<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>DDoSed.com - An IT security information blog &#187; Research Papers</title>
	<atom:link href="http://www.ddosed.com/category/research-papers/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ddosed.com</link>
	<description></description>
	<lastBuildDate>Sat, 04 Oct 2008 07:21:19 +0000</lastBuildDate>
	
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Which RDBMS is more secure? Microsoft vs. Oracle</title>
		<link>http://www.ddosed.com/2006/11/29/which-rdbms-is-more-secure-microsoft-vs-oracle/</link>
		<comments>http://www.ddosed.com/2006/11/29/which-rdbms-is-more-secure-microsoft-vs-oracle/#comments</comments>
		<pubDate>Wed, 29 Nov 2006 08:42:22 +0000</pubDate>
		<dc:creator>D1m</dc:creator>
				<category><![CDATA[Research Papers]]></category>

		<guid isPermaLink="false">http://www.ddosed.com/2006/11/29/which-rdbms-is-more-secure-microsoft-vs-oracle/</guid>
		<description><![CDATA[This research paper by David Litchfield from Next Generation Security Software (NGSSoftware), examines the differences between the security posture of Microsoft&#8217;s SQL Server and Oracle&#8217;s RDBMS based upon security vulnerabilities reported by external security researchers and since fixed by the vendor in question.
You can download it from:
http://www.databasesecurity.com/dbsec/comparison.pdf

  addthis_url    = 'http%3A%2F%2Fwww.ddosed.com%2F2006%2F11%2F29%2Fwhich-rdbms-is-more-secure-microsoft-vs-oracle%2F';
  [...]]]></description>
			<content:encoded><![CDATA[<p align="justify">This research paper by David Litchfield from <a href="http://www.ngssoftware.com" target="_blank">Next Generation Security Software</a> (NGSSoftware), examines the differences between the security posture of <a href="http://www.microsoft.com/sql/" target="_blank">Microsoft&#8217;s SQL Server</a> and <a href="http://www.oracle.com/database" target="_blank">Oracle&#8217;s</a> RDBMS based upon security vulnerabilities reported by external security researchers and since fixed by the vendor in question.</p>
<p>You can download it from:</p>
<p><a href="http://www.databasesecurity.com/dbsec/comparison.pdf">http://www.databasesecurity.com/dbsec/comparison.pdf</a></p>
<script type="text/javascript">
  addthis_url    = 'http%3A%2F%2Fwww.ddosed.com%2F2006%2F11%2F29%2Fwhich-rdbms-is-more-secure-microsoft-vs-oracle%2F';
  addthis_title  = 'Which+RDBMS+is+more+secure%3F+Microsoft+vs.+Oracle';
  addthis_pub    = 'dpan';
</script><script type="text/javascript" src="http://s7.addthis.com/js/addthis_widget.php?v=12" ></script>
]]></content:encoded>
			<wfw:commentRss>http://www.ddosed.com/2006/11/29/which-rdbms-is-more-secure-microsoft-vs-oracle/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Exploiting and Defending Against Search Engine Attacks</title>
		<link>http://www.ddosed.com/2006/11/29/exploiting-and-defending-against-search-engine-attacks/</link>
		<comments>http://www.ddosed.com/2006/11/29/exploiting-and-defending-against-search-engine-attacks/#comments</comments>
		<pubDate>Wed, 29 Nov 2006 08:13:24 +0000</pubDate>
		<dc:creator>D1m</dc:creator>
				<category><![CDATA[Presentations]]></category>
		<category><![CDATA[Research Papers]]></category>

		<guid isPermaLink="false">http://www.ddosed.com/2006/11/29/exploiting-and-defending-against-search-engine-attacks/</guid>
		<description><![CDATA[Search engines such as Google and Yahoo are crucial to regular use of the Internet. They are also indispensable tools for hackers who can perform information gathering without ever visiting the victim site. In this presentation Security Compass founder Nish Bhalla walks through examples of how search engines could be used to aid hackers.  [...]]]></description>
			<content:encoded><![CDATA[<p>Search engines such as <a target="_blank" href="http://www.google.com">Google</a> and <a target="_blank" href="http://www.yahoo.com">Yahoo</a> are crucial to regular use of the Internet. They are also indispensable tools for hackers who can perform information gathering without ever visiting the victim site. In this presentation <a target="_blank" href="http://www.securitycompass.com">Security Compass</a> founder Nish Bhalla walks through examples of how search engines could be used to aid hackers.  The presentation is structured as follows:</p>
<ul>
<li>Web Application Review Methodology</li>
</ul>
<p>Threat Analysis</p>
<p>Architecture Review</p>
<p>Application Review</p>
<ul>
<li>Search Engine Basics</li>
<li>Google Hacking</li>
</ul>
<p>&#8230;and can  be downloaded from:</p>
<p><a href="http://www.securitycompass.com/resources/SecurityCompass-Search%20Attacks.pdf">http://www.securitycompass.com/resources/SecurityCompass-Search Attacks.pdf</a></p>
<p>or</p>
<p><a target="_blank" href="http://www.ddosed.com/uploads/presentations/SecurityCompass-Search%20Attacks.pdf">http://www.ddosed.com/uploads/presentations/SecurityCompass-Search Attacks.pdf</a></p>
<script type="text/javascript">
  addthis_url    = 'http%3A%2F%2Fwww.ddosed.com%2F2006%2F11%2F29%2Fexploiting-and-defending-against-search-engine-attacks%2F';
  addthis_title  = 'Exploiting+and+Defending+Against+Search+Engine+Attacks';
  addthis_pub    = 'dpan';
</script><script type="text/javascript" src="http://s7.addthis.com/js/addthis_widget.php?v=12" ></script>
]]></content:encoded>
			<wfw:commentRss>http://www.ddosed.com/2006/11/29/exploiting-and-defending-against-search-engine-attacks/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Hunting Down a DDoS Attack</title>
		<link>http://www.ddosed.com/2006/11/29/hunting-down-a-ddos-attack/</link>
		<comments>http://www.ddosed.com/2006/11/29/hunting-down-a-ddos-attack/#comments</comments>
		<pubDate>Wed, 29 Nov 2006 07:53:51 +0000</pubDate>
		<dc:creator>D1m</dc:creator>
				<category><![CDATA[Presentations]]></category>
		<category><![CDATA[Research Papers]]></category>

		<guid isPermaLink="false">http://www.ddosed.com/2006/11/29/huntdownaddosattack/</guid>
		<description><![CDATA[Lars Axeland from TeliaSonera &#8211; the largest  telecommunications company in Sweden and Finland - made an interesting presentation on how internet service providers (ISPs) can prevent distributed denial of service (DDoS) attacks  and thus protect their network and their customers. He also briefly introduces TeliaSonera&#8217;s DDoS protection service.
The presentation can be downloaded from:
http://www.iis.se/Internetdagarna/2006/21-dos-attacker/LarsAxeland.pdf
or
http://www.ddosed.com/uploads/presentations/LarsAxeland.pdf

  addthis_url    = 'http%3A%2F%2Fwww.ddosed.com%2F2006%2F11%2F29%2Fhunting-down-a-ddos-attack%2F';
  addthis_title [...]]]></description>
			<content:encoded><![CDATA[<p>Lars Axeland from <a title="TeliaSonera" href="http://www.teliasonera.com" target="_blank">TeliaSonera</a> &#8211; the largest  telecommunications company in Sweden and Finland - made an interesting presentation on how internet service providers (ISPs) can prevent distributed denial of service (DDoS) attacks  and thus protect their network and their customers. He also briefly introduces TeliaSonera&#8217;s DDoS protection service.</p>
<p>The presentation can be downloaded from:</p>
<p><a href="http://www.iis.se/Internetdagarna/2006/21-dos-attacker/LarsAxeland.pdf">http://www.iis.se/Internetdagarna/2006/21-dos-attacker/LarsAxeland.pdf</a></p>
<p>or</p>
<p><a href="http://www.ddosed.com/uploads/presentations/LarsAxeland.pdf">http://www.ddosed.com/uploads/presentations/LarsAxeland.pdf</a></p>
<script type="text/javascript">
  addthis_url    = 'http%3A%2F%2Fwww.ddosed.com%2F2006%2F11%2F29%2Fhunting-down-a-ddos-attack%2F';
  addthis_title  = 'Hunting+Down+a+DDoS+Attack';
  addthis_pub    = 'dpan';
</script><script type="text/javascript" src="http://s7.addthis.com/js/addthis_widget.php?v=12" ></script>
]]></content:encoded>
			<wfw:commentRss>http://www.ddosed.com/2006/11/29/hunting-down-a-ddos-attack/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
