
Résumé
The battle between IT professionals and those who use the Internet for destructive purposes is raging--and there is no end in sight. Reports of computer crime and incidents from the CERT Coordination Center at Carnegie Mellon University more than double each year and are expected to rise. Meanwhile, viruses and worms continue to take down organizations for days.
Defend I.T.: Security by Example draws on detailed war stories to identify what was done right and what was done wrong in actual computer-security attacks, giving you the opportunity to benefit from real experiences. Approaches to securing systems and networks vary widely from industry to industry and organization to organization. By examining a variety of real-life incidents companies are too embarrassed to publicly share, the authors explain what could have been done differently to avoid the losses incurred--whether creating a different process for incident response or having better security countermeasures in place to begin with.
Inside, you'll find in-depth case studies in a variety of categories:
- Basic Hacking: Blackhat bootcamp, including mapping a network, exploiting vulnerable architecture, and launching denial-of-service attacks
- Current Methods: The latest in malicious deeds, including attacks on wireless networks, viruses and worms, and compromised Web servers
- Additional Items on the Plate: Often overlooked security measures such as developing a security policy, intrusion-detection systems, disaster recovery, and government regulations
- Old School: Classic means of compromising networks--war dialing and social engineering
- Forensics: How to investigate industrial espionage, financial fraud, and network intrusion
Aimed at both information-security professionals and network administrators, Defend I.T. shows you how to tap the best computer-security practices and industry standards to deter attacks and better defend networks.
L'auteur - Ajay Gupta
Ajay Gupta has held both client service and research positions in his more than five years of experience in the information security field. His commercial industry experience includes the healthcare, pharmaceutical, manufacturing, insurance, financial services, banking, and high tech sectors.
L'auteur - Scott Laliberte
Scott Laliberte is part of Ernst & Young's Security and Technology Solutions practice. He has extensive expertise in the areas of information systems security, network operations, and electronic commerce. He has led numerous penetration testing engagements for Fortune 500 companies and designs e-commerce architectures and security controls. He is also an instructor for the Ernst & Young's Extreme Hacking course.
Sommaire
- Basic Hacking
- Getting to Know the Enemy: Nmap the Target Network
- Home Architecture
- No Service for You!
- Current Methods
- Look, Ma, No Wires!
- Virus Outbreak I
- Virus Outbreak II: The Worm
- Changing Face
- Additional Items on the Plate
- Protecting Borders: Perimeter Defense with an IDS
- Disaster All Around
- Security Is the Best Policy
- HIPAA: Security by Regulation
- Old School
- A War-Dialing Attack
- A Low-Tech Path into the High-Tech World
- Computer Forensics
- Industrial Espionage
- Executive Fraud
- Cyber Extortion
Caractéristiques techniques
PAPIER | |
Éditeur(s) | Addison Wesley |
Auteur(s) | Ajay Gupta, Scott Laliberte |
Parution | 14/06/2004 |
Nb. de pages | 350 |
Format | 18 x 23,5 |
Couverture | Broché |
Poids | 725g |
Intérieur | Noir et Blanc |
EAN13 | 9780321197672 |
ISBN13 | 978-0-321-19767-2 |
Avantages Eyrolles.com
Consultez aussi
- Les meilleures ventes en Graphisme & Photo
- Les meilleures ventes en Informatique
- Les meilleures ventes en Construction
- Les meilleures ventes en Entreprise & Droit
- Les meilleures ventes en Sciences
- Les meilleures ventes en Littérature
- Les meilleures ventes en Arts & Loisirs
- Les meilleures ventes en Vie pratique
- Les meilleures ventes en Voyage et Tourisme
- Les meilleures ventes en BD et Jeunesse
- Informatique Informatique d'entreprise Sécurité
- Informatique Réseaux et télecommunications Ouvrages généraux
- Informatique Réseaux et télecommunications Protocoles et standards
- Informatique Réseaux et télecommunications Administration réseau
- Informatique Réseaux et télecommunications Sécurité réseau
- Informatique Réseaux et télecommunications Sécurité réseau Sécurité internet