How to Hack Like a Ghost: Breaching the Cloud

Flow, Sparc

  • 出版商: No Starch Press
  • 出版日期: 2021-05-03
  • 定價: $1,360
  • 售價: 9.5$1,292
  • 貴賓價: 9.0$1,224
  • 語言: 英文
  • 頁數: 264
  • 裝訂: Quality Paper - also called trade paper
  • ISBN: 1718501269
  • ISBN-13: 9781718501263
  • 相關分類: 資訊安全駭客 Hack
  • 立即出貨 (庫存 < 3)

買這商品的人也買了...

商品描述

How to Hack Like a Ghost takes you deep inside the mind of a hacker as you carry out a fictionalized attack against a tech company, teaching cutting-edge hacking techniques along the way.

Go deep into the mind of a master hacker as he breaks into a hostile, cloud-based security environment. Sparc Flow invites you to shadow him every step of the way, from recon to infiltration, as you hack a shady, data-driven political consulting firm. While the target is fictional, the corporation's vulnerabilities are based on real-life weaknesses in today's advanced cybersecurity defense systems. You'll experience all the thrills, frustrations, dead-ends, and eureka moments of his mission first-hand, while picking up practical, cutting-edge techniques for penetrating cloud technologies.

There are no do-overs for hackers, so your training starts with basic OpSec procedures, using an ephemeral OS, Tor, bouncing servers, and detailed code to build an anonymous, replaceable hacking infrastructure guaranteed to avoid detection. From there, you'll examine some effective recon techniques, develop tools from scratch, and deconstruct low-level features in common systems to gain access to the target. Spark Flow's clever insights, witty reasoning, and stealth maneuvers teach you how to think on your toes and adapt his skills to your own hacking tasks.

You'll learn:
- How to set up and use an array of disposable machines that can renew in a matter of seconds to change your internet footprint
- How to do effective recon, like harvesting hidden domains and taking advantage of DevOps automation systems to trawl for credentials
- How to look inside and gain access to AWS's storage systems
- How cloud security systems like Kubernetes work, and how to hack them
- Dynamic techniques for escalating privileges

Packed with interesting tricks, ingenious tips, and links to external resources, this fast-paced, hands-on guide to penetrating modern cloud systems will help hackers of all stripes succeed on their next adventure.

商品描述(中文翻譯)

《如何像鬼魅一樣入侵》帶你深入一名駭客的思維,透過對一家科技公司進行虛構攻擊的過程,教授尖端的駭客技術。

《Sparc Flow》將你帶入一名大師駭客的思維,他將闖入一個具有敵意的基於雲端的安全環境。你將有機會跟隨他的每一步,從偵查到滲透,一起駭入一家不光彩的、以數據為基礎的政治諮詢公司。雖然目標是虛構的,但這家公司的弱點基於當今先進的網絡安全防禦系統中真實存在的漏洞。你將第一手體驗他的任務中的所有刺激、挫折、死胡同和頓悟時刻,同時學習穿越雲端技術的實用、尖端技巧。

對於駭客來說,沒有重新來過的機會,所以你的訓練從基本的操作安全程序開始,使用短暫的作業系統、Tor、彈跳伺服器和詳細的代碼來建立一個匿名、可替換的駭客基礎設施,以確保不被檢測到。從那裡,你將研究一些有效的偵查技術,從頭開始開發工具,並解構常見系統的低級功能,以獲取對目標的訪問權限。Spark Flow的聰明見解、機智的推理和隱蔽的操作將教你如何靈活應對並將他的技巧應用於你自己的駭客任務。

你將學到:
- 如何建立和使用一系列可在幾秒鐘內更新的一次性機器,以改變你的網絡足跡
- 如何進行有效的偵查,例如收集隱藏域名和利用DevOps自動化系統搜索憑證
- 如何查看並獲取對AWS存儲系統的訪問權限
- 雲端安全系統如Kubernetes的運作原理,以及如何駭入它們
- 提升權限的動態技巧

這本充滿有趣技巧、巧妙提示和外部資源連結的快節奏、實踐性指南,將幫助各種駭客在下一次冒險中取得成功。

作者簡介

Sparc Flow is a computer security expert specializing in ethical hacking, who has presented his research at international security conferences like Black Hat, DEF CON, Hack In The Box, and more. While his day job consists mainly of performing penetration tests against companies so they can patch vulnerabilities, his passion is writing and sharing hacking knowledge through his acclaimed Hack the Planet books.

作者簡介(中文翻譯)

「Sparc Flow」是一位專精於道德駭客技術的電腦安全專家,曾在國際安全會議如Black Hat、DEF CON、Hack In The Box等場合發表他的研究成果。儘管他的日常工作主要是對企業進行滲透測試以修補漏洞,但他的熱情在於透過他廣受好評的《Hack the Planet》系列書籍來撰寫和分享駭客知識。