Security Power Tools
暫譯: 安全工具大全
Bryan Burns, Dave Killion, Nicolas Beauchesne, Eric Moret, Julien Sobrier, Michael Lynn, Eric Markham, Chris Iezzoni, Philippe Biondi, Jennifer Stisa Granick, Steve Manzuik, Paul Guersch
- 出版商: O'Reilly
- 出版日期: 2007-10-02
- 售價: $2,250
- 貴賓價: 9.5 折 $2,138
- 語言: 英文
- 頁數: 860
- 裝訂: Paperback
- ISBN: 0596009631
- ISBN-13: 9780596009632
-
相關分類:
資訊安全
-
相關翻譯:
防駭超級工具 (Security Power Tools) (繁中版)
海外代購書籍(需單獨結帳)
買這商品的人也買了...
-
$1,584Practical Unix & Internet Security, 3/e (Paperback)
-
$820$656 -
$1,742Linux Device Drivers, 3/e (Paperback)
-
$1,078Power System Analysis, 2/e (Paperback)
-
$350$277 -
$1,540Essential SNMP, 2/e (Paperback)
-
$880$695 -
$1,920$1,824 -
$780$616 -
$1,180$1,121 -
$620$608 -
$1,742DNS and BIND, 5/e (Paperback)
-
$590$466 -
$1,730$1,644 -
$580$493 -
$350$277 -
$350$298 -
$1,274Interaction Design: Beyond Human Computer Interaction, 2/e
-
$600$480 -
$990sendmail, 4/e (Paperback)
-
$680$537 -
$580$458 -
$360$284 -
$590$466 -
$520$406
相關主題
商品描述
What if you could sit down with some of the most talented security engineers in the world and ask any network security question you wanted? Security Power Tools lets you do exactly that! Members of Juniper Networks' Security Engineering team and a few guest experts reveal how to use, tweak, and push the most popular network security applications, utilities, and tools available using Windows, Linux, Mac OS X, and Unix platforms.
Designed to be browsed, Security Power Tools offers you multiple approaches to network security via 23 cross-referenced chapters that review the best security tools on the planet for both black hat techniques and white hat defense tactics. It's a must-have reference for network administrators, engineers and consultants with tips, tricks, and how-to advice for an assortment of freeware and commercial tools, ranging from intermediate level command-line operations to advanced programming of self-hiding exploits.
Security Power Tools details best practices for:
- Reconnaissance -- including tools for network scanning such as nmap; vulnerability scanning tools for Windows and Linux; LAN reconnaissance; tools to help with wireless reconnaissance; and custom packet generation
- Penetration -- such as the Metasploit framework for automated penetration of remote computers; tools to find wireless networks; exploitation framework applications; and tricks and tools to manipulate shellcodes
- Control -- including the configuration of several tools for use as backdoors; and a review of known rootkits for Windows and Linux
- Defense -- including host-based firewalls; host hardening for Windows and Linux networks; communication security with ssh; email security and anti-malware; and device security testing
- Monitoring -- such as tools to capture, and analyze packets; network monitoring with Honeyd and snort; and host monitoring of production servers for file changes
- Discovery -- including The Forensic Toolkit, SysInternals and other popular forensic tools; application fuzzer and fuzzing techniques; and the art of binary reverse engineering using tools like Interactive Disassembler and Ollydbg
商品描述(中文翻譯)
如果你能與世界上最有才華的安全工程師坐下來,隨意詢問任何網路安全問題,那會怎樣呢?《Security Power Tools》正是讓你能夠做到這一點!來自Juniper Networks安全工程團隊的成員以及幾位特邀專家揭示了如何使用、調整和推廣在Windows、Linux、Mac OS X和Unix平台上最受歡迎的網路安全應用程式、工具和實用程式。
《Security Power Tools》設計為可瀏覽的格式,透過23個交叉參考的章節,提供多種網路安全的方法,回顧了地球上最佳的安全工具,涵蓋黑帽技術和白帽防禦策略。這是網路管理員、工程師和顧問的必備參考書,提供各種免費和商業工具的提示、技巧和操作建議,從中級命令列操作到高級自隱藏漏洞的程式設計。
《Security Power Tools》詳細說明了以下最佳實踐:
- **偵查** -- 包括用於網路掃描的工具,如nmap;Windows和Linux的漏洞掃描工具;局域網偵查;幫助無線偵查的工具;以及自定義封包生成。
- **滲透** -- 如用於自動滲透遠端計算機的Metasploit框架;尋找無線網路的工具;利用框架應用程式;以及操控shellcode的技巧和工具。
- **控制** -- 包括幾個工具的配置以用作後門;以及對Windows和Linux已知rootkit的回顧。
- **防禦** -- 包括基於主機的防火牆;Windows和Linux網路的主機加固;使用ssh的通訊安全;電子郵件安全和反惡意軟體;以及設備安全測試。
- **監控** -- 如捕獲和分析封包的工具;使用Honeyd和snort的網路監控;以及對生產伺服器的主機監控以檢查檔案變更。
- **發現** -- 包括法醫工具包(The Forensic Toolkit)、SysInternals和其他流行的法醫工具;應用程式模糊測試器和模糊測試技術;以及使用互動反組譯器(Interactive Disassembler)和Ollydbg的二進位反向工程藝術。
由斯坦福大學法學教授撰寫的實用且及時的網路安全倫理章節,完整了這本書的主題,使其成為安全資訊的寶庫。使用《Security Power Tools》,讓自己免於許多麻煩,並為任何網路安全困境做好準備。