RSS Browser Security News


The Hacker’s Nightmare!

May 12th, 2008 by pedro

As a manager with IT staff and consultants on call, I know how hard it is to keep our infrastructure clean and secure. Key to this achievement is the quality of my team and I have used The Hacker’s Nightmare . I found it do be a great resource, for a get back to basics training.

Having worked in Internet Security for over 12 years I have to agree that the information presented in The Hacker’s Nightmare is quality and can keep your team and systems secure for the future.

Posted in Uncategorized | No Comments »

Object Filler

March 2nd, 2007 by pedro

You are visiting the oficial Object Filler and Object Dumper website.

Object Filler is a tool designed to for helping administrators of Check Point Software solutions, in the task of managing their SmartCenters. The main features of the program are:

  • Is able to automatically create hosts, networks, address ranges and other type of objects, giving couple of IP addresses and a netmask. Object Filler will calculate for you which IP address corresponds with a valid object (i.e. will just use network addresses to create networks, ignoring broadcasts).
  • Is able to import objects information to the SmartCenter, given the configuration information from Cisco Routers (ACLs), as well as from Cisco PIX, Juniper NetScreen, Symantec Raptor, SecureComputing’s SideWinder and Gauntlet firewalls. In some cases it also supports converting firewall rules.
  • If there is a list of objects with their corresponding properties (IP address, netmask, color, NAT properties, etc.) in some known format- Object Filler is able to import them into the SmartCenter, easing the task of populating it.

Some of the main advantages of the tools are that are extremely easy to use, the input and output can be simply modified if needed as it’s 100% text, they are fast (matter of seconds usually), and they are free.

Object Dumper

Object Dumper does the opposite of Object Filler. Given information from a current Check Point SmartCenter , it dumps the configuration of objects and rules to a CSV file.
This may be useful when a bulk modification to current objects needs to be performed, or small/simple migrations or object “transportation” among SmartCenters for example…

Posted in Ofiller | No Comments »

Ofiller 2.4 Released

February 28th, 2007 by pedro

The 2.4 version of Object Filler and Object Dumper is now released.

Please check out the Downloads Section, under “Latest Released OFiller/ODumper”.

The 2.4 version of the tools is now released.

* File name = ofiller_v2.4.tgz
* File size = 7,445,314 bytes
* MD5 signature = 013B1B7A5EE24DB33212951E08D539BE

The main thing on this version is the full support for security rules. There
are some small limitations though and they are documented in the manual, so
please be sure of checking them out if you plan to use this feature. Things
promised before such as Solaris binaries, enhanced support to import rules
from Cisco PIX, full support to colors and comments for all objects. Source
ports on services and Edge objects are finally here as well.

The documentation has been enhanced as well. The Tutorial now includes a
section on how to work with policies (adding rules to an existing policy or
moving/modifying existing policies for example), and how to recover information
from gateways when the SmartCenter has crashed. The Tutorial for Provider-1
now includes a section on how to move from a CMA to a SmartCenter rules
and objects, something that has been requested several times.

Thank you for using the tools and your support. Hopefully you will find this
new version useful.

Martin Hoz

Posted in Ofiller | No Comments »

CodeTags v1.1 Released

February 28th, 2007 by pedro

CodeTags allows you to automate the generation of “TODO” lists from your source code, using a Subversion repository.

It is common practice to write down notes directly in the source code, like TODO, TASK, XXX, FIXME etc.

These tags provide some guidance as to what tasks are still pending, or identify sections of code that are known to be faulty, or untested etc. There are many IDEs, like Eclipse for instance, that scan the source code and create lists of all such tags, but what often happens in software projects is that each developer uses there own favorite editor or IDE and as such there’s no central “repository” so to speak of the code tags that helps guide the development team in their project management tasks. CodeTags was designed to help maintain this TODO list in the project’s web server by automatically scanning all files that are checked into the project’s Subversion (SVN) repository.

Read More

Posted in CodeTags | No Comments »

El Ataque de los Zombies

February 28th, 2007 by pedro

Todos conocemos los Zombies, como lentas criaturas medio muertas, medio vivas, que persiguen sus victimas incesantemente, causando el terror y pánico. Hace años que los vimos en las películas y nos reímos, pues teniendo en cuenta su incapacidad atlética, sabemos que por mucho que la victima corra y el Zombie camine, en el final este siempre la atrapa.
Su versión digital, no siendo tan conocida, es seguramente mucho más terrorífica.

Read the rest of this entry »

Posted in Articles | No Comments »