Re: remote host accepts loose source routed IP packets

2014-10-05 Thread Brandon Vincent
d to reject incoming source routed packets? On 5 October 2014 13:22, el kalin wrote: > hmmm… could it be openvas?! OpenVAS is a fork of Nessus from when it was open source. HackerGuardian seems to use Nessus as the chief scanning engine. Brandon Vincent ___

Re: remote host accepts loose source routed IP packets

2014-10-05 Thread Brandon Vincent
On Sun, Oct 5, 2014 at 8:33 AM, el kalin wrote: > should is submit this as a bug? Can you first try adding "set block-policy return" to pf.conf? OpenVAS might be assuming that a lack of response from your system to source routed packets is an acknowledgement that it is accepting t

Re: ossec hit: Hidden process (rootkit)

2014-09-23 Thread Brandon Vincent
+ IBM AIX on occasion. Brandon Vincent ___ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscr...@freebsd.org"

Re: ossec hit: Hidden process (rootkit)

2014-09-22 Thread Brandon Vincent
On Mon, Sep 22, 2014 at 2:10 AM, List Monkey wrote: > Any other thoughts? If you run ossec-rootcheck manually do you still get an alert? Brandon Vincent ___ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/free

Re: OpenSSL SA

2014-08-31 Thread Brandon Vincent
You should contact re@. Brandon Vincent ___ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscr...@freebsd.org"

Re: OpenSSL SA

2014-08-31 Thread Brandon Vincent
n. https://www.freebsd.org/releng/ https://www.freebsd.org/releases/10.1R/schedule.html Brandon Vincent ___ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "fr

Re: OpenSSL SA

2014-08-31 Thread Brandon Vincent
probably accidentally not published. Brandon Vincent ___ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscr...@freebsd.org"

RE: De Raadt + FBSD + OpenSSH + hole?

2014-04-19 Thread Brandon Vincent (Student)
It seems like this attitude will provide fuel to the argument that open-source software is inherently less secure. I'm surprised that SSH Communications Security hasn't used these posts yet as an argument to why their product is more secure. Brand