background preloader

Punching holes into firewalls

Punching holes into firewalls
or "Why firewalls shouldn't be considered a ultimate weapon for network security" or "Secure TCP-into-HTTP tunnelling guide" Introduction Firewalls are heavily used to secure private networks (home or corporate). Usually, they are used to protect the network from: intrusions from outsidersmisuse from insiders In a TCP/IP environment, the typical corporate firewall configuration is to block everything (both incoming and outgoing), and give access to the internet only through a HTTP proxy. Still, this should not considered a ultimate weapon, and network administrators should not rely on the firewalls only. Encapsulation is the basis of networking. As soon as you let a single protocol out, tunelling allows to let anything go through this protocol, and thus through the firewall. This paper demonstrates how to encapsulate any TCP-based protocol (SMTP, POP3, NNTP, telnet...) into HTTP, thus bypassing the firewall protection/censorship (depending on your point of view) A word of warning: The problem

100 Incredible Lectures from the World's Top Scientists Posted on Thursday June 18, 2009 by Staff Writers By Sarah Russel Unless you’re enrolled at one of the best online colleges or are an elite member of the science and engineering inner circle, you’re probably left out of most of the exciting research explored by the world’s greatest scientists. But thanks to the Internet and the generosity of many universities and online colleges, you’ve now got access to the cutting edge theories and projects that are changing the world in this list below. If you’re looking for even more amazing lectures, check out our updated list for 2012 with more talks from great minds. General Let the world’s top scientists explain exactly how they do their job when you listen to these lectures. Science and Engineering From materials science to the study of thermodynamics, learn more about the science of engineering here. WTC Lecture – collapse of WTC Buildings: Steven E. Biology and Medicine Chemistry Physics and Astronomy Earth and Environment Technology Science and Business

PuTTY Download Page Home | FAQ | Feedback | Licence | Updates | Mirrors | Keys | Links | Team Download: Stable · Snapshot | Docs | Changes | Wishlist PuTTY is a free implementation of SSH and Telnet for Windows and Unix platforms, along with an xterm terminal emulator. It is written and maintained primarily by Simon Tatham. The latest version is 0.70. LEGAL WARNING: Use of PuTTY, PSCP, PSFTP and Plink is illegal in countries where encryption is outlawed. Use of the Telnet-only binary (PuTTYtel) is unrestricted by any cryptography laws. Latest news 2017-07-08 PuTTY 0.70 released, containing security and bug fixes PuTTY 0.70, released today, fixes further problems with Windows DLL hijacking, and also fixes a small number of bugs in 0.69, including broken printing support and Unicode keyboard input on Windows. 2017-04-29 PuTTY 0.69 released, containing security and bug fixes 2017-02-21 PuTTY 0.68 released, containing ECC, a 64-bit build, and security fixes 2017-01-21 Win64 builds and website redesign Site map

M-payment: a Threat to Anti-money Laundering By H. Paul Leyva, J.D., C.AM.C. October 1, 2008 International Narcotics Control Strategy Report (INCSR), March, 2008: " … there are already indications that money launderers and those that finance terrorism will avail themselves of the new m-payment systems." NEW YORK, NY—Brittany has never filed an income tax return to report her $200,000.00+ income as a high-class call girl. LOGAN SQUARE, CHICAGO, IL—Alex, an accountant by day and drug user by night, uses his PC to transfer $400 from his personal checking account to his mobile phone's m-payment account. As the dealer enjoys his latte, he uses his mobile phone to text the funds to a bank in the Cayman Islands, where the deposit will easily get lost in the multitude of other small value transfers. NAIROBI, KENYA—International Press: August 7th. What is m-payment? -INCSR, March, 2008 The Virtual Wallet M-payment (mobile payment) is synonymous with the terms m-commerce, m-accounts, m-wallet, m-banking, e-money, or digital cash. The Virtual ATM

Learn Anything: 100 Places to Find Free Webinars and Tutorials Many people want to learn things like how to fix their own sink or speak another language but just don't know how to find the information they need or realize that free educational materials are out there to help them learn. Lucky for them, the Internet is full of tutorials and webinars that can be a great help in learning just about anything, whether practical or academic. We've compiled a list here of 100 places you can go to find all kinds of free educational information to get you started. Find Tutorials.com: Find tutorials on hundreds of topics ranging from crafts and hobbies to education on this comprehensive tutorial collection.

OpenSSH Mobile Megatrends 2010 [In our third annual Mobile Megatrends 2010 research we look at the future of web platforms, app stores, revenue models, open source, mobile recommendations, OEM monetisation, and operator strategies] After many months in the making, we ‘ve released our annual Mobile Megatrends 2010. It’s our third and biggest Megatrends research we ‘ve published to date featuring 64 juicy slides with detailed analysis on the future of mobile. So what are the overarching trends of mobile in 2010? We ‘ve covered 8 core themes: 1. 2. 3. 4. 5. 6. 7. 8. We ‘ve already presented earlier versions of our Mobile Megatrends as part of closed customer events and conferences, including as part of Rutberg’s invitation-only Wireless Influencers event in San Diego. Comments welcome as always,

DIY Ultimate Note-Taking Notebook This is sort of mid-range between what I do and a Moleskine. What I do: 1. Take a regular pad of yellow notepaper (glued at the top). Preferably 100 post-consumer because it's only practical to write on one side. 2. 2a. Cheaper than other systems, only takes a few minutes to accomplish, still includes removable paper for easy scanning, and no guilt for using a $20 notebook. I do this because I really can't justify the expense for note-taking. (I do carry a small Moleskine notebook, the cheap paper-bound one, for on-the-fly note taking). But, of course, I read Lifehacker religiously so, sooner or later, I'll try something like this.

SSLBridge - Open Source Linux VPN software

Related: