Practical Hardware Pentesting: A guide to attacking embedded systems and protecting them against the most common hardware attacks
暫譯: 實用硬體滲透測試:攻擊嵌入式系統及防範最常見硬體攻擊的指南

Valle, Jean-Georges

  • 出版商: Packt Publishing
  • 出版日期: 2021-04-01
  • 售價: $2,220
  • 貴賓價: 9.5$2,109
  • 語言: 英文
  • 頁數: 382
  • 裝訂: Quality Paper - also called trade paper
  • ISBN: 1789619130
  • ISBN-13: 9781789619133
  • 相關分類: 嵌入式系統資訊安全
  • 海外代購書籍(需單獨結帳)

買這商品的人也買了...

商品描述

Explore embedded systems pentesting by applying the most common attack techniques and patterns


Key Features:

  • Learn various pentesting tools and techniques to attack and secure your hardware infrastructure
  • Find the glitches in your hardware that can be a possible entry point for attacks
  • Discover best practices for securely designing products


Book Description:

Hardware pentesting involves leveraging hardware interfaces and communication channels to find vulnerabilities in a device. Practical Hardware Pentesting will help you to plan attacks, hack your embedded devices, and secure the hardware infrastructure.


Throughout the book, you will see how a specific device works, explore the functional and security aspects, and learn how a system senses and communicates with the outside world. You will start by setting up your lab from scratch and then gradually work with an advanced hardware lab. The book will help you get to grips with the global architecture of an embedded system and sniff on-board traffic. You will also learn how to identify and formalize threats to the embedded system and understand its relationship with its ecosystem. Later, you will discover how to analyze your hardware and locate its possible system vulnerabilities before going on to explore firmware dumping, analysis, and exploitation. Finally, focusing on the reverse engineering process from an attacker point of view will allow you to understand how devices are attacked, how they are compromised, and how you can harden a device against the most common hardware attack vectors.


By the end of this book, you will be well-versed with security best practices and understand how they can be implemented to secure your hardware.


What You Will Learn:

  • Perform an embedded system test and identify security critical functionalities
  • Locate critical security components and buses and learn how to attack them Discover how to dump and modify stored information
  • Understand and exploit the relationship between the firmware and hardware
  • Identify and attack the security functions supported by the functional blocks of the device
  • Develop an attack lab to support advanced device analysis and attacks


Who this book is for:

This book is for security professionals and researchers who want to get started with hardware security assessment but don't know where to start. Electrical engineers who want to understand how their devices can be attacked and how to protect against these attacks will also find this book useful.

商品描述(中文翻譯)

探索嵌入式系統滲透測試,應用最常見的攻擊技術和模式

主要特點:
- 學習各種滲透測試工具和技術,以攻擊和保護您的硬體基礎設施
- 找出硬體中的漏洞,這些漏洞可能成為攻擊的進入點
- 發現安全設計產品的最佳實踐

書籍描述:
硬體滲透測試涉及利用硬體介面和通訊通道來尋找設備中的漏洞。《實用硬體滲透測試》將幫助您計劃攻擊、駭入您的嵌入式設備並保護硬體基礎設施。

在整本書中,您將看到特定設備的運作方式,探索其功能和安全性方面,並學習系統如何感知和與外界溝通。您將從零開始設置實驗室,然後逐步與先進的硬體實驗室合作。這本書將幫助您掌握嵌入式系統的全球架構並嗅探板載流量。您還將學習如何識別和正式化嵌入式系統的威脅,並理解其與生態系統的關係。之後,您將發現如何分析您的硬體並定位其可能的系統漏洞,然後探索韌體轉儲、分析和利用。最後,專注於從攻擊者的角度進行逆向工程過程,將使您了解設備是如何被攻擊的、如何被妥協的,以及如何加固設備以抵禦最常見的硬體攻擊向量。

到本書結束時,您將熟悉安全最佳實踐,並了解如何實施這些實踐以保護您的硬體。

您將學到的內容:
- 執行嵌入式系統測試並識別安全關鍵功能
- 定位關鍵安全元件和總線,並學習如何攻擊它們,發現如何轉儲和修改存儲的信息
- 理解並利用韌體與硬體之間的關係
- 識別並攻擊設備功能模塊支持的安全功能
- 開發攻擊實驗室以支持先進的設備分析和攻擊

本書適合對象:
本書適合希望開始進行硬體安全評估但不知道從何開始的安全專業人士和研究人員。希望了解其設備如何被攻擊以及如何防範這些攻擊的電機工程師也會發現本書有用。