Mostrando entradas con la etiqueta Seguridad. Mostrar todas las entradas
Mostrando entradas con la etiqueta Seguridad. Mostrar todas las entradas

miércoles, 11 de junio de 2008

Configuring NetScreen Firewalls

Configuring NetScreen Firewalls covers all of the aspects of Juniper's NetScreen product line, from SOHO devices to Enterprise NetScreen firewalls. Coverage includes basic policy creation and administration, advanced troubleshooting techniques, the NetScreen Security Manager and VPN configuration. In addition, this book covers both the WebUI and the command line interface of NetScreen ScreenOS 5.0. as well as the NetScreen Security Manager (NSM). As a special bonus, Juniper Networks provides detailed coverage of the new features and enhancements included with ScreenOS 5.1.


Publisher:
Syngress (January 26, 2005)
Pages: 600
Language: English
ISBN-10: 1932266399
ISBN-13: 978-1932266399
Format:
PDF


Descarga/Download

jueves, 5 de junio de 2008

OSSEC HIDS Host-Based Intrusion Detection Guide

This book is the definitive guide on the OSSEC Host-based Intrusion Detection system and frankly, to really use OSSEC you are going to need a definitive guide. Documentation has been available since the start of the OSSEC project but, due to time constraints, no formal book has been created to outline the various features and functions of the OSSEC product. This has left very important and powerful features of the product undocumented...until now! The book you are holding will show you how to install and configure OSSEC on the operating system of your choice and provide detailed examples to help prevent and mitigate attacks on your systems.


Publisher:
Syngress (February 18, 2008)
Pages: 416
Language: English
ISBN-10: 159749240X
ISBN-13: 978-1597492409
Format:
PDF


Descarga/Download

Effective Oracle Database 10g Security by Design

Oracle expert David Knox has written the most practical, up-to-date book on Oracle Database 10g security available. With an emphasis on real-world problems and detailed solutions, Effective Oracle Database 10g Security by Design provides all the information you need to develop and deploy secure database applications. The entire security cycle is covered--from identification and authentication to fine-grained access control and encryption to effective auditing techniques. The material is presented with comprehensive yet easy-to-understand examples that show how to use all the security technologies in a complementary way.


Publisher:
McGraw-Hill Osborne (June 10, 2004)
Pages: 560
Language: English
ISBN-10: 0072231300
ISBN-13: 978-0072231304
Format:
CHM


Descarga/Download

lunes, 2 de junio de 2008

IPsec Virtual Private Network Fundamentals

IPsec Virtual Private Network Fundamentals provides a basic working knowledge of IPsec on various Cisco routing and switching platforms. It provides the foundation necessary to understand the different components of Cisco IPsec implementation and how it can be successfully implemented in a variety of network topologies and markets (service provider, enterprise, financial, government). This book views IPsec as an emerging requirement in most major vertical markets, explaining the need for increased information authentication, confidentiality, and non-repudiation for secure transmission of confidential data. The book is written using a layered approach, starting with basic explanations of why IPsec was developed and the types of organizations relying on IPsec to secure data transmissions. It then outlines the basic IPsec/ISAKMP fundamentals that were developed to meet demand for secure data transmission. The book covers the design and implementation of IPsec VPN architectures using an array of Cisco products, starting with basic concepts and proceeding to more advanced topics including high availability solutions and public key infrastructure (PKI). Sample topology diagrams and configuration examples are provided in each chapter to reinforce the fundamentals expressed in text and to assist readers in translating concepts into practical deployment scenarios. Additionally, comprehensive case studies are incorporated throughout to map topics to real-world solutions.


Publisher:
Cisco Press (Jul 19, 2006)
Pages: 480
Language: English
ISBN-10: 1-58705-207-5
ISBN-13: 978-1-58705-207-1
Format:
CHM


Descarga/Download

sábado, 31 de mayo de 2008

Security Sage's Guide to Hardening the Network Infrastructure

Security Sage's Guide to Hardening the Network Infrastructure will be the only publication that provides security and Information Technology (IT) professionals an in-depth and comprehensive view of network devices, protocols and architectures. It provides detailed guidance on real-world network threats and exposures. While most network security books focus on ancillary topics, such as operating systems, RDBMS, groupware, and other applications, this book will concentrate strictly on the nuts and bolts of networks, such as routers, firewalls, Intrusion Detection Systems (IDS) and the networking protocols that work in congress with them. It has over 200 pages dedicated to the most up-to-date network layer attacks and mitigation techniques across an wide assortment of vendors and not just the typical attention paid to market leaders such as Cisco and Checkpoint. This expanded breadth will help reach a wider range of network engineers who may not have the budget to purchase and install best-of-breed hardware, but want to know how to make the most out of what they do have. In addition, this book provides detailed network architecture and design techniques to help lessen the impact or feasibility of potential attacks. This book focuses on both perimeter and internal networks, giving IT and security administrators a complete picture of how they should design and protect their enterprises. Other books may concentrate on perimeter security or host configuration yet ignore the infrastructure connecting the two. While others tend to focus on theory and basic security background, this publication will dive right into the content and help provide real solutions to common IT security problems.


Publisher:
Syngress (March 1, 2004)
Pages: 608
Language: English
ISBN-10: 1931836019
ISBN-13: 978-1931836012
Format:
PDF


Descarga/Download

viernes, 30 de mayo de 2008

InfoSec Career Hacking: Sell Your Skillz, Not Your Soul

A Technical Guide to Landing (and Keeping) a Job in the Information Security Field

Do you analyze every packet that crosses your home network just because you can? Do you spend countless hours coding applications for the sheer joy and challenge? Do you have a coin jar labeled “Trip to DEFCON/Black Hat Fund”? If you want to refine those skills to land a top InfoSec job and employer-funded trip to Vegas next year, you’ve come to the right place. The authors of this book have all succeeded in applying their inherent hacker skills to build successful InfoSec careers. From them you will learn about the variety of available jobs and the skills required to excel in each one. Also, the authors provide advice on how to develop the necessary management and personal skills required to hack your way to the top.


Publisher:
Syngress (April 1, 2005)
Pages: 448
Language: English
ISBN-10: 1597490113
ISBN-13: 978-1597490115
Format:
PDF


Descarga/Download

How to Cheat at Deploying and Securing RFID

RFID is a method of remotely storing and receiving data using devices called RFID tags. RFID tags can be small adhesive stickers containing antennas that receive and respond to transmissions from RFID transmitters. RFID tags are used to identify and track everything from Exxon EZ pass to dogs to beer kegs to library books.

For security professionals needing to get up and running fast with the topic of RFID, this How to Cheat approach to the topic is the perfect "just what you need to know" book!


Publisher:
Syngress (October 29, 2007)
Pages: 448
Language: English
ISBN-10: 1597492302
ISBN-13: 978-1597492300
Format:
PDF


Descarga/Download

viernes, 23 de mayo de 2008

Web Application Vulnerabilities: Detect, Exploit, Prevent

In this book, we aim to describe how to make a computer bend to your will by finding and exploiting vulnerabilities specifically in Web applications. We will describe common security issues in Web applications, tell you how to find them, describe how to exploit them, and then tell you how to fix them. We will also cover how and why some hackers (the bad guys) will try to exploit these vulnerabilities to achieve their own end. We will also try to explain how to detect if hackers are actively trying to exploit vulnerabilities in your own Web applications.


Publisher:
Syngress (September 28, 2007)
Pages: 480
Language: English
ISBN-10: 1597492094
ISBN-13: 978-1597492096
Format:
PDF


Descarga/Download

lunes, 19 de mayo de 2008

Cisco Access Control Security: AAA Administrative Services

As network infrastructures evolve, it is increasingly important that access to vital corporate resources is vigilantly monitored and controlled. The Cisco identity management solutions, including Cisco Secure Access Control Server (CSACS), address this requirement, enabling security, control, and administration of the growing population of users that connect to corporate networks. CSACS, an essential component of the Cisco Identity Based Networking Services (IBNS) architecture, extends access security by combining authentication, user and administrator access, and policy control from a centralized identity-networking framework. This allows greater flexibility and mobility, increased security, and user productivity gains.

Cisco Access Control Security provides you with the skills needed to configure authentication, authorization, and accounting (AAA) services on Cisco devices. Separated into three parts, this book presents hard-to-find configuration details of centralized identity networking solutions. Part I provides an overview of the AAA architecture, complete with discussions of configuring Cisco routers for AAA. Part II addresses enterprise AAA management with CSACS, including installation, configuration, and management details. Part III looks at service provider AAA management with Cisco Access Registrar.

Full of detailed overviews, diagrams, and step-by-step instructions for enabling essential access control solutions, Cisco Access Control Security is a practical tool that can help enforce assigned access policies and simplify user management.


Publisher:
Cisco Press (May 27, 2004)
Pages: 456
Language: English
ISBN-10: 1-58705-373-X
ISBN-13: 978-1-58705-373-3
Format:
CHM


Descarga/Download

Reverse Engineering Code with IDA Pro

If you want to master the art and science of reverse engineering code with IDA Pro for security R&D or software debugging, this is the book for you. Highly organized and sophisticated criminal entities are constantly developing more complex, obfuscated, and armored viruses, worms, Trojans, and botnets. IDA Pros interactive interface and programmable development language provide you with complete control over code disassembly and debugging. This is the only book which focuses exclusively on the worlds most powerful and popular took for reverse engineering code.


Publisher:
Syngress (February 29, 2008)
Pages: 448
Language: English
ISBN-10: 159749237X
ISBN-13: 978-1597492379
Format:
PDF


Descarga/Download

sábado, 17 de mayo de 2008

Hack Proofing Your Identity in the Information Age

Identity-theft is the fastest growing crime in America, affecting approximately 900,000 new victims each year. Protect your assets and personal information online with this comprehensive guide.

Hack Proofing Your Identity will provide readers with hands-on instruction for how to secure their personal information on multiple devices. It will include simple measures as well as advanced techniques gleaned from experts in the field who have years of experience with identity theft and fraud. This book will also provide readers with instruction for identifying cyber-crime and the different ways they can report it if it occurs.

Hot Topic. Hack Proofing Your Identity will provide readers with both simple and advanced steps they can take to protect themselves from cyber-crime.
Expert Advice. This book will present security measures gathered from experts in both the federal government and the private sector to help secure your personal information and assets online.
Unique Coverage. Hack Proofing Your Identity will be the only book to include security measure for multiple devices like laptops, PDAs and mobile phones to allow users to protect themselves while taking advantage of the newest ways to access the Internet.


Publisher:
Syngress (June 15, 2002)
Pages: 512
Language: English
ISBN-10: 1931836515
ISBN-13: 978-1931836517
Format:
PDF


Descarga/Download

martes, 13 de mayo de 2008

Open Source Fuzzing Tools

Open Source Fuzzing Tools is the first book to market that covers the subject of black box testing using fuzzing techniques. Fuzzing has been around fow a while, but is making a transition from hacker home-grown tool to commercial-grade quality assurance product. Using fuzzing, developers can find and eliminate buffer overflows and other software vulnerabilities during the development process and before release.


Publisher:
Syngress (August 1, 2007)
Pages: 448
Language: English
ISBN-10: 1597491950
ISBN-13: 978-1597491952
Format:
PDF


Descarga/Download

domingo, 11 de mayo de 2008

Wireless Network Security

Wireless networks technologies have been dramatically improved by the popularity of third generation (3G) wireless networks, wireless LANs, Bluetooth, and sensor networks. However, security is a major concern for wide deployments of such wireless networks. The contributions to this volume identify various vulnerabilities in the physical layer, the MAC layer, the IP layer, the transport layer, and the application layer, and discuss ways to strengthen security mechanisms and services in all these layers. The topics covered in this book include intrusion detection, secure PHY/MAC/routing protocols, attacks and prevention, immunization, key management, secure group communications/multicast, secure location services, monitoring and surveillance, anonymity, privacy, trust establishment/management, redundancy and security, and dependable wireless networking.


Publisher:
Springer (June 5, 2007)
Pages: 424
Language: English
ISBN-10: 0387280405
ISBN-13: 978-0387280400
Format:
PDF


Descarga/Download

viernes, 9 de mayo de 2008

Network Security Bible

A must for working network and security professionals as well as anyone in IS seeking to build competence in the increasingly important field of security. Written by three high-profile experts, including Eric Cole, an ex-CIA security guru who appears regularly on CNN and elsewhere in the media, and Ronald Krutz, a security pioneer who cowrote The CISSP Prep Guide and other security bestsellers. Covers everything from basic security principles and practices to the latest security threats and responses, including proven methods for diagnosing network vulnerabilities and insider secrets for boosting security effectiveness.


Publisher:
Wiley (January 13, 2005)
Pages: 694
Language: English
ISBN-10: 0764573977
ISBN-13: 978-0764573972
Format:
PDF


Descarga/Download

jueves, 8 de mayo de 2008

Cryptology Unlocked

Cryptology includes data encryption (cryptography), cryptographic protocols and code breaking to provide the fundamentals of data security.

This new book introduces cryptography in a unique and non-mathematical style. Cryptology Unlocked explains encryption, crypto analysis (classic and modern algorithms), cryptographic protocols, digital standards and much more. This innovative book will reveal some of the dangers of code breaking, and highlights ways to master code-breaking and attack algorithms.

Topics range from the simplest enciphering methods to precise investigations of modern algorithms. Everything you need to understand the delicate balance between complex and actual information, with a peppering of anecdotes along the way.


Publisher:
Wiley (August 31, 2007)
Pages: 554
Language: English
ISBN-10: 0470060646
ISBN-13: 978-0470060643
Format:
PDF


Descarga/Download

miércoles, 7 de mayo de 2008

Network Security Principles and Practices

Network Security Principles and Practices is a comprehensive guide to network security threats and the policies and tools developed specifically to combat those threats. Taking a practical, applied approach to building security into networks, the book shows you how to build secure network architectures from the ground up. Security aspects of routing protocols, Layer 2 threats, and switch security features are all analyzed. A comprehensive treatment of VPNs and IPSec is presented in extensive packet-by-packet detail. The book takes a behind-the-scenes look at how the Cisco PIX(r) Firewall actually works, presenting many difficult-to-understand and new Cisco PIX Firewall and Cisco IOS® Firewall concepts. The book launches into a discussion of intrusion detection systems (IDS) by analyzing and breaking down modern-day network attacks, describing how an IDS deals with those threats in general, and elaborating on the Cisco implementation of IDS. The book also discusses AAA, RADIUS, and TACACS+ and their usage with some of the newer security implementations such as VPNs and proxy authentication. A complete section devoted to service provider techniques for enhancing customer security and providing support in the event of an attack is also included. Finally, the book concludes with a section dedicated to discussing tried-and-tested troubleshooting tools and techniques that are not only invaluable to candidates working toward their CCIE Security lab exam but also to the security network administrator running the operations of a network on a daily basis.


Publisher:
Cisco Press (Nov 15, 2002)
Pages: 800
Language: English
ISBN-10: 1-58705-299-7
ISBN-13: 978-1-58705-299-6
Format:
CHM


Descarga/Download

domingo, 4 de mayo de 2008

The Shellcoder's Handbook: Discovering and Exploiting Security Holes (2nd Edition)

This much-anticipated revision, written by the ultimate group of top security experts in the world, features 40 percent new content on how to find security holes in any operating system or application.

New material addresses the many new exploitation techniques that have been discovered since the first edition, including attacking "unbreakable" software packages such as McAfee's Entercept, Mac OS X, XP, Office 2003, and Vista.

Also features the first-ever published information on exploiting Cisco's IOS, with content that has never before been explored


Publisher:
Wiley; 2nd edition (August 20, 2007)
Pages: 718
Language: English
ISBN-10: 047008023X
ISBN-13: 978-0470080238
Format:
PDF


Descarga/Download

jueves, 1 de mayo de 2008

Intrusion Prevention Fundamentals

Intrusion Prevention Fundamentals offers an introduction and in-depth overview of Intrusion Prevention Systems (IPS) technology. Using real-world scenarios and practical case studies, this book walks you through the lifecycle of an IPS project–from needs definition to deployment considerations. Implementation examples help you learn how IPS works, so you can make decisions about how and when to use the technology and understand what “flavors” of IPS are available. The book will answer questions like:

Whether you are evaluating IPS technologies or want to learn how to deploy and manage IPS in your network, this book is an invaluable resource for anyone who needs to know how IPS technology works, what problems it can or cannot solve, how it is deployed, and where it fits in the larger security marketplace.


Publisher:
Cisco Press (Jan 18, 2006)
Pages: 312
Language: English
ISBN-10: 1-58705-239-3
ISBN-13: 978-1-58705-239-2
Format:
PDF


Descarga/Download

Complexity and Cryptography: An Introduction

Cryptography plays a crucial role in many aspects of today's world, from internet banking and ecommerce to email and web-based business processes. Understanding the principles on which it is based is an important topic that requires a knowledge of both computational complexity and a range of topics in pure mathematics. This book provides that knowledge, combining an informal style with strong proofs of the key results to provide an accessible introduction. It includes many examples and exercises, and is based on a highly successful course developed and taught over many years.


Publisher:
Cambridge University Press (February 20, 2006)
Pages: 304
Language: English
ISBN-10: 0521852315
ISBN-13: 978-0521852319
Format:
PDF


Descarga/Download

miércoles, 30 de abril de 2008

How to Cheat at Securing Linux

Are you one of the millions of SysAdmins running a Linux server who cant find a current book on Linux security? Well.this is the book for you. How to Cheat at Securing Linux Servers is designed to help you deploy a Linux system on the Internet in a variety of security roles. This book provides practical instructions and pointers concerning the open source security tools that we use every day. This book shows you how to use your Linux skills to provide the most important security services such as encryption, authentication, access control, and logging. While writing the book, the authors had the following three-part structure in mind: locking down the network, securing data passing across the network, and protecting the network perimeter with firewalls, DMZs, and VPNs.


Publisher:
Syngress (September 30, 2007)
Pages: 546
Language: English
ISBN-10: 1597492078
ISBN-13: 978-1597492072
Format:
PDF


Descarga/Download