Autor: Watson, GavinMason, AndrewAckroyd, Richard
Wydawca: Elsevier
Dostępność: 3-6 tygodni
Cena: 239,40 zł
Przed złożeniem zamówienia prosimy o kontakt mailowy celem potwierdzenia ceny.
ISBN13: |
9780124201248 |
ISBN10: |
0124201245 |
Autor: |
Watson, GavinMason, AndrewAckroyd, Richard |
Oprawa: |
Paperback |
Rok Wydania: |
2014-06-07 |
Tematy: |
UR |
Social engineering attacks target the weakest link in an organization's security human beings. Everyone knows these attacks are effective, and everyone knows they are on the rise. Now, Social Engineering Penetration Testing gives you the practical methodology and everything you need to plan and execute a social engineering penetration test and assessment. You will gain fascinating insights into how social engineering techniques including email phishing, telephone pretexting, and physical vectors can be used to elicit information or manipulate individuals into performing actions that may aid in an attack. Using the book's easy-to-understand models and examples, you will have a much better understanding of how best to defend against these attacks.
The authors of Social Engineering Penetration Testing show you hands-on techniques they have used at RandomStorm to provide clients with valuable results that make a real difference to the security of their businesses. You will learn about the differences between social engineering pen tests lasting anywhere from a few days to several months. The book shows you how to use widely available open-source tools to conduct your pen tests, then walks you through the practical steps to improve defense measures in response to test results.
Introduction to Social Engineering Why People are the Weakest Link in your Security Basic Techniques, Deception, and Manipulation Assessment Prerequisites Reconnaissance: Building the Foundation of an Assessment Ensuring Value Through Effective Threat Modeling Designed Targeted Scenarios A Model for Creating Plausible Situations The Email Attack Vector - Spear Phishing The Telephone Attack Vector The Physical Attack Vector Supporting an Attack with Technology Difference between "Long Game" and "Short Game" Attack Strategies Writing the Report Creating Hardened Policies and Procedures Reclassifying Information Improving Physical Security Controls Designing and Conducting Effective Staff Awareness Training Internal Social Engineering Assessments
Książek w koszyku: 0 szt.
Wartość zakupów: 0,00 zł
Gambit
Centrum Oprogramowania
i Szkoleń Sp. z o.o.
Al. Pokoju 29b/22-24
31-564 Kraków
Siedziba Księgarni
ul. Kordylewskiego 1
31-542 Kraków
+48 12 410 5991
+48 12 410 5987
+48 12 410 5989
Administratorem danych osobowych jest firma Gambit COiS Sp. z o.o. Na podany adres będzie wysyłany wyłącznie biuletyn informacyjny.
© Copyright 2012: GAMBIT COiS Sp. z o.o. Wszelkie prawa zastrzeżone.
Projekt i wykonanie: Alchemia Studio Reklamy