• Fri frakt över 249 kr
  • •
  • Snabba leveranser
  • •
  • Billiga böcker
Kundservice

Du är på sajten för privatpersoner.

Företag, bibliotek eller offentlig verksamhet?

Du handlar på classic.bokus.com, där alla dina funktioner finns intakta.
Till classic.bokus.com
Bokus logotyp. Gå till startsidan.
  • Erbjudanden
  • Nyheter
  • Student
  • Topplistor
  • Barn & ungdom
  • Bokus Play
  • E-böcker
  • Pocketböcker
  • Spel & pussel

10% rabatt på allt med kod NYSTART10 →

Sidfot

Mina sidor

    Hjälp

    • Kundservice
    • Vanliga frågor och svar
    • Frakt och leverans
    • Retur vid ångerrätt
    • Reklamera vara
    • Betalning
    • Köpvillkor
    • Allmänna villkor
    • Information om webbplatsens tillgänglighet

    Om Bokus

    • Om oss
    • Pressrum
    • För studenter
    • För företag
    • För bibliotek och offentlig verksamhet
    • För leverantörer
    • Hållbarhet

    Populärt

    • Aktuella erbjudanden
    • Presentkort
    • Studentlitteratur
    • Nya böcker
    • Topplistor
    • Signerade böcker
    • Engelska böcker

    Inspiration

    • Boktips
    • BookTok
    • Populära bokserier
    • Barnbokskaraktärer
    • Populära författare
    Logotyp för Bokus
    Följ oss på Facebook (extern länk)Följ oss på Instagram (extern länk)Följ oss på YouTube (extern länk)Följ oss på TikTok (extern länk)
    bokus @ CookiesAnpassa cookiesIntegritetspolicyKöpvillkor
    Till Citymail hemsida (extern länk)Till Budbee hemsida (extern länk)Till Postnord hemsida (extern länk)Till Schenker hemsida (extern länk)Till Early Bird hemsida (extern länk)Till Walleys hemsida (extern länk)
    1. Data och IT
    2. Nätverk och kommunikation

    InfoSecurity 2008 Threat Analysis

    AvCraig Schiller,Seth Fogie

    Häftad, Engelska, 2007

    532 kr

    Beställningsvara. Skickas inom 10-15 vardagar. Fri frakt över 249 kr.

    Beskrivning

    An all-star cast of authors analyze the top IT security threats for 2008 as selected by the editors and readers of Infosecurity Magazine. This book, compiled from the Syngress Security Library, is an essential reference for any IT professional managing enterprise security. It serves as an early warning system, allowing readers to assess vulnerabilities, design protection schemes and plan for disaster recovery should an attack occur. Topics include Botnets, Cross Site Scripting Attacks, Social Engineering, Physical and Logical Convergence, Payment Card Industry (PCI) Data Security Standards (DSS), Voice over IP (VoIP), and Asterisk Hacking.

    Each threat is fully defined, likely vulnerabilities are identified, and detection and prevention strategies are considered. Wherever possible, real-world examples are used to illustrate the threats and tools for specific solutions.

    * Provides IT Security Professionals with a first look at likely new threats to their enterprise
    * Includes real-world examples of system intrusions and compromised data
    * Provides techniques and strategies to detect, prevent, and recover
    * Includes coverage of PCI, VoIP, XSS, Asterisk, Social Engineering, Botnets, and Convergence

    Produktinformation

    • Utgivningsdatum:2007-11-07
    • Mått:191 x 235 x 30 mm
    • Vikt:790 g
    • Format:Häftad
    • Språk:Engelska
    • Antal sidor:480
    • Förlag:Elsevier Science
    • ISBN:9781597492249

    Utforska kategorier

    • Nätverk och kommunikation inom Data och IT
    • IT-säkerhet inom Data och IT

    Mer om författaren

    Craig A Schiller (CISSP-ISSMP, ISSAP) is the CISO for Portland State University and President of Hawkeye Security Training, LLC. He is the primary author of the first Generally Accepted System Security Principles. He is a co-author of “Combating Spyware in the Enterprise” and “Winternals” from Syngress, several editions of the Handbook of Information Security Management, and a contributing author to Data Security Management. Mr. Schiller has co-founded two ISSA chapters, the Central Plains chapter and the Texas Gulf Coast Chapter. Seth Fogie is the VP of Dallas-based Airscanner Corporation where he oversees the development of security software for the Window Mobile (Pocket PC) platform. He has co-authored numerous technical books on information security, including the top selling "Maximum Wireless Security" from SAMS, and "Security Warrior" from O'Reilly. Seth frequently speaks at IT and security conferences/seminars, including Black Hat, Defcon, CSI, and Dallascon. In addition, Seth has co-authored the HIPAA medical education course for the Texas Medical Associate and is acting Site Host for Security at the "InformIT.com" website where he writes articles and reviews/manages weekly information security related books and articles Colby DeRodeff, GCIA, GCNA; Manager, Technical Marketing, ArcSight, has spent nearly a decade working with global organizations guiding best practices and empowering the use of ArcSight products across all business verticals including government, finance and healthcare. In this capacity he has been exposed to countless security and organizational challenges giving him a unique perspective on today’s information security challenges. Recognized as an expert in the field of IT security, Colby’s primary areas of focus are insider threat, the convergence of physical and logical security, as well as enterprise security and information management. As the leader of ArcSight’s Technical Marketing team, Colby drives content for customers to more easily identify and solve complex real-world issues. He has helped ArcSight grow from the earliest days as a sales consultant and implementation engineer, to joining the development organization where he was one of the founders of ArcSight’s Strategic Application Solutions team delivering content solutions to solve real world problems such as compliance and insider threat. Colby has held several consulting positions at companies; such as Veritas where he was responsible for deploying their global IDS infrastructure and ThinkLink Inc, where he maintained an enterprise VoIP network.Colby attended San Francisco State University and holds both the SANS Intrusion Analyst (GCIA) and Network Auditor (GCNA) certifications Michael Gregg is the President of Superior Solutions, Inc. and has more than 20 years' experience in the IT field. He holds two associate’s degrees, a bachelor’s degree, and a master’s degree and is certified as CISSP, MCSE, MCT, CTT+, A+, N+, Security+, CNA, CCNA, CIW Security Analyst, CCE, CEH, CHFI, CEI, DCNP, ES Dragon IDS, ES Advanced Dragon IDS, and TICSA. Michael's primary duty is to serve as project lead for security assessments, helping businesses and state agencies secure their IT resources and assets. Michael has authored four books, including Inside Network Security Assessment, CISSP Prep Questions, CISSP Exam Cram2, and Certified Ethical Hacker Exam Prep2. He has developed four high-level security classes, including Global Knowledge's Advanced Security Boot Camp, Intense School's Professional Hacking Lab Guide, ASPE's Network Security Essentials, and Assessing Network Vulnerabilities. He has written over 50 articles featured in magazines and Web sites, including Certification Magazine, GoCertify, The El Paso Times, and SearchSecurity. Michael is also a faculty member of Villanova University and creator of Villanova's college-level security classes, including Essentials of IS Security, Mastering IS Security, and Advanced Security Management. He also serves as a site expert for four TechTarget sites, including SearchNetworking, SearchSecurity, SearchMobileNetworking, and SearchSmallBiz. He is a member of the TechTarget Editorial Board. Paul Schooping (CISSP) is a Security Engineer for a leading global technology services company. He currently participates in the design, implementation and support of global security and privacy solutions. Paul’s background includes experience as the Global Antivirus and Vulnerability Manager for a Fortune 500 Company and the development of an enterprise Emergency Security Response Team. His specialties include Antivirus, vulnerability assessment, reverse engineering of malware, and encryption technologies. Paul holds a bachelors degree in psychology and formerly served in multiple youth ministry positions.

    Innehållsförteckning

    • ForewordPart I: BotnetsChapter 1 Botnets: A Call to ActionIntroductionThe Killer Web AppHow Big is the Problem?The Industry RespondsSummarySolutions Fast TrackFrequently Asked QuestionsChapter 2 Botnets OverviewWhat is a Botnet?The Botnet Life CycleWhat Does a Botnet Do?Botnet EconomicSummarySolutions Fast TrackFrequently Asked QuestionsPart II Cross Site Scripting AttacksChapter 3 Cross-site Scripting FundamentalsIntroductionWeb Application SecurityXML and AJAX IntroductionSummarySolutions Fast TrackFrequently Asked QuestionsChapter 4 XSS TheoryIntroductionGetting XSS'edDOM-based XSS in DetailRedirectionCSRFFlash, QuickTime, PDF, Oh MyHTTP Response InjectionSource vs. DHTML RealityBypassing XSS Length LimitationsXSS Filter EvasionSummarySolutions Fast TrackFrequently Asked QuestionsChapter 5 XSS Attack MethodsIntroductionHistory StealingIntranet HackingXSS DefacementsSummarySolutions Fast TrackFrequently Asked QuestionsReferencesPart III Physical and Logical Security ConvergenceChapter 6 Protecting CriticalInfrastructure: Process Control and SCADAIntroductionTechnology Background: Process Control SystemsWhy Convergence?Threats and ChallengesConclusion Chapter 7 Final ThoughtIntroductionFinal Thoughts from William CrowerFinal Thoughts from Dan DunkelFinal Thoughts from Brian Contos Final Thoughts from Colby DeRodeoffPart IV PCI ComplianceChapter 8 Why PCi is ImportantIntroductionWhat is PCI?Overview of PCI RequirementsRisks and ConsequencesBenefits of ComplianceSummary Solutions Fast TrackFrequently Asked QuestionsChapter 9 Protect Cardholder Data Protecting Cardholder DataPCI Requirement 3: Protect Stored Cardholder Data PCI Requirement 4~Encrypt Transmission of Cardholder Data Across Open, Public NetworksUsing Compensating ControlsMapping Out a StrategyThe Absolute EssentialsSummarySolutions Fast TrackFrequently Asked QuestionsPart V Asterisk and VolP HackingChapter 10 Understanding and Taking Advantage of VolP ProtocolsIntroduction Your Voice to DataMaking Your Voice SmallerSummarySolutions Fast TrackFrequently Asked QuestionsChapter 11 Asterisk Hardware NinjutsuIntroductionSerialMotionModemsFun with DialingLegalities and TipsSummarySolutions Fast TrackFrequently Asked QuestionsPart VI Hack the StackChapter 12 Social EngineeringIntroductionAttacking the People LayerDefending the People LayerMaking the Case for Stronger SecurityPeople Layer Security ProjectSummarySolutions Fast TrackFrequently Asked Questions Index