CIO
The Cheapskate's Infosecurity Toolbox
A list of free-to-download tools for the budget-pinched CIO or CISO
Ken Pfeil  07 February, 2007 15:14:29

As we all know, not everyone is fortunate enough to have a blank cheque for security-related procurement and implementation. Making the best of your allocated budget may at times call for primary or supplementary solutions that are freely available. This strategy cuts procurement time completely out of the loop as well. Here's a list of security tools available on the Web for free that you should add to your toolbox.

BartPE: Preinstalled Environment Troubled by that incessant spyware or virus that just doesn't seem to go away? Need a way to troubleshoot a system without booting the operating system installed on it? BartPE and the right plug-ins will let you do this. www.nu2.nu/pebuilder

Snort: Open Source Intrusion Detection System Arguably the world's most used Intrusion Detection System. Both Windows and Linux binaries are available. www.snort.org

VMWare Server: A virtual environment It finally happened: VMWare is available for free. Patch management, QA, vulnerability remediation testing and other daily activities are now available without a significant capital investment. VMWare also offers images of various environments, configurations and operating systems available for download (they're called "appliances") and ready to use in conjunction with the main product. Just download, point VMWare to the image and test away! www.vmware.com/products/server

DataRescue's IDA Pro Freeware 4.3 disassembler and debugger Although not posted on the DataRescue site any more, the free version of their utility will turn up with a quick Google dig. Try www.programmersheaven.com/

OllyDbg disassembler and debugger Probably the world's most used debugger disassembler. Gives most commercial debuggers a good run for their money. www.ollydbg.de

eEye Digital Security's Binary Diffing Suite A good, free suite of binary diffing tools you can use to see the effect that a released patch may have on your environment. Read the Web site, as there are some platform dependencies. research.eeye.com/html/tools/RT20060801-1.html Cygwin: Linux-like environment for Windows Need to run some scripts or programs that previously ran only under Linux? Do you miss your Linux command line when running Windows? www.cygwin.com

Nagios: An open-source host, service and network monitoring program Not for security only, but Nagios can be used to monitor for events that typically have security implications. This is one that both the CIO and CISO will agree upon. www.nagios.org

iptables and Firewall Builder: Firewall and Management Interface Don't have the deep pockets for a Checkpoint, Cisco or Juniper? iptables comes with most Linux distributions. Not comfortable using a command line to manage it? Firewall Builder is an intuitive way to install and manage the rule set. Get a couple of credit card CDs, create a bootable distribution, and you've got a firewall in your pocket. www.iptables.org and www.fwbuilder.org

Apache SpamAssassin: Fight Spam at the Gateway Not really a secret to most people. With the right configuration this is difficult to beat no matter how much you spend on an antispam solution. spamassassin.apache.org/index.html

Comments

Wally Perez

[url=http://zbyh3qpdrs7qk8vw.com/]9539nwf2p50zm00c[/url]
[link=http://6ldyw2na2fhrocsz.com/]60jt1ah87c3qkaat[/link]
6pshvl0l51v92t74
http://jwlvhwq8epr2hj5z.com/

Post new comment

The content of this field is kept private and will not be shown publicly.
  • Web page addresses and e-mail addresses turn into links automatically.
  • Allowed HTML tags: <a> <em> <strong> <cite> <code> <ul> <ol> <li> <dl> <dt> <dd>
  • Lines and paragraphs break automatically.

More information about formatting options

Enter the fully qualified URL, eg. http://www.example.com/
Users posting comments agree to the CIO comments policy.
Login or register to link comments to your user profile, or you may also post a comment without being logged in.
Newsletters
Sign up for our CIO newsletters!
Syndicate content

URL
www.kyoceramita.com.au

Call us on
Australia: 1800 339 003
New Zealand: 0508 596 2732

Email us
marketing@kyoceramita.com.au

Did you realise that the cost or running a laser printer over its lifetime is likely to exceed the original purchase price by several times? To compare your current printer's running costwith a Kyocera printer, select the TCO Calculator

Total Cost of Ownership (TCO)
Kyocera Saves... Try our Saving Estimator now
Calculate Now

Testimonials

 

Wondering how to improve your business with UC on an IP Network?

Join Computerworld's Live Webinar where we will address the move many companies are making towards IP based voice services (SIP trunking, VoIP) and look at how they are using a single connection for data and voice rather than separate lines. Learn about the latest in IP networks and how it can help your organisation.

Wednesday 25th November 2009, Time 10.30 am EST (Sydney, Australia) Screening at your desk

Register now

  • +

    Facebook users targeted in massive spam run 19 March, 2010 06:50:00

    The messages try to get users to dowload a malicious attachment
    Facebook's 400 million users have been targeted by a spam run that could infect their computers with malicious software designed to steals passwords and other data, according to security researchers at McAfee.
  • +

    Using Biometric Access Systems: Dos and Don'ts 18 March, 2010 06:41:00

    For biometric access systems, the devil is in the details. Here are implementation strategies from users and analysts.
    Considering a biometric access system? Experts offer practical advice in these dos and don'ts.
  • +

    Seven Firefox Plug-ins That Improve Online Privacy 18 March, 2010 06:18:00

    It does help the more nerdy among us ascertain what's going on under the hood of a website
    As strange as it might sound, there are times when I wish for the old days of the Internet circa the early 1990's. The days of Mosaic and Lynx, where there was no Flash, no Javascript and no Java. A simpler time where protecting your privacy and security wasn't as essential as it is today.
  • +

    Law enforcement push for stricter domain name rules 18 March, 2010 05:04:00

    The changes would make it more difficult for criminals to register under false details for domain names
    Law enforcement officials in the U.K. and U.S. are pushing the Internet Corporation for Assigned Names and Numbers to put in place measures that would help reduce abuse of the domain name system.
  • +

    Indian security startup offers free software 17 March, 2010 06:01:00

    The company hopes to make money by selling services to small companies
    Wep Solutions, an Indian security software and services startup, is offering its unified threat management appliance software free to small businesses around the world.

Zones
SAS Resource Centre

This Resource Centre hosts a wealth of thought leadership articles, whitepapers, and success videos, to help you make the most out of your corporate information in order to swiftly make sound business decisions to survive and thrive in the current economic climate.

Oracle Resource Centre

News, Features and the latest whitepapers on SOA, Application Grid, Enterprise Management and Database

Upcoming Industry Events
Whitepaper

Don't let IT/data issues keep you awake at night

This paper will address the three (3) compelling reasons to consider a Data Centre, the seven (7) ways a Data Centre can improve your business and save you money, and highlight available facilities. Read on for quick tips and industry information.

CIO Industry Insight Podcast #9 Scott Dawes, VP of Applications Business Unit, Oracle ANZ
Listen to the latest edition of CIO Live which is now available for download.
Listen to the podcast
Sign up to the CIO Live email
Whitepaper
Securing People and Information: How to Protect Against Today’s Web-based Threats

This white paper explores the benefits of an Application Delivery Network, highlighting the ability to protect your users and applications and still deliver outstanding application performance with confidence, consistency and cost-effectiveness across your distributed network.

Read Whitepaper

Brought to you by