
The BELNET CERT has a newsletter to which you can subscribe here, or look at the archives here. I saw some interesting figures in there like 'most scanned ports'. I'm a bit curious to know which honeypots they used to make this analysis.
While their primary mission is to support the BELNET members (Belgian universities, public administrations, high schools and research centers connected to BELNET's network), you can contact them with issues. A full BE-CERT is in the making.
The preferred method to contact the CERT is by sending email at the address cert@belnet.be. Should you need to send confidential information to us, we urge you to use our PGP public key. Business hours for the BELNET CERT are 8am to 18pm during week days. Keep in mind that we are located in Brussels, Belgium. As such, our time zone is CET (GMT+0100 during winter, GMT+0200 during summer).I just hope that someone in Belgium is following up the DNS patching. Someone started an overview of patched servers on the forum of userbase.be.
Almost all communication coming from the CERT should be digitally signed, either with the key for cert@belnet.be, either with the key for cert-advisory@belnet.be (only for our own advisories). We do not sign already-signed advisories that we forward, because the counter signature may mess with the original one.
- The DNS flaw overview in poem form
- Metasploit releases DNS cache poisoning exploit (part 2)
- Metasploit releases DNS cache poisoning exploit (part 1)
- Updated SQL injection list and some Belgian websites infected (updated)
- NOW is the time to patch those unpatched DNS servers. Details have leaked. (updated)
- Dan Kaminsky Blackhat Webcast on the DNS vulnerability on the 24th of July (updated)
- More on the DNS vulnerability
- Warning: details multi vendor DNS cache poisening flaws released (updated)
- ENISA: Concerted EU efforts are needed to avoid a ‘digital 9/11’ and combat cyber threats
- United Tax Spearphishing attack and a little Belgian twist
- Third sql injection wave and the impact on Belgian websites
Security4all Blog
Twitter
Slideshare
Facebook
Digg
Flickr



0 comments:
Post a Comment