Gray Hat Hacking, Second Edition

来源:互联网 发布:原子力显微镜分析软件 编辑:程序博客网 时间:2024/04/29 22:27
版权声明:原创作品,允许转载,转载时请务必以超链接形式标明文章原始出版、作者信息和本声明。否则将追究法律责任。http://blog.csdn.net/topmvp - topmvp
Uncover, plug, and ethically disclose security flaws

Prevent catastrophic network attacks by exposing security flaws, fixing them, and ethically reporting them to the software author. Fully expanded to cover the hacker's latest devious methods, Gray Hat Hacking: The Ethical Hacker's Handbook, Second Edition lays out each exploit alongside line-by-line code samples, detailed countermeasures, and moral disclosure procedures. Find out how to execute effective penetration tests, use fuzzers and sniffers, perform reverse engineering, and find security holes in Windows and Linux applications. You'll also learn how to trap and autopsy stealth worms, viruses, rootkits, adware, and malware.

*Implement vulnerability testing, discovery, and reporting procedures that comply with applicable laws
*Learn the basics of programming, stack operations, buffer overflow and heap vulnerabilities, and exploit development
*Test and exploit systems using Metasploit and other tools
*Break in to Windows and Linux systems with perl scripts, Python scripts, and customized C programs
*Analyze source code using ITS4, RATS, FlawFinder, PREfast, Splint, and decompilers
*Understand the role of IDA Pro scripts, FLAIR tools, and third-party plug-ins in discovering software vulnerabilities
*Reverse-engineer software using decompiling, profiling, memory monitoring, and data flow analysis tools
*Reveal client-side web browser vulnerabilities with MangleMe, AxEnum, and AxMan
*Probe Windows Access Controls to discover insecure access tokens, security descriptors, DACLs, and ACEs
*Find and examine malware and rootkits using honeypots, honeynets, and Norman SandBox technology

http://rapidshare.com/files/95109966/0071495681.zip
http://depositfiles.com/files/3794305