows of Vulnerability: A Case Study Analysis
Definition :

The authors propose a life-cycle model for system vulnerabilities, then apply it to three case studies to reveal how systems often remain vulnerable long after security fixes are available.
By William A.Arbaugh & William L. Fithen John McHugh


IGMP Flood A study of DoS attacks using IGMP
Definition :

mcast protocols are intended to be open
- security is hard to attain
study DoS attacks using IGMP
- against routers and switches
- against the network
By
Josep M. Blanquer and Robert C. Chalmers
CS290I Computer Security.




MyDoom remote desinfection:

Our team has analysed the Mydoom backdoor properties, and uses them to remotely desinfect computers.


2-iSi :


A new version of the system penetration tool combining the latest techniques of computer and IT system hacking. Including rootkit/ multi-IP/crypt function and many others features.


Rootkit Win32 :

Mix of combined exploits so as to maximize chances of remaining unnoticed while penetrating a network or a system.


Shatter Attack :

New generation of attack that allow a user to elevate his or her privileges and gain control of a system.