Geekonomics: The Real Cost of Insecure Software (Paperback)
暫譯: 極客經濟學:不安全軟體的真實成本 (平裝本)

David Rice

  • 出版商: Addison Wesley
  • 出版日期: 2020-12-03
  • 售價: $1,450
  • 貴賓價: 9.5$1,378
  • 語言: 英文
  • 頁數: 384
  • 裝訂: Paperback
  • ISBN: 0321735978
  • ISBN-13: 9780321735973
  • 相關分類: 資訊安全
  • 立即出貨 (庫存=1)

商品描述

“The clarity of David’s argument and the strength of his conviction are truly inspiring. If you don’t believe the world of software affects the world in which you live, you owe it to yourself to read this book.”
–Lenny Zeltzer, SANS Institute faculty member and the New York Security Consulting Manager at Savvis, Inc.

 

Geekonomics stays with you long after you finish reading the book. You will reconsider every assumption you have had about software costs and benefits.”
–Slava Frid, Gemini Systems, CTO, Resilience Technology Solutions

 

“Information Security is an issue that concerns governments, companies and, increasingly, citizens. Are the computer systems and software to which we entrust our sensitive and critical information, technologies that are out of control? David Rice has written an important and welcome book that goes to the heart of this issue, and points to solutions that society as a whole needs to debate and embrace.”
–Nick Bleech, IT Security Director, Rolls-Royce

 

“If you are dependent upon software (and of course, all of us in the modern world are) this book is a fabulous discussion of how and why we should worry.”
–Becky Bace

 

The Real Cost of Insecure Software

•   In 1996, software defects in a Boeing 757 caused a crash that killed 70 people…

•   In 2003, a software vulnerability helped cause the largest U.S. power outage in decades…

•   In 2004, known software weaknesses let a hacker invade T-Mobile, capturing everything from passwords to Paris Hilton’s photos…

•   In 2005, 23,900 Toyota Priuses were recalled for software errors that could cause the cars to shut down at highway speeds…

•   In 2006 dubbed “The Year of Cybercrime,” 7,000 software vulnerabilities were discovered that hackers could use to access private information…

•   In 2007, operatives in two nations brazenly exploited software vulnerabilities to cripple the infrastructure and steal trade secrets from other sovereign nations…

Software has become crucial to the very survival of civilization. But badly written, insecure software is hurting people–and costing businesses and individuals billions of dollars every year. This must change. In Geekonomics, David Rice shows how we can change it.

 

Rice reveals why the software industry is rewarded for carelessness, and how we can revamp the industry’s incentives to get the reliability and security we desperately need and deserve. You’ll discover why the software industry still has shockingly little accountability–and what we must do to fix that.

Brilliantly written, utterly compelling, and thoroughly realistic, Geekonomics is a long-overdue call to arms. Whether you’re software user, decision maker, employee, or business owner this book will change your life…or even save it.

 

The Alarming Cost of Insecure, Badly Written Software...

and How to Finally Fix the Problem, Once and for All!

 

Six billion crash test dummies: why you’re at greater risk than you ever imagined.

You pay the price: why consumers are legally and financially responsible for the mistakes of software manufacturers.

Broken windows: how software promotes epidemic cyber crime and threatens national security.

Who runs the show?: Why software manufacturers fought against the U.S. Food and Drug Administration’s attempts to protect the U.S. blood supply.

Protecting national infrastructure: real incentives for transforming software manufacturing.

Surviving the information superhighway: practical, must-read advice in a world of insecure code.

 

Preface xiii

Acknowledgments xix

About the Author xx

 

Chapter 1: The Foundation of Civilization 1

Chapter 2: Six Billion Crash Test Dummies: Irrational Innovation and Perverse Incentives 19

Chapter 3: The Power of Weaknesses: Broken Windows and National Security 73

Chapter 4: Myopic Oversight: Blinded by Speed, Baffled by Churn 131

Chapter 5: Absolute Immunity: You Couldn’t Sue Us Even If You Wanted To 179

Chapter 6: Open Source Software: Free, But at What Cost? 243

Chapter 7: Moving Forward: Rational Incentives for a Different Future 273

 

Epilogue 321

Notes 325

Index 341

 

 

商品描述(中文翻譯)

「大衛的論點清晰且他的信念堅定,實在令人鼓舞。如果你不相信軟體世界影響著你所生活的世界,那麼你應該讀這本書。」
-Lenny Zeltzer,SANS Institute 教師及 Savvis, Inc. 紐約安全顧問經理

Geekonomics 在你讀完這本書後仍會留在你的心中。你將重新考慮自己對軟體成本和效益的每一個假設。」
-Slava Frid,Gemini Systems 首席技術官,Resilience Technology Solutions

「資訊安全是一個關乎政府、企業,並且越來越多地關乎公民的問題。我們所信任的電腦系統和軟體是否是失控的技術,這些系統和軟體承載著我們敏感和關鍵的信息?大衛·賴斯寫了一本重要且受歡迎的書,深入探討了這個問題,並指出社會整體需要辯論和接受的解決方案。」
-Nick Bleech,IT安全總監,Rolls-Royce

「如果你依賴於軟體(當然,現代世界中的所有人都是),這本書是對我們應該擔心的原因和方式的精彩討論。」
-Becky Bace

不安全軟體的真實成本

• 在1996年,波音757的軟體缺陷導致了一起造成70人喪生的空難……
• 在2003年,一個軟體漏洞導致了數十年來美國最大的停電……
• 在2004年,已知的軟體弱點讓黑客入侵了T-Mobile,竊取了從密碼到巴黎·希爾頓的照片等所有資料……
• 在2005年,23,900輛豐田普銳斯因軟體錯誤被召回,這些錯誤可能導致汽車在高速公路上熄火……
• 在2006年,被稱為「網路犯罪之年」,發現了7,000個軟體漏洞,黑客可以利用這些漏洞訪問私人信息……
• 在2007年,兩國的特工公然利用軟體漏洞來癱瘓基礎設施並竊取其他主權國家的商業機密……

軟體已成為文明生存的關鍵。然而,編寫不良且不安全的軟體正在傷害人們,並每年使企業和個人損失數十億美元。這必須改變。在Geekonomics中,大衛·賴斯展示了我們如何能夠改變這一現狀。

賴斯揭示了為什麼軟體產業因疏忽而獲得獎勵,以及我們如何能夠重塑產業的激勵機制,以獲得我們迫切需要和應得的可靠性和安全性。你將發現為什麼軟體產業仍然缺乏令人震驚的問責制,以及我們必須做什麼來解決這個問題。

Geekonomics 以其出色的寫作、引人入勝的內容和徹底的現實主義,成為一個長期以來的號召。不論你是軟體使用者、決策者、員工或企業主,這本書都將改變你的生活……甚至拯救你的生命。

不安全且編寫不良的軟體的驚人成本……

以及如何最終徹底解決這個問題!

六十億個碰撞測試假人:為什麼你面臨的風險比你想像的更大。

你付出了代價:為什麼消費者在法律和財務上對軟體製造商的錯誤負有責任。

破窗效應:軟體如何促進流行的網路犯罪並威脅國家安全。

誰在主導?:為什麼軟體製造商反對美國食品藥品監督管理局保護美國血液供應的嘗試。

保護國家基礎設施:轉變軟體製造的真正激勵。

在資訊高速公路上生存:在不安全代碼的世界中,實用的必讀建議。

前言 xiii

致謝 xix

關於作者 xx

第一章:文明的基礎 1

第二章:六十億個碰撞測試假人:非理性的創新與扭曲的激勵 19

第三章:弱點的力量:破窗效應與國家安全 73

第四章:短視的監管:被速度蒙蔽,對變化感到困惑 131

第五章:絕對豁免:即使你想告我們也無法告 179

第六章:開源軟體:免費,但代價是什麼? 243

第七章:向前邁進:為不同的未來提供理性的激勵 273

尾聲 321

註釋 325

索引 341