The Art of Cyberwarfare: An Investigator's Guide to Espionage, Ransomware, and Organized Cybercrime (Paperback)
暫譯: 網路戰爭的藝術:調查員的間諜、勒索軟體與組織性網路犯罪指南 (平裝本)

Dimaggio, Jon

  • 出版商: No Starch Press
  • 出版日期: 2022-04-26
  • 售價: $1,440
  • 貴賓價: 9.5$1,368
  • 語言: 英文
  • 頁數: 241
  • 裝訂: Quality Paper - also called trade paper
  • ISBN: 1718502141
  • ISBN-13: 9781718502147
  • 相關分類: 資訊安全
  • 立即出貨 (庫存 < 3)

買這商品的人也買了...

商品描述

A practical guide to understanding and analyzing cyber attacks by advanced attackers, such as nation states.

Cyber attacks are no longer the domain of petty criminals. Today, companies find themselves targeted by sophisticated nation state attackers armed with the resources to craft scarily effective campaigns. This book is a detailed guide to understanding the major players in these cyber wars, the techniques they use, and the process of analyzing their advanced attacks. Whether you're an individual researcher or part of a team within a Security Operations Center (SoC), you'll learn to approach, track, and attribute attacks to these advanced actors.

The first part of the book is an overview of actual cyber attacks conducted by nation-state actors and other advanced organizations. It explores the geopolitical context in which the attacks took place, the patterns found in the attackers' techniques, and the supporting evidence analysts used to attribute such attacks. Dive into the mechanisms of:

- North Korea's series of cyber attacks against financial institutions, which resulted in billions of dollars stolen

- The world of targeted ransomware attacks, which have leveraged nation state tactics to cripple entire corporate enterprises with ransomware

- Recent cyber attacks aimed at disrupting or influencing national elections globally

The book's second part walks through how defenders can track and attribute future attacks. You'll be provided with the tools, methods, and analytical guidance required to dissect and research each stage of an attack campaign. Here, Jon DiMaggio demonstrates some of the real techniques he has employed to uncover crucial information about the 2021 Colonial Pipeline attacks, among many other advanced threats. He now offers his experience to train the next generation of expert analysts.

商品描述(中文翻譯)

理解和分析高級攻擊者(如國家級攻擊者)網路攻擊的實用指南。

網路攻擊不再是小型罪犯的專利。如今,公司發現自己成為了擁有資源的高級國家級攻擊者的目標,這些攻擊者能夠策劃出令人恐懼的有效攻擊行動。本書是一本詳細的指南,幫助讀者理解這些網路戰爭中的主要參與者、他們使用的技術以及分析其高級攻擊的過程。無論您是個人研究者還是安全運營中心(SoC)團隊的一部分,您都將學會如何接近、追蹤和歸因於這些高級行為者的攻擊。

本書的第一部分概述了由國家級行為者和其他高級組織進行的實際網路攻擊。它探討了攻擊發生的地緣政治背景、攻擊者技術中的模式,以及分析師用來歸因這些攻擊的支持證據。深入了解以下機制:

- 北韓對金融機構進行的一系列網路攻擊,導致數十億美元被盜

- 針對性勒索軟體攻擊的世界,這些攻擊利用國家級戰術使整個企業陷入勒索軟體的癱瘓

- 近期旨在干擾或影響全球國家選舉的網路攻擊

本書的第二部分介紹了防禦者如何追蹤和歸因未來的攻擊。您將獲得所需的工具、方法和分析指導,以解剖和研究攻擊行動的每個階段。在這裡,Jon DiMaggio 展示了他用來揭露有關 2021 年殖民管道攻擊等多個高級威脅的重要信息的真實技術。他現在將自己的經驗分享出來,以培訓下一代專家分析師。

作者簡介

Jon DiMaggio is the chief security strategist at Analyst1 and has over 15 years of experience hunting, researching, and writing about advanced cyber threats. As a specialist in enterprise ransomware attacks and nation-state intrusions, including the world's first ransomware cartel and the infamous Black Vine cyberespionage group, he has exposed the criminal organizations behind major ransomware attacks, aided law enforcement agencies in federal indictments of nation-state attacks, and discussed his work with The New York Times, Bloomberg, Fox, CNN, Reuters, and Wired. You can find Jon speaking about his research at conferences such as RSA and Blackhat.

作者簡介(中文翻譯)

Jon DiMaggio 是 Analyst1 的首席安全策略師,擁有超過 15 年的經驗,專注於追蹤、研究和撰寫有關先進的網路威脅。作為企業勒索病毒攻擊和國家級入侵的專家,他參與了全球首個勒索病毒卡特爾和臭名昭著的 Black Vine 網路間諜組織的研究,揭露了主要勒索病毒攻擊背後的犯罪組織,協助執法機構對國家級攻擊進行聯邦起訴,並與《紐約時報》、彭博社、福克斯新聞、CNN、路透社和 Wired 討論他的工作。您可以在 RSA 和 Blackhat 等會議上找到 Jon 講述他的研究。