Google
 
Web www.bookgo.org
Title: Network Intrusion Detection (3rd Edition)
Author: Stephen Northcutt, Judy Novak
PublishDate: 2002-08-27 AddDate: 20030425
ISBN: 0735712654 EAN: 0752064712657
Publisher: Sams
 
 
Description:

Network Intrusion Detection: An Analyst's Handbook explains some of what you need to know to prevent unauthorized accesses of your networked computers and minimize the damage intruders can do. It emphasizes, though, proven techniques for recognizing attacks while they're underway. Without placing too much emphasis (or blame, for that matter) on any operating system or other software product, author Stephen Northcutt explains ways to spot suspicious behavior and deal with it, both automatically and manually.

The case studies, large and small, are the best part of this book. Northcutt opens with a technical brief on the methods used by Kevin Mitnick in his attack upon Tsutomu Shimomura's server. In documenting that famous attack, Northcutt explains SYN flooding and TCP hijacking with clarity and detail: readers get a precise picture of what Mitnick did and how Shimomura's machine reacted. A former security expert for the U.S. Department of Defense, Northcutt explains how a system administrator would detect and defeat an attack like Mitnick's. Another case study appears later in the book, this one in the form of a line-by-line analysis of a .history file that shows how a bad guy with root privileges attacked a Domain Name System (DNS) server. Reading Northcutt's analysis is like reading a play-by-play account of a football match. Network Intrusion Detection is one of the most readable technical books around. --David Wall

Topics covered: Catching intruders in the act by recognizing the characteristics of various kinds of attacks in real time, both manually and with the use of filters and other automated systems; techniques for identifying security weaknesses and minimizing false security alarms.

The Chief Information Warfare Officer for the entire United States teaches you how to protect your corporate network. This book is a training aid and reference for intrusion detection analysts. While the authors refer to research and theory, they focus their attention on providing practical information. The authors are literally the most recognized names in this specialized field, with unparalleled experience in defending our country's government and military computer networks. New to this edition is coverage of packet dissection, IP datagram fields, forensics, and snort filters.

 
Relative:
Intrusion Signatures and Analysis
(ISBN:0735710635)

Snort 2.1 Intrusion Detection

Second Edition
(ISBN:1931836043)

Inside Network Perimeter Security (2nd Edition) (Inside)
(ISBN:0672327376)

Inside Network Perimeter Security: The Definitive Guide to Firewalls

Virtual Private Networks (VPNs)

Routers

and Intrusion Detection Systems
(ISBN:0735712328)

The Tao of Network Security Monitoring: Beyond Intrusion Detection
(ISBN:0321246772)
Files:
Enter Code :




Attention:

 Please note that by using the bookgo.org service you agree to all Rules and notices. These policies may change whenever necessary. All the resourses are from internet for interest only .you must delete it in 24 hours after download, and the copyright belongs to the related authors and the press. If you think those matters violent your copyright, it would be deleted immediately,all right belong to the original author.