Home | Amazing | Today | Tags | Publishers | Years | Account | Search 
Gray Hat Hacking, Second Edition

Buy
Gray Hat Hacking, Second Edition, 9780071495684 (0071495681), McGraw-Hill, 2007
Uncover, plug, and ethically disclose security flaws

Prevent catastrophic network attacks by exposing security flaws, fixing them, and ethically reporting them to the software author. Fully expanded to cover the hacker's latest devious methods, Gray Hat Hacking: The Ethical Hacker's Handbook, Second Edition lays out each exploit alongside line-by-line code samples, detailed countermeasures, and moral disclosure procedures. Find out how to execute effective penetration tests, use fuzzers and sniffers, perform reverse engineering, and find security holes in Windows and Linux applications. You'll also learn how to trap and autopsy stealth worms, viruses, rootkits, adware, and malware.

  • Implement vulnerability testing, discovery, and reporting procedures that comply with applicable laws
  • Learn the basics of programming, stack operations, buffer overflow and heap vulnerabilities, and exploit development
  • Test and exploit systems using Metasploit and other tools
  • Break in to Windows and Linux systems with perl scripts, Python scripts, and customized C programs
  • Analyze source code using ITS4, RATS, FlawFinder, PREfast, Splint, and decompilers
  • Understand the role of IDA Pro scripts, FLAIR tools, and third-party plug-ins in discovering software vulnerabilities
  • Reverse-engineer software using decompiling, profiling, memory monitoring, and data flow analysis tools
  • Reveal client-side web browser vulnerabilities with MangleMe, AxEnum, and AxMan
  • Probe Windows Access Controls to discover insecure access tokens, security descriptors, DACLs, and ACEs
  • Find and examine malware and rootkits using honeypots, honeynets, and Norman SandBox technology

About the Author

Shon Harris, MCSE, CISSP, is the president of Logical Security, an educator, and a security consultant.

Allen Harper, CISSP, is the president and owner of n2netsecurity, Inc., in North Carolina.

Chris Eagle is the associate chairman of the Computer Science Department at the Naval Postgraduate School (NPS) in Monterey, California.

Jonathan Ness, CHFI, is a lead software security engineer at Microsoft.

(HTML tags aren't allowed.)

Geo-Data: The World Geographical Encyclopedia
Geo-Data: The World Geographical Encyclopedia
Gale is pleased to present the third edition of Geo-Data: The World Geographical Encyclopedia. This is the first new edition of Geo-Data since 1989, and it represents a complete revision and updating of that work. The purpose of the book remains unchanged: to provide the reader with the most detailed and comprehensive descriptions available for the...
Engineering Service Oriented Systems: A Model Driven Approach
Engineering Service Oriented Systems: A Model Driven Approach
Despite pressures of economic slowdown and the e-commerce bubble burst, moving towards e-services is a compelling necessity for todays organizations. Companies that are reluctant to adopt a service oriented architecture in their IT systems will be missing out on unprecedented opportunities to create business value with relatively small IT...
Molecular Cell Biology
Molecular Cell Biology
Like ourselves, the individual cells that form our bodies can grow, reproduce, process information, respond to stimuli, and carry out an amazing array of chemical reactions. These abilities define life. We and other multicellular organisms contain billions or trillions of cells organized into complex structures, but many organisms consist of a...

Data Mining Using SAS Applications (Chapman & Hall/CRC Data Mining and Knowledge Discovery Series)
Data Mining Using SAS Applications (Chapman & Hall/CRC Data Mining and Knowledge Discovery Series)
Most books on data mining focus on principles and furnish few instructions on how to carry out a data mining project. Data Mining Using SAS Applications not only introduces the key concepts but also enables readers to understand and successfully apply data mining methods using powerful yet user-friendly SAS macro-call files. These methods...
Cover Letters For Dummies
Cover Letters For Dummies

Now completely updated for online and on-paper job search — the only guide to new-style letters that get you in the door

Go beyond the classic cover letter! Whether you're a new or experienced job hunter, this guide offers you fresh ideas for crafting a wide variety of engaging cover letters and innovative career marketing...

Oracle SQL Tuning Pocket Reference
Oracle SQL Tuning Pocket Reference
This book is a quick-reference guide for tuning Oracle SQL. This is not a comprehensive Oracle tuning book.

The purpose of this book is to give you some light reading material on my "real world" tuning experiences and those of my company, Mark Gurry & Associates. We tune many large Oracle sites. Many of those sites, such as
...
©2021 LearnIT (support@pdfchm.net) - Privacy Policy