Section: .. / linux / security /
| /// File Name: |
lomac-v1.1.0.tar.gz |
Description:
|
LOMAC is a security enhancement for Linux that uses Low Water-Mark Mandatory Access Control to protect the integrity of processes and data from viruses, Trojan horses, malicious remote users, and compromised root daemons. LOMAC is implemented as a loadable kernel module - no kernel recompilations or changes to existing applications are required. Although not all the planned features are currently implemented, it presently provides sufficient protection to thwart script-kiddies, and is stable enough for everyday use. Whitepaper available here. Manual available here.
| | Homepage: | http://www.pgp.com/research/nailabs/secure-execution/lomac.asp | | Changes: | Added mediation of directory modification operations, improving protection. | | File Size: | 114458 | | Last Modified: | May 11 20:00:13 2001 |
| MD5 Checksum: | 84d56b8af44184a4e7a5616c42c4b842 |
|
| /// File Name: |
lomac-v1.1.1.tar.gz |
Description:
|
LOMAC is a dynamically-loadable security module for Free UNIX kernels that uses Low Water-Mark Mandatory Access Control (MAC) to protect the integrity of processes and data from viruses, Trojan horses, malicious remote users, and compromised network server daemons. The LOMAC loadable kernel module can be used to harden Linux systems without any changes to existing kernels, applications, or configuration files. Due to its simplicity, LOMAC itself requires no configuration, regardless of the users and applications present on the system. Whitepapers available here and here.. Manual available here.
| | Homepage: | http://www.pgp.com/research/nailabs/secure-execution/lomac.asp | | Changes: | Capability and protection improvements. Changelog available | | File Size: | 156911 | | Last Modified: | Jul 17 18:05:34 2001 |
| MD5 Checksum: | 803f7faeb797ea4816478c29a335107d |
|
| /// File Name: |
lomac-v1.1.2.tar.gz |
Description:
|
LOMAC is a dynamically-loadable security module for Free UNIX kernels that uses Low Water-Mark Mandatory Access Control (MAC) to protect the integrity of processes and data from viruses, Trojan horses, malicious remote users, and compromised network server daemons. The LOMAC loadable kernel module can be used to harden Linux systems without any changes to existing kernels, applications, or configuration files. Due to its simplicity, LOMAC itself requires no configuration, regardless of the users and applications present on the system.
| | Author: | Tim Fraser | | Homepage: | http://alum.wpi.edu/~tfraser/Software/LOMAC/index.html | | Changes: | Please see changelog. | | File Size: | 107978 | | Last Modified: | Apr 23 00:12:08 2007 |
| MD5 Checksum: | e40c49b94b67238e60dae49f95706557 |
|
| /// File Name: |
lsat-0.1.6.tgz |
Description:
|
Linux Security Auditing Tool (LSAT) is a post install security auditing tool for Red Hat. It is modular in design, so new features can be added quickly. It checks inetd entries and scans for unneeded RPM packages. It is being expanded to work with Linux distributions other than Red Hat, and checks for kernel versions.
| | Homepage: | http://www.dimlight.org/~number9/lsat/ | | Changes: | checkinetd module now checks hosts.allow and hosts.deny files. Lots of documentation has been added to the main file and modules. A changelog has been added. | | File Size: | 10693 | | Last Modified: | Apr 6 03:10:01 2002 |
| MD5 Checksum: | ac439a1b22d6463531ae229b1afc6d55 |
|
| /// File Name: |
lsat-0.5.2.tgz |
Description:
|
Linux Security Auditing Tool (LSAT) is a post install security auditing tool. It is modular in design, so new features can be added quickly. It checks inetd entries and looks for unneeded RPM packages. It is being expanded to work with Linux distributions other than Red Hat, and checks for kernel versions.
| | Homepage: | http://www.dimlight.org/~number9/lsat/ | | Changes: | Now runs shellcode, reports error and keeps going if any module fails, and documentation updates. | | File Size: | 41544 | | Last Modified: | May 5 02:05:33 2002 |
| MD5 Checksum: | b6be1cf264d2cf9bd89d07295493eab4 |
|
| /// File Name: |
lsat-0.5.5.tgz |
Description:
|
Linux Security Auditing Tool (LSAT) is a post install security auditing tool. It is modular in design, so new features can be added quickly. It checks inetd entries and looks for unneeded RPM packages. It is being expanded to work with Linux distributions other than Red Hat, and checks for kernel versions.
| | Homepage: | http://www.dimlight.org/~number9/lsat/ | | Changes: | Fixed bugs and added checkrpm module to report RPM integrity on redhat based systems. | | File Size: | 43391 | | Last Modified: | May 10 03:16:21 2002 |
| MD5 Checksum: | 1953add42850b113d435de917f5c3ff6 |
|
| /// File Name: |
lsat-0.5.6.tgz |
Description:
|
Linux Security Auditing Tool (LSAT) is a post install security auditing tool. It is modular in design, so new features can be added quickly. It checks inetd entries and looks for unneeded RPM packages. It is being expanded to work with Linux distributions other than Red Hat, and checks for kernel versions.
| | Homepage: | http://www.dimlight.org/~number9/lsat/ | | Changes: | Fixed a false negative in checkinetd module, now always finds inetd.conf and xinetd.d files, fixes for a tempfile problem in checkset module and the sticky dir check, and cleanups to typos and output. | | File Size: | 43230 | | Last Modified: | May 19 02:41:43 2002 |
| MD5 Checksum: | ec7a6ea820a765d4f2b0aa41318b4f06 |
|
| /// File Name: |
lsat-0.5.7.tgz |
Description:
|
Linux Security Auditing Tool (LSAT) is a post install security auditing tool. It is modular in design, so new features can be added quickly. It checks inetd entries and looks for unneeded RPM packages. It is being expanded to work with Linux distributions other than Red Hat, and checks for kernel versions.
| | Homepage: | http://www.dimlight.org/~number9/lsat/ | | Changes: | Fixed checkinetd (even under Red Hat 7.3), checkftpusers, and a symlink attack in checkfiles. | | File Size: | 46765 | | Last Modified: | Jun 3 01:24:35 2002 |
| MD5 Checksum: | 1cf21e26b25db0a2353bf63a7f886b54 |
|
| /// File Name: |
lsat-0.5.8.tgz |
Description:
|
Linux Security Auditing Tool (LSAT) is a post install security auditing tool. It is modular in design, so new features can be added quickly. It checks inetd entries and looks for unneeded RPM packages. It is being expanded to work with Linux distributions other than Red Hat, and checks for kernel versions.
| | Homepage: | http://www.dimlight.org/~number9/lsat/ | | Changes: | Some basic sshd config checks were added. Buffer checks were added. | | File Size: | 52801 | | Last Modified: | Jul 4 03:54:49 2002 |
| MD5 Checksum: | 4274ed9d157c9d477d44473c493d9151 |
|
| /// File Name: |
lsat-0.5.9.tgz |
Description:
|
Linux Security Auditing Tool (LSAT) is a post install security auditing tool. It is modular in design, so new features can be added quickly. It checks inetd entries and looks for unneeded RPM packages. It is being expanded to work with Linux distributions other than Red Hat, and checks for kernel versions.
| | Homepage: | http://www.dimlight.org/~number9/lsat/ | | Changes: | The -x option was added to skip local SUID/SGID and world/group read/write. A checkcfg module was added for Red Hat. Checkcfg prints the output of chkconfig --list, giving the user a visual inspection of all services run in each runlevel. | | File Size: | 53433 | | Last Modified: | Jul 24 00:11:02 2002 |
| MD5 Checksum: | f63d85ecd7e4ebce093b92ceb3873718 |
|
| /// File Name: |
lsat-0.8.7.tgz |
Description:
|
Linux Security Auditing Tool (LSAT) is a post install security auditing tool. It is modular in design, so new features can be added quickly. It checks many insecure system configurations and local network settings on the system for common security/config errors and for unneeded packages. It has been tested on Linux (Gentoo, Red Hat, Debian, etc.) and Solaris (SunOS 2.x).
| | Homepage: | http://usat.sourceforge.net | | Changes: | Fixed problems in the Makefile and in the checkpasswd and checkmd5 modules. More checking was added to the checkwww and checkssh modules. Basic X checking was added in the checkx module. | | File Size: | 65563 | | Last Modified: | Oct 21 13:16:51 2003 |
| MD5 Checksum: | f58e90592926fdf35ab6987e31af5c66 |
|
| /// File Name: |
lsat-0.8.9.tgz |
Description:
|
Linux Security Auditing Tool (LSAT) is a post install security auditing tool. It is modular in design, so new features can be added quickly. It checks many insecure system configurations and local network settings on the system for common security/config errors and for unneeded packages. It has been tested on Linux (Gentoo, Red Hat, Debian, etc.) and Solaris (SunOS 2.x).
| | Homepage: | http://usat.sourceforge.net | | Changes: | Added a checkftp module that checks FTP configurations. There are more repairs to the checkmd5 module, and several typo fixes and code cleanups. | | File Size: | 71003 | | Last Modified: | Dec 22 15:48:58 2003 |
| MD5 Checksum: | a5217f2946a0f39c289374d32b97822a |
|
| /// File Name: |
lsat-0.9.2.tgz |
Description:
|
The Linux Security Auditing Tool (LSAT) is a post install security auditor for Linux/Unix. It checks many system configurations and local network settings on the system for common security/config errors and for packages that are not needed. It (for now) works under Linux (x86: Gentoo, RedHat, Debian, Mandrake; Sparc: SunOS (2.x), Redhat sparc, Mandrake Sparc; Apple OS X).
| | Homepage: | http://usat.sourceforge.net | | File Size: | 71565 | | Last Modified: | Nov 4 01:40:28 2004 |
| MD5 Checksum: | 0435a69e54e0f18b1a425bfc2c3abb17 |
|
| /// File Name: |
lsi_v1.0_RH.sh |
Description:
|
TSS v1.0beta1 is a shell script to check the local security of a Red Hat 6.0 / 6.1 / 6.2 machine. It checks for crontab, userhelper, shadow passwords, and the piranha account.
| | Author: | Grazer | | Homepage: | http://team-tss.online.cx | | File Size: | 3328 | | Last Modified: | Jun 1 14:38:52 2000 |
| MD5 Checksum: | dd0d87e7c5d58c77d4b9974c8149408d |
|
| /// File Name: |
lsm.tar.gz |
Description:
|
LSM (Loadable Security Module) is a simple but effective intrusion prevention loadable kernel module. Currently it protects extended file attributes on ext2 from being modified by the super user and the module from being removed and other modules from being loaded. This basic protection also prevents access to raw devices, so debugfs can not be used on a disk partition nor can a change to the boot process occur. Loading this module prevents lilo configuration.
| | Author: | Paul | | File Size: | 6526 | | Last Modified: | May 2 22:56:38 2001 |
| MD5 Checksum: | 9e72f64953cdc92114114db0cd1b0607 |
|
| /// File Name: |
maxty.tar.gz |
Description:
|
Maxty is a small kernel-space tty sniffer. It is a LKM which will attach to read/write syscalls and save incoming/outgoing requests to opened tty devices into separate log files. It provides a way keeping a track what is happening on virtual consoles similar to a keystroke recorder.
| | Author: | Paul | | File Size: | 4867 | | Last Modified: | Apr 6 21:04:31 2001 |
| MD5 Checksum: | 8ed7a10a7153e74d0f1495d65783dc4d |
|
| /// File Name: |
medusa-0.6.3.tar.gz |
Description:
|
Medusa is a package, which improves overall security of Linux OS by extending standard Linux security architecture, but preserving backward compatibility. There is a small kernel patch and a user space security daemon.
| | Homepage: | http://medusa.fornax.sk | | File Size: | 111820 | | Last Modified: | Nov 4 13:13:05 1999 |
| MD5 Checksum: | 757162ba7102988e261ef024765c5776 |
|
| /// File Name: |
medusa-0.7.10.tar.gz |
Description:
|
Medusa DS9 is used to increase Linux's security. It consists of two major parts, Linux kernel changes and the user-space daemon. Kernel changes do the monitoring of syscalls, filesystem actions, and processes, and they implement the communication protocol. The security daemon communicates with the kernel using the character device to send and receive packets.
| | Author: | Marek Zelem and Martin Ockajak | | Homepage: | http://medusa.fornax.sk | | Changes: | New features include ptrace handling, and an improved i386 entry.S offset generator, and automake support. Documentation fixes were made, and a bug in constable was fixed. | | File Size: | 111625 | | Last Modified: | Feb 25 16:47:49 2000 |
| MD5 Checksum: | d635ea6d3f497c8889fcf7223f6c98a4 |
|
| /// File Name: |
medusa-0.7.12.tar.gz |
Description:
|
Medusa DS9 is used to increase Linux's security. It consists of two major parts, Linux kernel changes and the user-space daemon. Kernel changes do the monitoring of syscalls, filesystem actions, and processes, and they implement the communication protocol. The security daemon communicates with the kernel using the character device to send and receive packets.
| | Author: | Marek Zelem and Martin Ockajak | | Homepage: | http://medusa.fornax.sk | | Changes: | Filesystem capabilities support has been added to the constable, a fix for a compilation problem when syscall tracing is disabled, new sample configuration file, and documentation changes. | | File Size: | 119194 | | Last Modified: | Aug 18 15:04:03 2000 |
| MD5 Checksum: | 91c7927fe6eb6ac586c83efed60c1760 |
|
| /// File Name: |
medusa-0.7.9.tar.gz |
Description:
|
Medusa is a package which improves overall security of Linux OS by extending standard Linux security architecture, but preserving backward compatibility. There is a small kernel patch and a user space security daemon. Kernel changes do the monitoring of syscalls, filesystem actions, and processes, and they implement the communication protocol. The security daemon communicates with the kernel using the character device to send and receive packets.
| | Author: | Marek Zelem and Martin Ockajak | | Homepage: | http://medusa.fornax.sk | | Changes: | file hiding, new sample config file, and many documentation fixes and updates. | | File Size: | 98825 | | Last Modified: | Feb 16 15:18:02 2000 |
| MD5 Checksum: | 9972e5dcc9f92d88fbd7959dcac3421c |
|
| /// File Name: |
medusa-0.8.1-alpha.tar.gz |
Description:
|
Medusa DS9 is used to increase Linux's security. It consists of two major parts, Linux kernel changes and the user-space daemon. Kernel changes do the monitoring of syscalls, filesystem actions, and processes, and they implement the communication protocol. The security daemon communicates with the kernel using the character device to send and receive packets.
| | Author: | Marek Zelem and Martin Ockajak | | Homepage: | http://medusa.fornax.sk | | Changes: | Improved code that handles privilege elevation during execve(), added several missing permission checks to System V IPC code, fixed some missing dputs() in VFS code, and included alpha support for 2.4.x kernels. | | File Size: | 125604 | | Last Modified: | Aug 4 07:28:11 2001 |
| MD5 Checksum: | cfbcaca932c36688c54ab63434c57ef2 |
|
| /// File Name: |
medusa-0.8.1.tar.gz |
Description:
|
Medusa DS9 is used to increase Linux's security. It consists of two major parts, Linux kernel changes and the user-space daemon. Kernel changes do the monitoring of syscalls, filesystem actions, and processes, and they implement the communication protocol. The security daemon communicates with the kernel using the character device to send and receive packets.
| | Author: | Marek Zelem and Martin Ockajak | | Homepage: | http://medusa.fornax.sk | | Changes: | This version contains Constable and the VS monitor (kernel patch) for Linux 2.2.19 and 2.4.7, along with several bugs found in the alpha which were fixed. | | File Size: | 119746 | | Last Modified: | Aug 10 16:38:08 2001 |
| MD5 Checksum: | 110d536f9f29999d0427ec9637b62270 |
|
| /// File Name: |
medusa-0.8.2.tar.gz |
Description:
|
Medusa DS9 is used to increase Linux's security. It consists of two major parts, Linux kernel changes and the user-space daemon. Kernel changes do the monitoring of syscalls, filesystem actions, and processes, and they implement the communication protocol. The security daemon communicates with the kernel using the character device to send and receive packets.
| | Author: | Marek Zelem and Martin Ockajak | | Homepage: | http://medusa.fornax.sk | | Changes: | Fixed a hard link bug in kernel v2.4. | | File Size: | 119805 | | Last Modified: | Sep 18 22:36:32 2001 |
| MD5 Checksum: | dd0ee6c3c66cd860779bbe488b8b9a63 |
|
| /// File Name: |
medusa-0.9.0.tar.gz |
Description:
|
Medusa DS9 is a tool used to increase Linux's security. It consists of two major parts - Linux kernel changes and the user-space daemon. Kernel changes do the monitoring of syscalls, filesystem actions, and processes, and they implement the communication protocol. The security daemon communicates with the kernel using the character device to send and receive packets.
| | Author: | Marek Zelem and Martin Ockajak | | Homepage: | http://medusa.fornax.sk | | Changes: | Patched for 2.2.20 and 2.4.15. Includes a bunch of bugfixes. | | File Size: | 121002 | | Last Modified: | Nov 24 23:29:34 2001 |
| MD5 Checksum: | 5546ab7e67b2b95244aa8c5550afd35a |
|
|
|
|
|