Security Warrior: Know Your Enemy

Przednia okładka
"O'Reilly Media, Inc.", 12 sty 2004 - 556

When it comes to network security, many users and administrators are running scared, and justifiably so. The sophistication of attacks against computer systems increases with each new Internet worm.What's the worst an attacker can do to you? You'd better find out, right? That's what Security Warrior teaches you. Based on the principle that the only way to defend yourself is to understand your attacker in depth, Security Warrior reveals how your systems can be attacked. Covering everything from reverse engineering to SQL attacks, and including topics like social engineering, antiforensics, and common attacks against UNIX and Windows systems, this book teaches you to know your enemy and how to be prepared to do battle.Security Warrior places particular emphasis on reverse engineering. RE is a fundamental skill for the administrator, who must be aware of all kinds of malware that can be installed on his machines -- trojaned binaries, "spyware" that looks innocuous but that sends private data back to its creator, and more. This is the only book to discuss reverse engineering for Linux or Windows CE. It's also the only book that shows you how SQL injection works, enabling you to inspect your database and web applications for vulnerability.Security Warrior is the most comprehensive and up-to-date book covering the art of computer war: attacks against computer systems and their defenses. It's often scary, and never comforting. If you're on the front lines, defending your site against attackers, you need this book. On your shelf--and in your hands.

 

Spis treści

Part I
1
Assembly Language
3
Windows Reverse Engineering
9
Linux Reverse Engineering
33
Windows CE Reverse Engineering
118
Overflow Attacks
161
Part II
177
TCPIP Analysis
179
Windows Client Attacks
329
Windows Server Attacks
350
SOAP XML Web Services Security
369
SQL Injection
374
Wireless Security
391
Part IV
407
Audit Trail Analysis
409
Intrusion Detection Systems
424

Social Engineering
199
Reconnaissance
212
OS Fingerprinting
225
Hiding the Tracks
236
Part III
255
Unix Defense
257
Unix Attacks
299
Honeypots
446
Incident Response
459
Forensics and Antiforensics
478
Part V
507
Useful SoftICE Commands and Breakpoints
509
Index
517

Inne wydania - Wyświetl wszystko

Kluczowe wyrazy i wyrażenia

Odniesienia do tej książki

Informacje bibliograficzne