The Craft of System Security (Paperback)
Sean Smith, John Marchesini
- 出版商: Addison-Wesley Professional
- 出版日期: 2007-12-01
- 定價: $2,340
- 售價: 6.0 折 $1,404
- 語言: 英文
- 頁數: 592
- 裝訂: Paperback
- ISBN: 0321434838
- ISBN-13: 9780321434838
-
相關分類:
資訊安全
立即出貨 (庫存=1)
買這商品的人也買了...
-
$910$774科技 CEO 的創新 ╳ 創業學 + 資深 IT 人現身說法 20 年的實戰心得與趨勢觀察 (限量套書)
-
$1,040$832數位設計案內所《書籍篇 + 名片篇》(套書)
-
$550$429Ruby Programming-向 Ruby 之父學程式設計
-
$520$199Ruby on Rails 網路應用程式開發與建置
-
$320$288雲端工作術:Google 教我的 100 個工作方法
-
$580$458讓事情發生─專案管理之美學‧第二版 (Making Things Happen: Mastering Project Management, 2/e)
-
$490$372App 程式設計入門-iPhone、iPad, 2/e
-
$580$458精通 Objective-C 程式設計, 4/e (Programming in Objective-C, 4/e)
-
$850$808作業系統原理 (Operating System Concepts, 8/e)
-
$500$450人工智慧 ─ 現代方法 (Artificial Intelligence : A Modern Approach, 3/e)
-
$900$855電腦網路, 5/e (Computer Networks, 5/e) (授權經銷版)
-
$880$695操作介面設計模式 (Designing Interfaces)
-
$580$458架構之美-頂尖架構師於軟體設計中蘊含的智慧結晶 (Beautiful Architecture)
-
$680$537Visual Basic 報表列印不求人
-
$750$570ASP.NET 4.0 專題實務-使用 C#
-
$580$441Dreamweaver CS 5.5 全新進化
-
$580$458版本控制使用 Git (Version Control with Git: Powerful Tools and Techniques for Collaborative Software Development)
-
$690$587SQL Server 2008 R2 Reporting Services 報表服務
-
$480$408HTML5.CSS3 精緻範例辭典
-
$560$437打造安全無虞的 Web Applications-從策略制定、程式開發,到防止惡意攻擊之必備對策白皮書
-
$580$458建置無線感測網路 (Building Wireless Sensor Networks: with ZigBee, XBee, Arduino, and Processing)
-
$520$411Android 4.X 手機/平板電腦程式設計入門、應用到精通, 2/e (適用 Android 1.X~4.X)
-
$750$570ASP.NET 4.0 專題實務 II-範例應用與 4.0 新功能, 2/e
-
$750$570ASP.NET 4.0 專題實務 I─實戰入門篇使用 VB
-
$480$379Android 初學特訓班 (適用 Android 4.X~2.X 手機與平板電腦全面啟動)
商品描述
"I believe The Craft of System Security is one of the best software security books on the market today. It has not only breadth, but depth, covering topics ranging from cryptography, networking, and operating systems--to the Web, computer-human interaction, and how to improve the security of software systems by improving hardware. Bottom line, this book should be required reading for all who plan to call themselves security practitioners, and an invaluable part of every university's computer science curriculum."
--Edward Bonver, CISSP, Senior Software QA Engineer, Product Security, Symantec Corporation
"Here's to a fun, exciting read: a unique book chock-full of practical examples of the uses and the misuses of computer security. I expect that it will motivate a good number of college students to want to learn more about the field, at the same time that it will satisfy the more experienced professional."
--L. Felipe Perrone, Department of Computer Science, Bucknell University
Whether you're a security practitioner, developer, manager, or administrator, this book will give you the deep understanding necessary to meet today's security challenges--and anticipate tomorrow's. Unlike most books, The Craft of System Security doesn't just review the modern security practitioner's toolkit: It explains why each tool exists, and discusses how to use it to solve real problems.
After quickly reviewing the history of computer security, the authors move on to discuss the modern landscape, showing how security challenges and responses have evolved, and offering a coherent framework for understanding today's systems and vulnerabilities. Next, they systematically introduce the basic building blocks for securing contemporary systems, apply those building blocks to today's applications, and consider important emerging trends such as hardware-based security.
After reading this book, you will be able to
- Understand the classic Orange Book approach to security, and its limitations
- Use operating system security tools and structures--with examples from Windows, Linux, BSD, and Solaris
- Learn how networking, the Web, and wireless technologies affect security
- Identify software security defects, from buffer overflows to development process flaws
- Understand cryptographic primitives and their use in secure systems
- Use best practice techniques for authenticating people and computer systems in diverse settings
- Use validation, standards, and testing to enhance confidence in a system's security
- Discover the security, privacy, and trust issues arising from desktop productivity tools
- Understand digital rights management, watermarking, information hiding, and policy expression
- Learn principles of human-computer interaction (HCI) design for improved security
- Understand the potential of emerging work in hardware-based security and trusted computing