Network Forensics: Tracking Hackers through Cyberspace (Hardcover)

Sherri Davidoff, Jonathan Ham

  • 出版商: Prentice Hall
  • 出版日期: 2012-06-13
  • 售價: $2,400
  • 貴賓價: 9.5$2,280
  • 語言: 英文
  • 頁數: 576
  • 裝訂: Hardcover
  • ISBN: 0132564718
  • ISBN-13: 9780132564717
  • 相關分類: 駭客 Hack
  • 立即出貨 (庫存 < 4)

買這商品的人也買了...

商品描述

“This is a must-have work for anybody in information security, digital forensics, or involved with incident handling. As we move away from traditional disk-based analysis into the interconnectivity of the cloud, Sherri and Jonathan have created a framework and roadmap that will act as a seminal work in this developing field.”

– Dr. Craig S. Wright (GSE), Asia Pacific Director at Global Institute for Cyber Security + Research.

 

“It’s like a symphony meeting an encyclopedia meeting a spy novel.”

–Michael Ford, Corero Network Security

 

On the Internet, every action leaves a mark–in routers, firewalls, web proxies, and within network traffic itself. When a hacker breaks into a bank, or an insider smuggles secrets to a competitor, evidence of the crime is always left behind.

 

Learn to recognize hackers’ tracks and uncover network-based evidence in Network Forensics: Tracking Hackers through Cyberspace.Carve suspicious email attachments from packet captures. Use flow records to track an intruder as he pivots through the network. Analyze a real-world wireless encryption-cracking attack (and then crack the key yourself). Reconstruct a suspect’s web surfing history–and cached web pages, too–from a web proxy. Uncover DNS-tunneled traffic. Dissect the Operation Aurora exploit, caught on the wire.

 

Throughout the text, step-by-step case studies guide you through the analysis of network-based evidence. You can download the evidence files from the authors’ web site (lmgsecurity.com), and follow along to gain hands-on experience.

 

Hackers leave footprints all across the Internet. Can you find their tracks and solve the case? Pick up Network Forensicsand find out.

 

商品描述(中文翻譯)

「這是任何從事資訊安全、數位取證或涉及事件處理的人必備的工作。隨著我們從傳統的基於磁碟的分析轉向雲端的互聯性,Sherri和Jonathan創建了一個框架和路線圖,將成為這個發展中領域的重要作品。」- Dr. Craig S. Wright(GSE),全球網絡安全與研究機構亞太區主任。

「這就像交響樂會遇見百科全書遇見間諜小說。」- Michael Ford,Corero Network Security

在互聯網上,每一個動作都會留下痕跡-在路由器、防火牆、網絡代理和網絡流量中。當黑客侵入銀行,或內部人員向競爭對手走私機密時,犯罪的證據總是留下來的。

學會識別黑客的蹤跡,並在《網絡取證:追蹤黑客穿越網絡空間》中揭示基於網絡的證據。從封包捕獲中切割可疑的電子郵件附件。使用流量記錄追蹤入侵者在網絡中的轉移。分析現實世界中的無線加密破解攻擊(然後自己破解密鑰)。從網絡代理中重建嫌疑人的網頁瀏覽歷史和緩存的網頁。揭示DNS隧道流量。解剖在網絡中捕獲到的Operation Aurora攻擊。

在整本書中,逐步的案例研究將引導您進行基於網絡的證據分析。您可以從作者的網站(lmgsecurity.com)下載證據文件,並跟著進行實踐經驗。

黑客在整個互聯網上留下足跡。您能找到他們的蹤跡並解決案件嗎?拿起《網絡取證》來找出答案。」