Geekonomics: The Real Cost of Insecure Software
暫譯: 極客經濟學:不安全軟體的真實成本

David Rice

  • 出版商: Addison Wesley
  • 出版日期: 2007-12-09
  • 售價: $1,240
  • 貴賓價: 9.5$1,178
  • 語言: 英文
  • 頁數: 384
  • 裝訂: Hardcover
  • ISBN: 0321477898
  • ISBN-13: 9780321477897
  • 已絕版

買這商品的人也買了...

相關主題

商品描述

“The clarity of David’s argument and the strength of his conviction are truly inspiring. If you don’t believe the world of software affects the world in which you live, you owe it to yourself to read this book.”
–Lenny Zeltzer, SANS Institute faculty member and the New York Security Consulting Manager at Savvis, Inc.

 

Geekonomics stays with you long after you finish reading the book. You will reconsider every assumption you have had about software costs and benefits.”
–Slava Frid, Gemini Systems, CTO, Resilience Technology Solutions

 

“Information Security is an issue that concerns governments, companies and, increasingly, citizens. Are the computer systems and software to which we entrust our sensitive and critical information, technologies that are out of control? David Rice has written an important and welcome book that goes to the heart of this issue, and points to solutions that society as a whole needs to debate and embrace.”
–Nick Bleech, IT Security Director, Rolls-Royce

 

“If you are dependent upon software (and of course, all of us in the modern world are) this book is a fabulous discussion of how and why we should worry.”
–Becky Bace

 

The Real Cost of Insecure Software

•   In 1996, software defects in a Boeing 757 caused a crash that killed 70 people…

•   In 2003, a software vulnerability helped cause the largest U.S. power outage in decades…

•   In 2004, known software weaknesses let a hacker invade T-Mobile, capturing everything from passwords to Paris Hilton’s photos…

•   In 2005, 23,900 Toyota Priuses were recalled for software errors that could cause the cars to shut down at highway speeds…

•   In 2006 dubbed “The Year of Cybercrime,” 7,000 software vulnerabilities were discovered that hackers could use to access private information…

•   In 2007, operatives in two nations brazenly exploited software vulnerabilities to cripple the infrastructure and steal trade secrets from other sovereign nations…

Software has become crucial to the very survival of civilization. But badly written, insecure software is hurting people–and costing businesses and individuals billions of dollars every year. This must change. In Geekonomics, David Rice shows how we can change it.

 

Rice reveals why the software industry is rewarded for carelessness, and how we can revamp the industry’s incentives to get the reliability and security we desperately need and deserve. You’ll discover why the software industry still has shockingly little accountability–and what we must do to fix that.

Brilliantly written, utterly compelling, and thoroughly realistic, Geekonomics is a long-overdue call to arms. Whether you’re software user, decision maker, employee, or business owner this book will change your life…or even save it.

 

The Alarming Cost of Insecure, Badly Written Software...

and How to Finally Fix the Problem, Once and for All!

 

Six billion crash test dummies: why you’re at greater risk than you ever imagined.

You pay the price: why consumers are legally and financially responsible for the mistakes of software manufacturers.

Broken windows: how software promotes epidemic cyber crime and threatens national security.

Who runs the show?: Why software manufacturers fought against the U.S. Food and Drug Administration’s attempts to protect the U.S. blood supply.

Protecting national infrastructure: real incentives for transforming software manufacturing.

Surviving the information superhighway: practical, must-read advice in a world of insecure code.

 

Preface xiii

Acknowledgments xix

About the Author xx

 

Chapter 1: The Foundation of Civilization 1

Chapter 2: Six Billion Crash Test Dummies: Irrational Innovation and Perverse Incentives 19

Chapter 3: The Power of Weaknesses: Broken Windows and National Security 73

Chapter 4: Myopic Oversight: Blinded by Speed, Baffled by Churn 131

Chapter 5: Absolute Immunity: You Couldn’t Sue Us Even If You Wanted To 179

Chapter 6: Open Source Software: Free, But at What Cost? 243

Chapter 7: Moving Forward: Rational Incentives for a Different Future 273

 

Epilogue 321

Notes 325

Index 341

 

 

商品描述(中文翻譯)

“David 的論點清晰且堅定,令人鼓舞。如果你不相信軟體世界影響著你所生活的世界,那麼你應該讀這本書。”
–Lenny Zeltzer,SANS Institute 教職員及 Savvis, Inc. 的紐約安全顧問經理

“《Geekonomics》在你讀完這本書後仍會留在你的心中。你將重新考慮自己對軟體成本和效益的所有假設。”
–Slava Frid,Gemini Systems 首席技術官,Resilience Technology Solutions

“資訊安全是一個關乎政府、企業,並且越來越多地關乎公民的議題。我們所信任的電腦系統和軟體是否是失控的技術,承載著我們敏感和關鍵的信息?David Rice 寫了一本重要且受歡迎的書,深入探討了這個問題,並指出社會整體需要辯論和接受的解決方案。”
–Nick Bleech,IT 安全總監,Rolls-Royce

“如果你依賴於軟體(當然,現代世界中的我們都依賴),這本書是對我們應該擔心的原因和方式的精彩討論。”
–Becky Bace

不安全軟體的真實成本
• 在 1996 年,波音 757 的軟體缺陷導致了一起空難,造成 70 人喪生……
• 在 2003 年,一個軟體漏洞幫助造成了數十年來美國最大的停電……
• 在 2004 年,已知的軟體弱點讓黑客入侵 T-Mobile,竊取了從密碼到 Paris Hilton 照片的所有資料……
• 在 2005 年,23,900 輛豐田 Prius 因軟體錯誤被召回,這些錯誤可能導致汽車在高速公路上關閉……
• 在 2006 年,被稱為“網路犯罪之年”,發現了 7,000 個軟體漏洞,黑客可以利用這些漏洞訪問私人信息……
• 在 2007 年,兩國的特工公然利用軟體漏洞來癱瘓基礎設施並竊取其他主權國家的商業機密……

軟體已成為文明生存的關鍵。然而,編寫不良且不安全的軟體正在傷害人們,並每年使企業和個人損失數十億美元。這必須改變。在《Geekonomics》中,David Rice 展示了我們如何能夠改變這一點。

Rice 揭示了為什麼軟體產業因粗心大意而獲得獎勵,以及我們如何能夠重塑產業的激勵機制,以獲得我們迫切需要和應得的可靠性和安全性。你將發現為什麼軟體產業仍然缺乏令人震驚的問責制,以及我們必須做什麼來修正這一點。

《Geekonomics》文筆出色,內容引人入勝,且極具現實意義,是一個長期以來的號召。不論你是軟體使用者、決策者、員工或企業主,這本書都將改變你的生活……甚至拯救你的生命。

不安全且編寫不良的軟體的驚人成本……
以及如何最終徹底解決這個問題!

六十億個碰撞測試假人:為什麼你面臨的風險比你想像的更大。
你付出了代價:為什麼消費者在法律和財務上對軟體製造商的錯誤負有責任。
破窗效應:軟體如何促進流行的網路犯罪並威脅國家安全。
誰在掌控?:為什麼軟體製造商反對美國食品藥品監督管理局保護美國血液供應的嘗試。
保護國家基礎設施:轉變軟體製造的真正激勵。
在資訊超高速公路上生存:在不安全代碼的世界中必讀的實用建議。

前言 xiii
致謝 xix
關於作者 xx

第一章:文明的基礎 1
第二章:六十億個碰撞測試假人:非理性的創新與扭曲的激勵 19
第三章:弱點的力量:破窗效應與國家安全 73
第四章:短視的監管:被速度蒙蔽,因變化而困惑 131
第五章:絕對豁免權:即使你想也無法起訴我們 179
第六章:開源軟體:免費,但代價是什麼? 243
第七章:向前邁進:為不同的未來提供理性的激勵 273

後記 321
註釋 325
索引 341