Reconnaissance for Ethical Hackers: Focus on the starting point of data breaches and explore essential steps for successful pentesting
暫譯: 道德駭客的偵查:聚焦資料洩漏的起點,探索成功滲透測試的關鍵步驟

Singh, Glen D.

  • 出版商: Packt Publishing
  • 出版日期: 2023-08-04
  • 售價: $1,710
  • 貴賓價: 9.5$1,625
  • 語言: 英文
  • 頁數: 430
  • 裝訂: Quality Paper - also called trade paper
  • ISBN: 1837630631
  • ISBN-13: 9781837630639
  • 相關分類: 駭客 Hack
  • 海外代購書籍(需單獨結帳)

商品描述

Use real-world reconnaissance techniques to efficiently gather sensitive information on systems and networks
Purchase of the print or Kindle book includes a free PDF eBook

Key Features

  • Learn how adversaries use reconnaissance techniques to discover security vulnerabilities on systems
  • Develop advanced open source intelligence capabilities to find sensitive information
  • Explore automated reconnaissance and vulnerability assessment tools to profile systems and networks

Book Description

This book explores reconnaissance techniques – the first step in discovering security vulnerabilities and exposed network infrastructure. It aids ethical hackers in understanding adversaries’ methods of identifying and mapping attack surfaces, such as network entry points, which enables them to exploit the target and steal confidential information.
Reconnaissance for Ethical Hackers helps you get a comprehensive understanding of how threat actors are able to successfully leverage the information collected during the reconnaissance phase to scan and enumerate the network, collect information, and pose various security threats. This book helps you stay one step ahead in knowing how adversaries use tactics, techniques, and procedures (TTPs) to successfully gain information about their targets, while you develop a solid foundation on information gathering strategies as a cybersecurity professional. The concluding chapters will assist you in developing the skills and techniques used by real adversaries to identify vulnerable points of entry into an organization and mitigate reconnaissance-based attacks.
By the end of this book, you’ll have gained a solid understanding of reconnaissance, as well as learned how to secure yourself and your organization without causing significant disruption.

What you will learn

  • Understand the tactics, techniques, and procedures of reconnaissance
  • Grasp the importance of attack surface management for organizations
  • Find out how to conceal your identity online as an ethical hacker
  • Explore advanced open source intelligence (OSINT) techniques
  • Perform active reconnaissance to discover live hosts and exposed ports
  • Use automated tools to perform vulnerability assessments on systems
  • Discover how to efficiently perform reconnaissance on web applications
  • Implement open source threat detection and monitoring tools

Who this book is for

If you are an ethical hacker, a penetration tester, red teamer, or any cybersecurity professional looking to understand the impact of reconnaissance-based attacks, how they take place, and what organizations can do to protect against them, then this book is for you. Cybersecurity professionals will find this book useful in determining the attack surface of their organizations and assets on their network, while understanding the behavior of adversaries.

商品描述(中文翻譯)

使用現實世界的偵查技術有效地收集系統和網絡上的敏感信息
購買印刷版或 Kindle 書籍包括免費的 PDF 電子書

主要特點

- 學習對手如何使用偵查技術來發現系統上的安全漏洞
- 發展高級開源情報能力以尋找敏感信息
- 探索自動化偵查和漏洞評估工具以分析系統和網絡

書籍描述

本書探討偵查技術——發現安全漏洞和暴露的網絡基礎設施的第一步。它幫助道德駭客理解對手識別和映射攻擊面的方法,例如網絡進入點,這使他們能夠利用目標並竊取機密信息。
《道德駭客的偵查》幫助您全面了解威脅行為者如何成功利用在偵查階段收集的信息來掃描和列舉網絡、收集信息並造成各種安全威脅。本書幫助您在了解對手如何使用戰術、技術和程序(TTPs)成功獲取目標信息的同時,為您作為網絡安全專業人士建立堅實的信息收集策略基礎。結尾章節將幫助您發展真實對手用來識別組織中脆弱進入點的技能和技術,並減輕基於偵查的攻擊。
在本書結束時,您將對偵查有堅實的理解,並學會如何在不造成重大干擾的情況下保護自己和您的組織。

您將學到什麼

- 理解偵查的戰術、技術和程序
- 掌握攻擊面管理對組織的重要性
- 瞭解如何作為道德駭客在線隱藏您的身份
- 探索高級開源情報(OSINT)技術
- 執行主動偵查以發現活動主機和暴露端口
- 使用自動化工具對系統進行漏洞評估
- 發現如何有效地對網絡應用程序進行偵查
- 實施開源威脅檢測和監控工具

本書適合誰

如果您是道德駭客、滲透測試員、紅隊成員或任何希望了解基於偵查的攻擊影響、如何發生以及組織可以採取什麼措施來防範這些攻擊的網絡安全專業人士,那麼本書適合您。網絡安全專業人士將發現本書對於確定其組織和網絡資產的攻擊面以及理解對手行為非常有用。

目錄大綱

  1. Fundamentals of Reconnaissance
  2. Setting up a Reconnaissance Lab
  3. Understanding Passive Reconnaissance
  4. Domain and DNS Intelligence
  5. Organizational Infrastructure Intelligence
  6. Imagery, People and Signals Intelligence
  7. Working with Active Reconnaissance
  8. Performing Vulnerability Assessments
  9. Delving into Website Reconnaissance
  10. Implementing Recon Monitoring and Detection Systems

目錄大綱(中文翻譯)


  1. Fundamentals of Reconnaissance

  2. Setting up a Reconnaissance Lab

  3. Understanding Passive Reconnaissance

  4. Domain and DNS Intelligence

  5. Organizational Infrastructure Intelligence

  6. Imagery, People and Signals Intelligence

  7. Working with Active Reconnaissance

  8. Performing Vulnerability Assessments

  9. Delving into Website Reconnaissance

  10. Implementing Recon Monitoring and Detection Systems

最後瀏覽商品 (20)