Penetration Testing Fundamentals: A Hands-On Guide to Reliable Security Audits (Pearson IT Cybersecurity Curriculum (ITCC))

Penetration Testing Fundamentals: A Hands-On Guide to Reliable Security Audits (Pearson IT Cybersecurity Curriculum (ITCC))

作者: William (Chuck) Easttom II
出版社: Pearson IT Certifica
出版在: 2018-03-08
ISBN-13: 9780789759375
ISBN-10: 0789759373
裝訂格式: Paperback
總頁數: 448 頁





內容描述


The perfect introduction to pen testing for all IT professionals and students
 
·         Clearly explains key concepts, terminology, challenges, tools, and skills
·         Covers the latest penetration testing standards from NSA, PCI, and NIST
 
Welcome to today’s most useful and practical introduction to penetration testing. Chuck Easttom brings together up-to-the-minute coverage of all the concepts, terminology, challenges, and skills you’ll need to be effective.
 
Drawing on decades of experience in cybersecurity and related IT fields, Easttom integrates theory and practice, covering the entire penetration testing life cycle from planning to reporting.
 
You’ll gain practical experience through a start-to-finish sample project relying on free open source tools. Throughout, quizzes, projects, and review sections deepen your understanding and help you apply what you’ve learned.
 
Including essential pen testing standards from NSA, PCI, and NIST, Penetration Testing Fundamentals will help you protect your assets–and expand your career options.
 
LEARN HOW TO
·         Understand what pen testing is and how it’s used
·         Meet modern standards for comprehensive and effective testing
·         Review cryptography essentials every pen tester must know
·         Perform reconnaissance with Nmap, Google searches, and ShodanHq
·         Use malware as part of your pen testing toolkit
·         Test for vulnerabilities in Windows shares, scripts, WMI, and the Registry
·         Pen test websites and web communication
·         Recognize SQL injection and cross-site scripting attacks
·         Scan for vulnerabilities with OWASP ZAP, Vega, Nessus, and MBSA
·         Identify Linux vulnerabilities and password cracks
·         Use Kali Linux for advanced pen testing
·         Apply general hacking technique ssuch as fake Wi-Fi hotspots and social engineering
·         Systematically test your environment with Metasploit
·         Write or customize sophisticated Metasploit exploits




相關書籍

Intelligence-Driven Incident Response: Outwitting the Adversary

作者 Scott J. Roberts Rebekah Brown

2018-03-08

灰帽 C# | 建立自動化安全工具的駭客手冊 (Gray Hat C#: A Hacker's Guide to Creating and Automating Security Tools)

作者 Brandon Perry 賴屹民 譯

2018-03-08

(ISC)2 SSCP Systems Security Certified Practitioner Official Study Guide 3rd

作者 Wills Mike

2018-03-08