| wedstrijden

20-01-11

this blog ends but you can find enough new information here

tip : rightclick on the links and open in a new tab

Belgian IT-blogs that I read

english

http://blog.didierstevens.com/ hell of a securityresearcher

http://blog.rootshell.be/  writes about pertinent securitystuff

http://blog.brucon.org/  the securityconference in Belgium

https://twitter.com/security4all  wellconnected securityman

dutch

http://groundzero.skynetblogs.be   follows the anonymous tradition of EKZ 

@mailforlen Informationstreams that will continue to flow for now

1. http://www.netvibes.com/mailforlen  an index and overview and platform with online services

2. http://twitter.com/#!/mailforlen   realtime online information and my reading in scribd (downloads) 

My twitter lists with more than 400 specialised realtime newstwitterfeeds that I follow in organised lists

3. http://www.diigo.com/profile/mailforlen  archived links and articles

the following are public lists 


4. books and documents  http://www.scribd.com/llavens 

the following groups are publicly available

14:44 Gepost door http://belsec.skynetblogs.be Permalink | Commentaren (0) | Email dit |  Facebook |

22-07-10

more information on the insecurity of the networks can be found here

same writer

 

http://belsec.skynetblogs.be

 

with links to thousands of more of resources and free stuff

12:07 Gepost door http://belsec.skynetblogs.be Permalink | Commentaren (0) | Email dit | Tags: belsec |  Facebook |

27-08-09

intense windows attack traffic on Belgacom network

according to Arbor networks

    Microsoft Windows ASN.1 Library buffer overflow attempt     10.63     +100.0 %     CVE-2003-0818     36.0%
    ASN.1 constructed bit string     8.35     +100.0 %     CVE-2005-1935     28.3%
    Microsoft Windows Server Service buffer overflow attempt     3.61     +100.0 %     CVE-2006-3439     12.2%
    SMB-DS srvsvc NetrPathCanonicalize WriteAndX little endian overflow attempt     2.85     +100.0 %     CVE-2006-3439     9.6%
    Microsoft Windows RPC Heap Corruption buffer overflow attempt     2.23     +154.9%     CVE-2003-0715

and the attackers are

    81.240.75.77 (77.75-240-81.adsl-dyn.isp.belgacom.be)     6.70     22.7%
    87.65.120.45     6.12     20.7%
    91.182.255.26 (26.255-182-91.adsl-dyn.isp.belgacom.be)     1.89     6.4%
    80.200.83.2 (2.83-200-80.adsl-dyn.isp.belgacom.be)     1.59     5.4%
    80.200.11.241 (241.11-200-80.adsl-dyn.isp.belgacom.be)     1.30     4.4%
    91.181.170.200     1.01     3.4%
    91.182.80.30     0.62

00:08 Gepost door http://belsec.skynetblogs.be in Algemeen | Permalink | Commentaren (1) | Email dit | Tags: networks |  Facebook |

DDOS attacks against Belgian infrastructure

Inbound Attacks 7 Outbound Attacks 0 Maximum packet rate 118.28 k pps Maximum traffic rate 114.45 Mbps Attack class Misuse: 7 Attack subclass Total Traffic: 1,
https://atlas.arbor.net/cc/BE

any protection yet ?

00:03 Gepost door http://belsec.skynetblogs.be in Algemeen | Permalink | Commentaren (0) | Email dit | Tags: ddos |  Facebook |

19-08-09

baid .be domains according to mailscanner

162.15-66-87.adsl-static.isp.belgacom.be:84
brocanteonline.be
cms.intago.be
cofisk.be
cust213-242.dsl.versadsl.be
demo.joomlashop.be
detoxshop.be
promnight.be
service-online.be
steam-games.be
webwatcher.be
worldwide-forum.be
www.echecs.hurlu.be
www.energie-habitat.be
www.fabster.be
www.h4x0rs.be
www.nongjangbelgium.be
www.prestavit.be
www.site-keys.be
www.topcopy.be
www.urmet.be

http://www.mailscanner.eu/phishing.bad.sites.conf.master



















10:46 Gepost door http://belsec.skynetblogs.be in Algemeen | Permalink | Commentaren (0) | Email dit | Tags: phishing |  Facebook |

more .be domains in phishing list

allevropenscamp.be
hertas.be
modefgtlll.be
nidlenaleorte.be
qewasqs.be
rst-prodllvp1.be

http://www.joewein.net/dl/bl/dom-bl.txt





10:40 Gepost door http://belsec.skynetblogs.be in Algemeen | Permalink | Commentaren (0) | Email dit | Tags: phishing |  Facebook |

belgium goes to rank 4 at Arbor networks attack list

Belgium has gone up to rank 4 of the risk index of Arbor Networks. (just an indicator, not a bible)

The reason is that it has captured command and control botnet traffic from some infected posts on the Belgacom network.

The posts on the Belgacom network that were responsable for this traffic yesterday are

194.78.157.167         
    194.78.97.197       
    194.78.113.213        
    194.78.56.208     
    194.109.125.65 (644.ae0.cr2.3d12.xs4all.net)        
    194.78.190.181         
    194.78.99.38         
    194.78.185.84         
    194.78.215.147        
    194.109.125.88

09:46 Gepost door http://belsec.skynetblogs.be in Algemeen | Permalink | Commentaren (0) | Email dit | Tags: botnets |  Facebook |

1 2 3 4 5 6 7 8 Volgende