The Best of TaoSecurity Blog, Volume 3: Current Events, Law, Wise People, History, and Appendices
暫譯: TaoSecurity 博客精華,第 3 卷:時事、法律、智者、歷史與附錄
Bejtlich, Richard
- 出版商: Taosecurity LLC
- 出版日期: 2020-11-06
- 售價: $980
- 貴賓價: 9.5 折 $931
- 語言: 英文
- 頁數: 486
- 裝訂: Quality Paper - also called trade paper
- ISBN: 1952809053
- ISBN-13: 9781952809057
-
相關分類:
資訊安全
海外代購書籍(需單獨結帳)
相關主題
商品描述
Since 2003, cybersecurity author Richard Bejtlich has been publishing posts on TaoSecurity Blog, a site with 15 million views since 2011. Now, after re-reading over 3,000 stories and approximately one million words, he has selected and republished the very best entries from 17 years of writing, along with commentaries and additional material. In the third volume of the TaoSecurity Blog series, Mr. Bejtlich addresses the evolution of his security mindset, influenced by current events and advice from his so-called set of "wise people." He talks about why speed is not the key to John Boyd's OODA loop, and why security strategies designed for and by the "security 1%" may be irrelevant at best, or harmful at worst, for the remaining "99%". His history section explores the origins of the terms threat hunting and indicators of compromise, and reveals who really created the quote "there are two types of companies." His chapter on law highlights traps that might catch security teams, with advice to chief information security officers.This volume contains some of Mr. Bejtlich's favorite posts, such as Marcus Ranum's answer to what happens when security teams confront professionals, or how the Internet continues to function despite constant challenges, or reactions to comments by Dan Geer, Bruce Schneier, Marty Roesch, and other security leaders. Mr. Bejtlich has written new commentaries to accompany each post, some of which would qualify as blog entries in their own right. Read how the security industry, defensive methodologies, and strategies to improve national security have evolved in this new book, written by one of the authors who has seen it all and survived to blog about it.
商品描述(中文翻譯)
自2003年以來,網路安全作家Richard Bejtlich在TaoSecurity Blog上發表文章,自2011年以來該網站的瀏覽量已達1500萬次。現在,在重新閱讀了超過3000篇故事和約一百萬字後,他選擇並重新出版了17年寫作中最優秀的文章,並附上評論和額外的材料。在TaoSecurity Blog系列的第三卷中,Bejtlich先生探討了他的安全思維的演變,這受到當前事件和他所謂的“智者”建議的影響。他談到為什麼速度不是John Boyd的OODA循環的關鍵,以及為什麼為“安全1%”設計的安全策略對剩下的“99%”來說,充其量可能是無關緊要的,最糟則可能是有害的。他的歷史部分探討了“威脅獵捕”(threat hunting)和“妥協指標”(indicators of compromise)這些術語的起源,並揭示了誰真正創造了“有兩種類型的公司”這句話。他的法律章節強調了可能會讓安全團隊陷入困境的陷阱,並向首席資訊安全官提供建議。本卷包含了一些Bejtlich先生最喜愛的文章,例如Marcus Ranum對安全團隊面對專業人士時會發生什麼的回答,或是儘管面臨不斷挑戰,互聯網如何繼續運作,或是對Dan Geer、Bruce Schneier、Marty Roesch及其他安全領導者評論的反應。Bejtlich先生為每篇文章撰寫了新的評論,其中一些甚至可以獨立成為部落格文章。閱讀這本新書,了解安全產業、防禦方法論以及改善國家安全的策略如何演變,這是由一位見證過一切並存活下來以撰寫部落格的作者所寫。