Cisco VPN Concentrator IKE resource exhaustion DoS Advisory

2006-07-26 Thread Roy Hills
-monitor.com/posts/2006/07/cisco-concentrator-dos.html Roy Hills NTA Monitor Ltd -- Roy HillsTel: +44 1634 721855 NTA Monitor Ltd FAX: +44 1634 721844 14 Ashford House, Beaufort Court, Medway City Estate, Email

New version of ike-scan (IPsec IKE scanner) available - v1.1

2003-02-20 Thread Roy Hills
) 59db0f1f170aaf50dfb2c05f4f950d00 ike-scan-1.1.zip (Windows-32 binary) Thanks to everyone who has submitted new IKE backoff patterns and reported bugs. Please send any comments or suggestions to: [EMAIL PROTECTED] Roy Hills -- Roy HillsTel: +44 1634 721855 NTA

New security tool: ike-scan (IPsec IKE scanner) released

2003-01-27 Thread Roy Hills
that you read the white paper at http://www.nta-monitor.com/ike-scan/whitepaper.pdf first to understand the general principles. If you download the source, please read the README file that's included before trying to use the tool. Please send any comments or suggestions to: [EMAIL PROTECTED] Roy Hills

SecuRemote usernames can be guessed or sniffed using IKE exchange

2002-09-03 Thread Roy Hills
with a strong authentication server such as SecurID will make username guessing or sniffing less of an issue because the password is virtually impossible to guess. Roy Hills Technical Director NTA Monitor Ltd -- Roy HillsTel: +44 1634 721855 NTA Monitor Ltd

RE: Raptor Firewall FTP Bounce vulnerability

2002-04-17 Thread Roy Hills
Thanks for the info. Yes, Symantec support were notified on 5 April 2002. Roy Hills At 13:35 17/04/02 +0200, Lysel Christian Emre wrote: Firewall: Raptor 6.5.3i on Sun Solaris 7 Raptor (SEF) 7.0 on Windows NT4.0, can also be exploited. Note: Has Symantec Support been notified? -- Roy

Raptor Firewall FTP Bounce vulnerability

2002-04-16 Thread Roy Hills
are available at: http://www.nta-monitor.com/news/raptor-set.htm Roy Hills Technical Director NTA Monitor Ltd -- Roy HillsTel: +44 1634 721855 NTA Monitor Ltd FAX: +44 1634 721844 14 Ashford House, Beaufort Court, Medway City Estate

NT Predictable Initial TCP Sequence numbers: SP5 update

1999-09-29 Thread Roy Hills
P sequence number pattern which consists of small positive increments (just like SP4) multiplied by 64,000. I think that this could be a post-SP4 hotfix, but I haven't confirmed this yet. I'll post an update when I have more information about this. Roy Hills NTA Monitor Ltd --