Windows System Security Foundations: Hands-On Fundamentals for Identity, Access, and Process Control
暫譯: Windows 系統安全基礎:身份、存取與流程控制的實作基礎
O'Leary, Mike
- 出版商: Apress
- 出版日期: 2026-08-12
- 售價: $2,000
- 貴賓價: 9.5 折 $1,900
- 語言: 英文
- 頁數: 512
- 裝訂: Quality Paper - also called trade paper
- ISBN: 9798868827990
- ISBN-13: 9798868827990
-
相關分類:
kali-linux
海外代購書籍(需單獨結帳)
商品描述
Whether you're a student, a career changer, or an early-career professional, this book offers a practical, hands-on introduction to Windows security fundamentals from both offensive and defensive perspectives. With over 100 exercises designed to reinforce key concepts, readers will gain real-world experience in securing domain-joined and stand-alone Windows systems.
The journey begins with PowerShell--an essential tool for both administrators and attackers. You'll learn how PowerShell history is recorded, how credentials are managed, and how scripts can be obfuscated or monitored. From there, the book explores Windows users and groups, the logon process, access tokens, and User Account Control (UAC), providing a clear understanding of how Windows manages identity and privilege.
Readers will dive into password hash storage and cracking techniques using tools like John the Ripper, and explore how rights and privileges are assigned through group memberships. The book also covers the Windows file system in depth, including symbolic links, alternate data streams, and the Mark of the Web, along with techniques for managing file permissions and discretionary access control lists (DACLs).
You'll gain insight into Windows processes and services, learn how to view and manage them effectively, and understand key boot processes and process integrity. Each chapter builds practical skills that prepare you to think like both an attacker and a defender--essential for anyone entering the cybersecurity field.
WHAT YOU WILL LEARN
- Hands-on experience with the security of domain-joined and stand-alone Windows systems.
- Create and manage local and domain users on a Windows system, will understand how and where their password hashes are stored, and be able to crack Windows passwords with John the Ripper.
- How Windows assigns privileges and rights to users and groups, including how access tokens are assigned and how they are used in User Account Control (UAC).
- How the Windows file system is organized, including shortcuts, symbolic links, junctions, alternate data streams, and the Mark of the Web; the reader will be able to view and manage file permissions and discretionary access control lists (DACLs).
- How to view and manage processes and services in Windows.
WHO THIS BOOK IS FOR:
Ideal for computer science students, early-career professionals, and career changers looking to build a strong foundation in Windows security. Whether used in the classroom or for self-study, this book equips readers with the hands-on experience needed to succeed in cybersecurity.
商品描述(中文翻譯)
無論您是學生、轉職者,還是早期職業專業人士,本書提供了一個實用的、動手操作的 Windows 安全基礎介紹,從攻擊和防禦的角度出發。書中包含超過 100 個設計用來加強關鍵概念的練習,讀者將獲得在保護域加入和獨立 Windows 系統方面的實際經驗。
這段旅程從 PowerShell 開始——這是管理員和攻擊者都必須掌握的工具。您將學習 PowerShell 歷史如何被記錄、憑證如何管理,以及腳本如何被混淆或監控。接著,本書探討 Windows 使用者和群組、登入過程、存取權杖以及使用者帳戶控制 (UAC),提供對 Windows 如何管理身份和特權的清晰理解。
讀者將深入了解密碼雜湊存儲和破解技術,使用像 John the Ripper 這樣的工具,並探索如何通過群組成員資格分配權利和特權。本書還深入介紹 Windows 檔案系統,包括符號連結、替代資料流和網路標記,以及管理檔案權限和自由存取控制清單 (DACL) 的技術。
您將獲得對 Windows 進程和服務的洞察,學習如何有效地查看和管理它們,並理解關鍵的啟動過程和進程完整性。每一章都建立實用技能,讓您能夠像攻擊者和防禦者一樣思考——這對於任何進入網路安全領域的人來說都是必不可少的。
您將學到什麼
- 在域加入和獨立 Windows 系統的安全性方面獲得動手經驗。
- 在 Windows 系統上創建和管理本地及域使用者,了解其密碼雜湊的存儲方式和位置,並能夠使用 John the Ripper 破解 Windows 密碼。
- Windows 如何將特權和權利分配給使用者和群組,包括存取權杖的分配方式及其在使用者帳戶控制 (UAC) 中的使用。
- Windows 檔案系統的組織方式,包括快捷方式、符號連結、交接點、替代資料流和網路標記;讀者將能夠查看和管理檔案權限及自由存取控制清單 (DACL)。
- 如何查看和管理 Windows 中的進程和服務。
本書適合誰:
本書非常適合計算機科學學生、早期職業專業人士和希望在 Windows 安全領域建立堅實基礎的轉職者。無論是在課堂上使用還是自學,本書都為讀者提供了在網路安全領域成功所需的動手經驗。
作者簡介
Mike O'Leary is a professor at Towson University and was the founding director of the School of Emerging Technologies. He developed and teaches hands-on capstone courses in computer security for both undergraduate and graduate students. He coached the Towson University Cyber Defense team to the finals of the National Collegiate Cyber Defense Competition in 2010, 2012, and 2014.
作者簡介(中文翻譯)
邁克·奧利瑞 (Mike O'Leary) 是陶森大學 (Towson University) 的教授,也是新興技術學院 (School of Emerging Technologies) 的創始主任。他為本科生和研究生開發並教授實作型的計算機安全畢業專題課程。他在2010年、2012年和2014年指導陶森大學的網路防禦隊 (Cyber Defense team) 進入全國大學網路防禦競賽 (National Collegiate Cyber Defense Competition) 的決賽。