Network Security Assessment: Know Your Network 3/e
暫譯: 網路安全評估:了解您的網路 第3版

McNab

買這商品的人也買了...

商品描述

How secure is your network? The best way to find out is to attack it, using the same tactics attackers employ to identify and exploit weaknesses. With the third edition of this practical book, you’ll learn how to perform network-based penetration testing in a structured manner. Security expert Chris McNab demonstrates common vulnerabilities, and the steps you can take to identify them in your environment.

System complexity and attack surfaces continue to grow. This book provides a process to help you mitigate risks posed to your network. Each chapter includes a checklist summarizing attacker techniques, along with effective countermeasures you can use immediately.

Learn how to effectively test system components, including:

  • Common services such as SSH, FTP, Kerberos, SNMP, and LDAP
  • Microsoft services, including NetBIOS, SMB, RPC, and RDP
  • SMTP, POP3, and IMAP email services
  • IPsec and PPTP services that provide secure network access
  • TLS protocols and features providing transport security
  • Web server software, including Microsoft IIS, Apache, and Nginx
  • Frameworks including Rails, Django, Microsoft ASP.NET, and PHP
  • Database servers, storage protocols, and distributed key-value stores

商品描述(中文翻譯)

您的網路有多安全?找出答案的最佳方法就是攻擊它,使用攻擊者用來識別和利用弱點的相同策略。在這本實用書的第三版中,您將學習如何以結構化的方式進行基於網路的滲透測試。安全專家 Chris McNab 展示了常見的漏洞,以及您可以採取的步驟來識別您環境中的這些漏洞。

系統的複雜性和攻擊面不斷增長。本書提供了一個過程,幫助您減輕對網路的風險。每一章都包含一個檢查清單,總結了攻擊者的技術,以及您可以立即使用的有效對策。

學習如何有效測試系統組件,包括:
- 常見服務,如 SSH、FTP、Kerberos、SNMP 和 LDAP
- 微軟服務,包括 NetBIOS、SMB、RPC 和 RDP
- SMTP、POP3 和 IMAP 郵件服務
- 提供安全網路訪問的 IPsec 和 PPTP 服務
- 提供傳輸安全的 TLS 協議和功能
- 網頁伺服器軟體,包括 Microsoft IIS、Apache 和 Nginx
- 框架,包括 Rails、Django、Microsoft ASP.NET 和 PHP
- 資料庫伺服器、儲存協議和分散式鍵值存儲