Free Trial

Safari Books Online is a digital library providing on-demand subscription access to thousands of learning resources.

Help

Syngress


21. 

FISMA and the Risk Management Framework

FISMA and the Risk Management Framework

By: Stephen D. Gantz; Daniel R. Philpott

Publisher: Syngress

Publication Date: 12-JUN-2012

Insert Date: 22-JAN-2013

Slots: 1.0

Table of Contents • Start Reading

If you are responsible for meeting federal information security requirements such as FISMA, this book is all you need to know to get a system authorized. Now in the first full revision of FISMA since its inception in 2002, a new wave of stronger security measures are now available through the efforts of the Department of Defense, Office of the Directory of National Intelligence, Committee for National Security Systems and the National Institute of Standards and Technology. Based on the new FISMA requirements for 2011 and beyond, this book catalogs the processes, procedures and specific...

22. 

Logging and Log Management

Logging and Log Management

By: Anton Chuvakin; Kevin Schmidt; Chris Phillips

Publisher: Syngress

Publication Date: 31-DEC-2012

Insert Date: 22-JAN-2013

Slots: 1.0

Table of Contents • Start Reading

Effectively analyzing large volumes of diverse logs can pose many challenges. Logging and Log Management helps to simplify this complex process using practical guidance and real-world examples. Packed with information you need to know for system, network and security logging. Log management and log analysis methods are covered in detail, including approaches to creating useful logs on systems and applications, log searching and log review. Comprehensive coverage of log management including analysis, visualization, reporting and more Includes information on different uses for logs...

23. 

Client Side Attacks and Defense

Client Side Attacks and Defense

By: Sean-Philip Oriyano; Robert Shimonski

Publisher: Syngress

Publication Date: 28-SEP-2012

Insert Date: 22-JAN-2013

Slots: 1.0

Table of Contents • Start Reading

Individuals wishing to attack a company’s network have found a new path of least resistance-the end user. A client- side attack is one that uses the inexperience of the end user to create a foothold in the user’s machine and therefore the network. Client-side attacks are everywhere and hidden in plain sight. Common hiding places are malicious Web sites and spam. A simple click of a link will allow the attacker to enter. This book presents a framework for defending your network against these attacks in an environment where it might seem impossible. The most current attacks are discussed...

24. 

Cybercrime Investigative Case Management

Cybercrime Investigative Case Management

By: Brett Brett Shavers

Publisher: Syngress

Publication Date: 17-DEC-2012

Insert Date: 22-JAN-2013

Slots: 1.0

Table of Contents • Start Reading

Investigative Case Management is a "first look" excerpted from Brett Shavers' new Syngress book, Placing the Suspect Behind the Keyboard. Investigative case management is more than just organizing your case files. It includes the analysis of all evidence collected through digital examinations, interviews, surveillance, and other data sources. In order to place a suspect behind any keyboard, supporting evidence needs to be collected and attributed to a person. This first look provides you with traditional and innovative methods of data analysis to identify and eliminate suspects...

25. 

Cybercrime Investigation Case Studies

Cybercrime Investigation Case Studies

By: Brett Brett Shavers

Publisher: Syngress

Publication Date: 17-DEC-2012

Insert Date: 22-JAN-2013

Slots: 1.0

Table of Contents • Start Reading

Cybercrime Investigation Case Studies is a "first look" excerpt from Brett Shavers' new Syngress book, Placing the Suspect Behind the Keyboard. Case studies are an effective method of learning the methods and processes that were both successful and unsuccessful in real cases. Using a variety of case types, including civil and criminal cases, with different cybercrimes, a broad base of knowledge can be gained by comparing the cases against each other. The primary goal of reviewing successful cases involving suspects using technology to facilitate crimes is to be able to find and use...

26. 

Cybercrime Case Presentation

Cybercrime Case Presentation

By: Brett Brett Shavers

Publisher: Syngress

Publication Date: 17-DEC-2012

Insert Date: 22-JAN-2013

Slots: 1.0

Table of Contents • Start Reading

Cybercrime Case Presentation is a "first look" excerpt from Brett Shavers' new Syngress book, Placing the Suspect Behind the Keyboard. Case presentation requires the skills of a good forensic examiner and great public speaker in order to convey enough information to an audience for the audience to place the suspect behind the keyboard. Using a variety of visual aids, demonstrative methods, and analogies, investigators can effectively create an environment where the audience fully understands complex technical information and activity in a chronological fashion, as if they observed...

27. 

Federated Identity Primer

Federated Identity Primer

By: Derrick Derrick Rountree

Publisher: Syngress

Publication Date: 10-DEC-2012

Insert Date: 22-JAN-2013

Slots: 1.0

Table of Contents • Start Reading

Identity authentication and authorization are integral tasks in today's digital world. As businesses become more technologically integrated and consumers use more web services, the questions of identity security and accessibility are becoming more prevalent. Federated identity links user credentials across multiple systems and services, altering both the utility and security landscape of both. In Federated Identity Primer , Derrick Rountree Explains the concepts of digital identity Describes the technology behind and implementation of federated identity systems Helps you...

28. 

The Basics of Cyber Warfare

The Basics of Cyber Warfare

By: Steve Winterfeld; Jason Andress

Publisher: Syngress

Publication Date: 28-DEC-2012

Insert Date: 22-JAN-2013

Slots: 1.0

Table of Contents • Start Reading

As part of the Syngress Basics series, The Basics of Cyber Warfare provides readers with fundamental knowledge of cyber warfare in both theoretical and practical aspects. This book explores the battlefields, participants and the tools and techniques used during today's digital conflicts. The Basics of Cyber Warfare teaches readers the principles of cyber warfare, including military doctrine, cyber doctrine, and both offensive and defensive tactics and procedures. Readers learn the basics of how to defend against: • Espionage • Hactivism • Insider threats • State-sponsored...

29. 

Violent Python

Violent Python

By: TJ TJ O'Connor

Publisher: Syngress

Publication Date: 28-DEC-2012

Insert Date: 15-DEC-2012

Slots: 1.0

Table of Contents • Start Reading

Violent Python shows you how to move from a theoretical understanding of offensive computing concepts to a practical implementation. Instead of relying on another attacker’s tools, this book will teach you to forge your own weapons using the Python programming language. This book demonstrates how to write Python scripts to automate large-scale network attacks, extract metadata, and investigate forensic artifacts. It also shows how to write code to intercept and analyze network traffic using Python, craft and spoof wireless frames to attack wireless and Bluetooth devices, and how to...

30. 

Hacking Web Apps

Hacking Web Apps

By: Mike Shema

Publisher: Syngress

Publication Date: 11-OCT-2012

Insert Date: 19-SEP-2012

Slots: 1.0

Table of Contents • Start Reading

How can an information security professional keep up with all of the hacks, attacks, and exploits on the Web? One way is to read Hacking Web Apps . The content for this book has been selected by author Mike Shema to make sure that we are covering the most vicious attacks out there. Not only does Mike let you in on the anatomy of these attacks, but he also tells you how to get rid of these worms, trojans, and botnets and how to defend against them in the future. Countermeasures are detailed so that you can fight against similar attacks as they evolve. Attacks featured in this book...

31. 

Securing SQL Server, 2nd Edition

Securing SQL Server, 2nd Edition

By: Denny Cherry

Publisher: Syngress

Publication Date: 17-JUL-2012

Insert Date: 18-SEP-2012

Slots: 1.0

Table of Contents • Start Reading

Written by Denny Cherry, a Microsoft MVP for the SQL Server product, a Microsoft Certified Master for SQL Server 2008, and one of the biggest names in SQL Server today, Securing SQL Server, Second Edition explores the potential attack vectors someone can use to break into your SQL Server database as well as how to protect your database from these attacks. In this book, you will learn how to properly secure your database from both internal and external threats using best practices and specific tricks the author uses in his role as an independent consultant while working on some of the...

32. 

Malware Forensics Field Guide for Windows Systems

Malware Forensics Field Guide for Windows Systems

By: Cameron H. Malin; Eoghan Casey; James M. Aquilina

Publisher: Syngress

Publication Date: 11-MAY-2012

Insert Date: 08-SEP-2012

Slots: 1.0

Table of Contents • Start Reading

Dissecting the dark side of the Internet with its infectious worms, botnets, rootkits, and Trojan horse programs (known as malware) is a treaterous condition for any forensic investigator or analyst. Written by information security experts with real-world investigative experience, Malware Forensics Field Guide for Windows Systems is a "tool" with checklists for specific tasks, case studies of difficult situations, and expert analyst tips. *A condensed hand-held guide complete with on-the-job tasks and checklists *Specific for Windows-based systems, the largest running OS in the...

33. 

Software Piracy Exposed

Software Piracy Exposed

By: Ron Honick

Publisher: Syngress

Publication Date: 12-APR-2005

Insert Date: 17-AUG-2012

Slots: 1.0

Table of Contents • Start Reading

This book is about software piracy--what it is and how it's done. Stealing software is not to be condoned, and theft of intellectual property and copyright infringement are serious matters, but it's totally unrealistic to pretend that it doesn't happen. Software piracy has reached epidemic proportions. Many computer users know this, the software companies know this, and once you've read the Introduction to this book, you'll understand why. Seeing how widespread software piracy is, learning how it's accomplished, and particularly how incredibly easy it is to do might surprise you. This...

34. 

Scene of the Cybercrime: Computer Forensics Handbook

Scene of the Cybercrime: Computer Forensics Handbook

By: Syngress

Publisher: Syngress

Publication Date: 11-SEP-2002

Insert Date: 17-AUG-2012

Slots: 1.0

Table of Contents • Start Reading

"Cybercrime and cyber-terrorism represent a serious challenge to society as a whole." - Hans Christian Krüger, Deputy Secretary General of the Council of Europe Crime has been with us as long as laws have existed, and modern technology has given us a new type of criminal activity: cybercrime. Computer and network related crime is a problem that spans the globe, and unites those in two disparate fields: law enforcement and information technology. This book will help both IT pros and law enforcement specialists understand both their own roles and those of the other, and show why that...

35. 

The Best Damn Windows Server 2003 Book Period

The Best Damn Windows Server 2003 Book Period

By: Debra Littlejohn Shinder; Thomas W Shinder

Publisher: Syngress

Publication Date: 14-AUG-2004

Insert Date: 17-AUG-2012

Slots: 1.0

Table of Contents • Start Reading

In keeping with past trends, full migration to this latest Microsoft Server Operating System will begin in earnest 12 months after its release, in mid-to-late 2004. This book will hit the market just as large enterprises begin the process of moving from Windows 2000 Server to Windows Server 2003. The title says everything you need to know about this book. No other book on the market combines this breadth and depth of coverage with the kind of product expertise and quality standard expected from Syngress. Every aspect of Planning, Installing, Configuring and Troubleshooting a Windows...

36. 

FISMA Certification and Accreditation Handbook

FISMA Certification and Accreditation Handbook

By: L. Taylor

Publisher: Syngress

Publication Date: 28-NOV-2006

Insert Date: 10-AUG-2012

Slots: 1.0

Table of Contents • Start Reading

The only book that instructs IT Managers to adhere to federally mandated certification and accreditation requirements. This book will explain what is meant by Certification and Accreditation and why the process is mandated by federal law. The different Certification and Accreditation laws will be cited and discussed including the three leading types of C&A: NIST, NIAP, and DITSCAP. Next, the book explains how to prepare for, perform, and document a C&A project. The next section to the book illustrates addressing security awareness, end-user rules of behavior, and incident response...

37. 

How to Cheat at Designing a Windows Server 2003 Active Directory Infrastructure

How to Cheat at Designing a Windows Server 2003 Active Directory Infrastructure

By: B. Barber; Melissa Craft; Michael Cross; Hal Kurz

Publisher: Syngress

Publication Date: 08-APR-2006

Insert Date: 10-AUG-2012

Slots: 1.0

Table of Contents • Start Reading

Windows 2003 Server is unquestionably the dominant enterprise level operating system in the industry, with 95% of all companies running it. And for the last tow years, over 50% of all product upgrades have been security related. Securing Windows Server, according to bill gates, is the company's #1 priority. The book will start off by teaching readers to create the conceptual design of their Active Directory infrastructure by gathering and analyzing business and technical requirements. Next, readers will create the logical design for an Active Directory infrastructure. Here the book...

38. 

Dictionary of Information Security

Dictionary of Information Security

By: Robert Slade

Publisher: Syngress

Publication Date: 26-SEP-2006

Insert Date: 08-AUG-2012

Slots: 1.0

Table of Contents • Start Reading

The Dictionary of Information Security is a compilation of security terms and definitions that working security professionals and IT students will find helpful. IT professionals and IT students will find this a handy reference to help them identify terms used in practice, in journals and articles, and on websites. The dictionary has complete coverage of security terms and includes cutting-edge technologies and newer terminology only now becoming accepted use amongst security practitioners. Certification candidates for security specializations like CISSP and Security+ will also find this...

39. 

BigNum Math: Implementing Cryptographic Multiple Precision Arithmetic

BigNum Math: Implementing Cryptographic Multiple Precision Arithmetic

By: Tom St Denis

Publisher: Syngress

Publication Date: 21-AUG-2006

Insert Date: 08-AUG-2012

Slots: 1.0

Table of Contents • Start Reading

Implementing cryptography requires integers of significant magnitude to resist cryptanalytic attacks. Modern programming languages only provide support for integers which are relatively small and single precision. The purpose of this text is to instruct the reader regarding how to implement efficient multiple precision algorithms. Bignum math is the backbone of modern computer security algorithms. It is the ability to work with hundred-digit numbers efficiently using techniques that are both elegant and occasionally bizarre. This book introduces the reader to the concept of bignum...

40. 

Hack the Stack

Hack the Stack

By: Michael Gregg; Stephen Watkins; George Mays; Chris Ries; Ronald M. Bandes; Brandon Franklin

Publisher: Syngress

Publication Date: 27-DEC-2006

Insert Date: 08-AUG-2012

Slots: 1.0

Table of Contents • Start Reading

This book looks at network security in a new and refreshing way. It guides readers step-by-step through the "stack" -- the seven layers of a network. Each chapter focuses on one layer of the stack along with the attacks, vulnerabilities, and exploits that can be found at that layer. The book even includes a chapter on the mythical eighth layer: The people layer. This book is designed to offer readers a deeper understanding of many common vulnerabilities and the ways in which attacker’s exploit, manipulate, misuse, and abuse protocols and applications. The authors guide the readers...