The most trusted source for computer security training, certification and research.



Top 25 Papers

Last Updated October 30, 2009
An Overview of Hardware Security Modules
By: Jim Attridge
Category: Encryption & VPNs
Posted: January 14, 2002

OpenVPN and the SSL VPN Revolution
By: Charlie Hosner
Category: Encryption & VPNs
Posted: August 25, 2004

Windows Vista: First Steps
By: Johannes Ullrich
Category: Windows Issues
Posted: December 23, 2003

Best Practices in Data Protection: Encryption, Key Management and Tokenization
By: nuBridges, inc
Category: Application/Database Sec
Best Practices
Encryption & VPNs
Compliance
Posted: September 29, 2009

Security Concerns in Using Open Source Software for Enterprise Requirements
By: Sreenivasa Vadalasetty
Category: Security Awareness
Posted: January 11, 2004

Information Security Policy - A Development Guide for Large and Small Companies
By: Sorcha Diver
Category: Security Policy Issues
Posted: March 2, 2004

Harness the Power of SIEM
By: Dereck Haye
Category: Intrusion Detection
Logging Technology and Techniques
Posted: October 6, 2009

Simple Windows Batch Scripting for Intrusion Discovery
By: Tim Proffitt
Category: Auditing & Assessment
Incident Handling
Posted: September 29, 2009

Six Ways to Reduce PCI DSS Audit Scope by Tokenizing Cardholder data
By: nuBridges, inc
Category: Best Practices
eCommerce
Encryption & VPNs
Compliance
Posted: September 29, 2009

An Introduction to Information System Risk Management
By: Steve Elky
Category: Auditing & Assessment
Posted: June 6, 2006

Cisco Security Agent and Incident Handling
By: Greg Farnham
Category: Incident Handling
Posted: October 1, 2009

A Reverse Proxy Is A Proxy By Any Other Name
By: Art Stricek
Category: Web Servers
Posted: January 10, 2002

PCI DSS and Incident Handling: What is required before, during and after an incident
By: Christian J. Moldes
Category: Compliance
Posted: June 16, 2009

A Guide to Security Metrics
By: Shirley Payne
Category: Auditing & Assessment
Posted: June 26, 2006

WiFi with BackTrack
By: Antonio Merola
Category: Auditing & Assessment
Posted: December 24, 2007

Step by Step Installation of a Secure Linux Web, DNS and Mail Server
By: John Holbrook
Category: Linux Issues
Posted: April 8, 2004

Data Center Physical Security Checklist
By: Sean Heare
Category: Security Awareness
Posted: December 1, 2001

The Disaster Recovery Plan
By: Chad Bahan
Category: Disaster Recovery
Posted: August 13, 2003

SSL Man-in-the-Middle Attacks
By: Peter Burkholder
Category: Threats/Vulnerabilities
Posted: February 1, 2002

Detecting and Preventing Anonymous Proxy Usage
By: John Brozycki
Category: Intrusion Detection
Posted: November 6, 2008

Security Policy Roadmap - Process for Creating Security Policies
By: Chaiw Kee
Category: Security Policy Issues
Posted: October 2, 2001

DNS Spoofing by The Man In The Middle
By: Ian Green
Category: DNS Issues
Posted: May 5, 2005

Hacking: The Basics
By: Zachary Wilson
Category: Hackers
Posted: April 4, 2001

Easy Steps to Cisco Extended Access List
By: Nancy Navato
Category: Network Devices
Posted: July 5, 2001

Federal Computer Crime Laws
By: Maxim May
Category: Legal Issues
Posted: August 15, 2004


Contact us: (301) 654-SANS(7267)
Monday - Friday 9am-8pm EST/EDT