The Center for Education and Research in Information Assurance and Security (CERIAS)

The Center for Education and Research in
Information Assurance and Security (CERIAS)

Reports and Papers Archive


Browse All Papers »       Submit A Paper »

Information Technology Security Evaluation Criteria (ITSEC)

Commission of the European Communities
Added 2006-05-16


Information Security Policies Made Easy

Charles Cresson Wood
Added 2006-05-16

The John Marshall Journal of Computer and Information Law Volume XVIII

The John Marshall Law School
Added 2006-05-16

Introduction to Computer Crime 2nd Edition

edtited: Jay BloomBecker, Esq.
Added 2006-05-16

The Internet Worm Project: An Analysis

Eugene Spafford

On the evening of 2 November 1988, someone infected the Internet with a worm program. That program exploited flaws in utility programs based on BSD-derived versions of UNIX. The flaws allowed the program to break into those machhines and copy itself, thus infecting those systems. Thi sprogram eventually spread to thousands of machines , and disrupted normal activities and Internet connectivity for many days. This report gives a detailed description of the components of the worm program-data and functions. It is based on a study of two completely independent reverse-compilations of the worm and a version disassembled to VAX assembly language. Almost no source code is given in the paper because of current concerns about the state of the “immune system” of Internet hosts, but the description should be detailed enough to allow the reader to understand the behavior of the program.  The paper contains a review of the securty flaws exploited by the worm program, and gives some recommendations on how to eliminate or mitigate their future use. The report also includes and analysis of the coding style and methods used by the author(s) of the worm , and draw some conclusions about his abilities and intent.

Added 2006-05-16






The Canadian Trusted Computer Product Evaluation Criteria

Government of Canada
Added 2006-05-12

Computing and Social Responsibility: A Collection of Course Syllabi

Batya Friedman & Terry Winograd (eds)
Added 2006-05-12

Computing Security

Terrell Ward Bynum, Walter maner, & John L. Fodor (eds)
Added 2006-05-12