book

http://books.slashdot.org/books/08/02/20/1439224.shtmlAuthor: Jon EricksonPages: 472Publisher: No Starch PressRating: 9Reviewer: David MartinjakISBN: 1-59327-144-1Summary An informative, and authoritative source on hacking and exploit techniques."Hacking: The Art of Exploitation is authored by Jon Erickson and published by No Starch Press. It is the anticipated second edition of Erickson's earlier publication of the same title. I can't think of a way to s read more »
addto Add this link to... report Bury 
For some time now, Symantec has stressed that the online threat landscape shifted a few years back, away from hobbyist-driven threats towards financially driven threats. This trend has given rise to a class of malicious software known as "crimeware." I recently had the pleasure of collaborating with Markus Jakobsson on a book, "Crimeware: Understanding New Attacks and Defenses," which studies the problem and where it seems to be heading. The book is an edited volume in which we were fortunate to include read more »
addto Add this link to... report Bury 
http://books.slashdot.org/books/08/04/21/1323233.shtml[http://www.amazon.com/exec/obidos/ASIN/0321502787/c4iorg - WK]Author: Adam Shostack and Andrew StewartPages: 288 Publisher: Addison-WesleyRating: 9Reviewer: Ben Rothke ISBN: 978-0321502780Summary: Information security is highly broken; this book suggests a realistic fix.Far too much of the security industry has its roots in FUD. Billions of dollars of information security products have been sold, and for what? The book asks why is information security read more »
addto Add this link to... report Bury 
CWH Underground has reported some vulnerabilities in PHP Address Book, which can be exploited by malicious people to conduct cross-site scripting and SQL injection attacks.Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/Feature Overview - The Secunia Software Inspector: * Detects insecure versions of applications installed * Verifies that all Microsoft patches are applied * Assists you in updating your system and appl read more »
addto Add this link to... report Bury 
jiko has discovered two vulnerabilities in 1Book, which can be exploited by malicious people to compromise a vulnerable system.Be sure to check if your system is missing security updates or have insecure applications installed:http://secunia.com/software_inspector/Feature Overview - The Secunia Software Inspector: * Detects insecure versions of applications installed * Verifies that all Microsoft patches are applied * Assists you in updating your system and applications * Runs through your browser. No inst read more »
addto Add this link to... report Bury 
In my most recent blog entry, I mentioned that Markus Jakobsson and I recently collaborated on a new book: "Crimeware: Understanding New Attacks and Defenses". Network World is hosting a live chat session, and attendees will be eligible to win one of ten copies of the book. read more »
addto Add this link to... report Bury 
For some time now, Symantec has stressed that the online threat landscape shifted a few years back, away from hobbyist-driven threats towards financially driven threats. This trend has given rise to a class of malicious software known as "crimeware." I recently had the pleasure of collaborating with Markus Jakobsson on a book, "Crimeware: Understanding New Attacks and Defenses," which studies the problem read more »
addto Add this link to... report Bury 
"LAN Switch Security: What Hackers Know About Your Switches"Authors: Eric Vyncke and Christopher PaggenEditorial: Cisco PressPublication date: Sep 6, 2007ISBN-10: 1-58705-256-3ISBN-13: 978-1-58705-256-9http://www.ciscopress.com/title/1587052563Summary: The layer 2 attack and defense master piece. One of the best security books I have read, covering a topic that is a hole in the infosec industry.Score: 5/5Review:I have been promoting the need to protect access to local network infrastructures (against the i read more »
addto Add this link to... report Bury 
"Virtual Honeypots: From Botnet Tracking to Intrusion Detection"Authors: Niels Provos and Thorsten HolzEditorial: Addison-Wesley ProfessionalPublication date: July 26, 2007ISBN-10: 0321336321ISBN-13: 978-0321336323http://safari.awprofessional.com/9780321336323Summary: This book is THE current reference about honeynet technologies and solutions. Definitely a must read if you are interested on improving the intrusion detection capabilities of your IT infrastructure, and who is not? :)Score: 5/5Review:Honeyne read more »
addto Add this link to... report Bury 
"Penetration Tester's - Open Source Toolkit Volume 2"Authors: Aaron Bayles, et. al.Editorial: SyngressPublication date: October 12, 2007ISBN-10: 1597492132ISBN-13: 978-1597492133http://www.elsevierdirect.com/product.jsp?isbn=9781597492133NOTE: My copy of the book is not authored by Chris Hurley, as other book references on the Internet show, although they have the same ISBN, ¿?.Summary: A good generic penetration testing reference guide. It includes a wide range of topics, and it is just based on open-sour read more »
addto Add this link to... report Bury