BACK to Blog

Security links [30.1.2012]

(My 10+ years worth of security bookmarks, actually. New links added frequently, hardly ever cleaned. Lots of outdated and broken links).


News & portals
Magazines & Newsletters
Terms
Papers, presentations

Online books

Discussions, Mailing lists
Known Bugs, Warnings
Advisories
Guidelines
Standards
Laws

Awareness

Risk Management

Security Management
Identity, Authentication and Access Management
Disaster Recovery, Business Continuity
Organizations

Conferences

Surveys, stats
Software security
Intrusion Detection Systems

Penetration testing
Public Key Infrastructure
LDAP, Directories
Virtual Private Networks
Firewalls

Crypto

Biometrics
Unix
Windows
Mobile & Wireless 

Ethics
Privacy
Social Media
Cloud computing
Incidents, exploits, hacks, vulnerabilities 
Hackers, crackers, script-kiddies
Infowar, Hactivism
Financial & banking security
"Traditional Security"
People
Fun
Blogs & Podcasts


   What's new (most recent first)

    1. Cyber-security: The vexed question of global rules
    2. Preparing for High-impact, Low-probability Events 
    3. Chronology of Data Breaches Security Breaches 2005 - Present
    4. Security Organizer & Reporter Exchange
    5. Global terrorism database
    6. Engineering Security (book draft)
    7. HTML5 Security Cheatsheet
    8. The Hacker News
    9. Shodan - expose online devices
    10. Bombardier - Information Security Officer Extraordinaire
    11. Hacking and security documents collection
    12. HTML5 web security
    13. ENISA Economics of Security: Facing the Challenges
    14. ENISA Smartphone Secure Development Guidelines
    15. A Look at HTML5 Attack Scenarios
    16. List of Free Security Products
    17. The Most Vulnerable Smartphones of 2011
    18. OpenIOC: An Open Framework for Sharing Intelligence
    19. Ernst & Young’s Global Information Security Survey 2011
    20. Software Security in Agile Product Management
    21. SecurityTube
    22. Best Practices in Data Protection
    23. Binary Risk Assessment
    24. VIP tietoturvasarjakuvat (security cartoons in Finnish)
    25. Thesis: Why do employees violate IS security policies?
    26. Thesis: Improving employees’ information systems (IS) security behavior 
    27. 68 Great Ideas for Running a Security Program
    28. OSSAMS: Security Testing Automation and Reporting framework
    29. Pushing the boundary: Risk management beyond insurance
    30. OWASP Web Service Security Cheat Sheet

News & Portals

Magazines & Newsletters

Terms, FAQs

Papers, presentations

Online books, guides

Discussions, Mailing-lists

Known Bugs, Warnings

Advisories

Guidelines

Standards and "standards"

    Common Criteria / ISO 15408

    BS7799 / ISO17799 / ISO 27000

PCI

Laws, directives, etc.

    General

    Finnish Laws

    EC

Awareness

Risk Management

    Methods  & tools

Security Management

    Metrics     Psychology

Identity, Authentication and Access Management

Disaster Recovery, Business Continuity

Organizations

    CERT

Conferences, seminars

Surveys, stats

Software security

    Databases

    Design 

    Programming

    Examples, known problems

  Testing

    Tools -free

    Tool - commercial

    Web Services, XML security

    Agile, Scrum

    Intrusion Detection Systems

    General

    Articles, papers, presentations

    Commercial tools

    Free tools

    Trojans, vulnerabilities, port numbers

    Analysis

    Snort

    Snort-based commercial products

     Incident handling & forensics

Penetration testing

    General    

    Commercial tools

    Free tools   

Public Key Infrastructure

    General

    Articles, papers, presentations

    Finnish Electronic Identity (fineid)

    Tools

LDAP, Directories

    General

    Articles & presentations

    Free tools

Virtual Private Networks

Firewalls

Crypto

    General

    IPSEC

    SSL/TLS

    Email

    Cryptanalysis

Biometrics

Unix

Windows

Mobile & Wireless

Ethics

Privacy

    Spam  

    Phishing

    Are you being monitored?

Social media
Cloud Computing

Incidents, exploits, hacks, vulnerabilities

Hackers, crackers, script-kiddies,...

Infowar, Hactivism, Network Centric Warfare

Financial & banking security

Organizations
Guidelines
Studies
Online banking
Awareness

Traditional Security

People

Fun

    Videos, hack-tv, clips

    Blogs & Podcasts

Podcasts