Social Engineering Penetration Testing: Executing Social Engineering Pen Tests, Assessments and Defense
Autor Gavin Watson, Andrew Mason, Richard Ackroyden Limba Engleză Paperback – 6 iun 2014
The authors of Social Engineering Penetration Testing show you hands-on techniques they have used at RandomStorm to provide clients with valuable results that make a real difference to the security of their businesses. You will learn about the differences between social engineering pen tests lasting anywhere from a few days to several months. The book shows you how to use widely available open-source tools to conduct your pen tests, then walks you through the practical steps to improve defense measures in response to test results.
- Understand how to plan and execute an effective social engineering assessment
- Learn how to configure and use the open-source tools available for the social engineer
- Identify parts of an assessment that will most benefit time-critical engagements
- Learn how to design target scenarios, create plausible attack situations, and support various attack vectors with technology
- Create an assessment report, then improve defense measures in response to test results
Preț: 340.00 lei
Preț vechi: 425.00 lei
-20% Nou
Puncte Express: 510
Preț estimativ în valută:
65.07€ • 68.43$ • 54.20£
65.07€ • 68.43$ • 54.20£
Carte tipărită la comandă
Livrare economică 04-18 ianuarie 25
Preluare comenzi: 021 569.72.76
Specificații
ISBN-13: 9780124201248
ISBN-10: 0124201245
Pagini: 390
Ilustrații: 40 illustrations
Dimensiuni: 191 x 235 x 19 mm
Greutate: 0.82 kg
Editura: ELSEVIER SCIENCE
Locul publicării:Netherlands
ISBN-10: 0124201245
Pagini: 390
Ilustrații: 40 illustrations
Dimensiuni: 191 x 235 x 19 mm
Greutate: 0.82 kg
Editura: ELSEVIER SCIENCE
Locul publicării:Netherlands
Cuprins
Introduction to Social Engineering Why People are the Weakest Link in your Security Basic Techniques, Deception, and Manipulation Assessment Prerequisites Reconnaissance: Building the Foundation of an Assessment Ensuring Value Through Effective Threat Modeling Designed Targeted Scenarios A Model for Creating Plausible Situations The Email Attack Vector - Spear Phishing The Telephone Attack Vector The Physical Attack Vector Supporting an Attack with Technology Difference between "Long Game" and "Short Game" Attack Strategies Writing the Report Creating Hardened Policies and Procedures Reclassifying Information Improving Physical Security Controls Designing and Conducting Effective Staff Awareness Training Internal Social Engineering Assessments
Recenzii
"...art depends on technique here,...and that is the book's main focus: the techniques of these con artists. This book goes beyond the art and that is what makes it a must-read." --Computing Reviews
"...will help you understand the many tricks and approaches to this most powerful of hacking processes. And...it will enable you to integrate social engineering within the overall framework of your penetration testing services." -Network Security, Nov 2014
"...will help you understand the many tricks and approaches to this most powerful of hacking processes. And...it will enable you to integrate social engineering within the overall framework of your penetration testing services." -Network Security, Nov 2014