Hacking Books
Related Subjects: Phreaking Cryptography Groups Exploits Text Archives Cracking Fake Identification Conventions People Ethics Hardware Stores Software Newbies Commentary Viruses Magazines and E-zines Software Piracy
More Pages: 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70

Used price: $2.37

awesomeReview Date: 2008-03-28
Easy read for terms, too much stuff in some placesReview Date: 2008-02-11
Counter Hack ReloadedReview Date: 2008-02-09
Therefore this is a very good reference book.
Great book overall but...Review Date: 2007-09-08
Only one real gripe - I know typos happen and errors are common in technical books BUT... in a chapter about TCP/IP to misspell the late Jon Postel's name is just unbelievable -- Wow. (p.32)
Excellent book for those interested in internet securityReview Date: 2007-07-09

Used price: $8.00

Great book.Review Date: 2003-03-08
The best hands-on Linux security book just got betterReview Date: 2003-03-10
The best way to learn while reading HE:L2E is to try the sample commands. I also recommend visiting the links mentioned and installing many of the tools described by the authors. I found programs like raccess, nsat (ch. 3), sslsniff (ch. 7), nstx, and httptunnel (ch. 15) particularly interesting from an attacker's point of view. From a system administration standpoint, coverage of passlogd (ch. 2), lilo and grub (ch. 5), and X (ch. 6) were very helpful.
The authors share many novel ways to abuse Linux systems, but counter those exploits with little-known features or third-party tools. I never knew I could use bash's HISTCONTROL feature to selectively remove entries from shell history files. HE:L2E goes the extra mile to help secure your system, such as including sample C code in ch. 13 to allow one to compile TCP Wrappers support into one's own programs. Other clear, concise defensive measures were introduced in excellent chapters on keeping the kernel and packages current (appendix B) and pro-active security measures (ch. 2). The last appendix gives a short yet powerful description of the damage an intruder can perform, showing how he hid unauthorized programs and how those programs were discovered.
If you use Linux, you'll find HE:L2E indispensable. I even applied many of the tools and techniques to my FreeBSD system, showing that that good security advice can be a cross-platform endeavor.
Must-Read Info For Linux AdminsReview Date: 2005-02-10
(...)
Ding, Ding, We have a winner.Review Date: 2005-11-10
You will not find another book this comprehensive in the length in HLE has accomplished. i found the book to be on point, and not overdrawn on any specific topic. The authors usage of gender is something of a mystery aswell. For the first 10 chapters or so the cracker is a woman, then in later chapters it becomes a man, then in even later chapters a woman, then back to a man :-).
i found the book to be very well written, it feels like a very good naration. There is only a few plugs of direct humor (1 about using word for the publisher, another about the shortest sentence using all letters) but these few are lightening.
Technically this book is sound. it does very good in keeping the basics of security alive through the book (chattr +i, only use what you need, upgrade, etc...). This is very helpful to a beginer for reinforced learning. The software packages it mentions for firewalls, logging, etc. are very nice and descriptive.
All around great book. BTW, did i mention that is does _NOT_ cover a Linux installation from CD/DVD? That alone should be enough to buy it.
Don't have this book? You're BEGGING for trouble...Review Date: 2003-05-01

Used price: $8.36

five stars on the scale of worthless-nessReview Date: 2002-05-30
this is a copied bookReview Date: 2005-01-09
I think this book is equivalent to somebody filling up a bottle with tap water and selling it for 20 dollars as pure water found in the most secret places.
Gain Insight of the Mindset of Hackers, Crackers, Phreakers!Review Date: 2002-10-18
Hack Attacks Encyclopedia edited by John Chirillo serves as the ultimate source for collected information on the history of hacking, cracking, and phreaking. The book features nearly 2,000 text and HTML document extracts that includes news articles, online postings, and other snippets of insightful information. Some of the accounts are startling. Readers will quickly pick up just how clever some hackers, crackers, and phreakers really are. The following snippet exemplifies available talent in Northern America:
"Silver Spy has everything going for him - comfortable surroundings, a father who is an engineer. He ranks in the top 3 percent of his high-school class. His SAT scores for college admission totaled 1,400 of a possible 1,600. He wants to attend Stanford or the Massachusetts Institute of Technology. But in the eyes of the phone companies he is a thief, and in the eyes of the law he's a criminal. Such is the portrait of this 17-year-old computer "hacker" and "phone phreaker" who lives about 20 miles outside Boston. He spoke with U.S. News & World report on the condition that neither his real name nor home town be revealed."
The Hack Attack Encyclopedia is broken up into major sections by decade - the 70's, the 80's, the 90's, the Millennium, and a special historical synopsis. From beginning to end, readers will be able to follow the history of mischievous behavior. It will be an eye-opening experience for anyone to follow the advancements made in communications technologies and how they can be easily circumvented and otherwise compromised to carryout further activities. Although some of the technologies disclosed in the book are outdated and have been replaced, readers will still gain helpful insight of the mindset of hackers, crackers, and phreakers operating today. They are a force to be taken very seriously.
An extensive 217-page glossary of terms will enlighten readers about the slang talk used in the hacking, cracking, and phreaking communities. As a special bonus, the CD accompanying the book features full-length editions of the article and snippet extracts included in the book, hundreds of computing and Internet exploits, and a sampling of useful utility programs.
Hacking, cracking, phreaking, and virus infection still poses problems for many people today. This book will open the eyes of many people - including business people, IT managers, and law enforcement officials. It will serve as an excellent starting point for taking necessary corrective action to prevent further mischief and harm caused to personal and company computer systems. I can't wait to see an updated edition. Highly recommended reading.
five stars on the scale of worthless-nessReview Date: 2002-05-30
I would give it zero stars if I could.Review Date: 2004-02-12
My heart sank as I read through the book.
The vast, vast, VAST (over two-thirds) majority of the book consists of the first paragraph of BBS textfiles, with a line telling you the filename included on the CD that comes with the book. In some cases, Chirillo deigns to visit upon you a single-line description, but many don't even have that. So now, imagine this: page after page of filenames, then descriptions, then the first paragraph, of files located on a CD that's in the back of a book. What a horrible waste! There's a computer "glossary" in the back which looks suspiciously like similar documents available on the web, although I can't be sure. Also, there are a few tiny chapters giving general descriptions of the hacker and phreaking subculture. If you were to remove the filenames and descriptions and paragraphs, I doubt this book could get past 100 pages, if that.

Used price: $0.15

Hacking exposed: excellent booksReview Date: 2006-10-10
Buy this book if you use windowsReview Date: 2003-09-09
The best security manual I have ever seenReview Date: 2003-08-09
Excellent security bookReview Date: 2003-03-09
Excellent book - useful from the first readReview Date: 2003-06-03

Used price: $13.77

Not Just for KidsReview Date: 2008-03-31
Not electronic savvy? Not a concern. Just a few of the ideas presented here will get you headed in the right direction with property protection, keeping tabs, and real time viewing scenarios.
Before reading this I thought; "Get a camera, put it up, check it once in awhile." Wrong. This easy reading material will get you thinking in important directions about surveilance you probably haven't thought of previously, unless you were a professional.
Fun Book, Beware Of TyposReview Date: 2008-03-30
I'd also recommend a more traditional, left-to-right layout of the schematics. Some are left-right top-down, others are right-left. This makes it more difficult to follow the "flow" through the circuits.
Regardless of these hiccups, I'd recommend this book to those who'd like to tinker with "spy gear" or who are looking for simplier project ideas.
Endless funReview Date: 2008-01-02
You will need an electronics backgroundReview Date: 2007-11-28
GREAT BOOK!!Review Date: 2007-11-23

Used price: $6.23

Very helpfulReview Date: 2006-08-22
You will start using honeypots if u read this bookReview Date: 2005-10-24
Great Overview of Honeypots for the BeginnerReview Date: 2004-08-27
great introduction and reference on honeypotsReview Date: 2004-03-07
For anyone invested with cyber security responsibilitiesReview Date: 2003-09-15

Forget 007Review Date: 2006-06-18
It's good to know what's around us and be in the know!
Recommend ****
Guzman, Dror
Informative look at the risks of digital espionageReview Date: 2005-06-01
Just who is spying on whom? The author explains that the typical person might be a target of bosses, friends, family members, hackers, and many others. Even people with nothing confidential or of value on their computers risk getting caught up in espionage and other cyber capers. For instance, hackers can use their computers as vehicles for staging attacks or as a location for storing illicit files, such as child pornography. And as more cell phones and PDAs connect to the Internet, the risks multiply.
What may be disturbing to some readers is that every computer device and peripheral provides at least one avenue of attack. The author explains many of these schemes, such as keystroke loggers and cleartext file transfers via file transfer protocol (FTP). In addition, operating-system and application-level vulnerabilities constitute even more ways that systems can be compromised.
Despite the grim picture painted by the author, the book isn't intended to make readers paranoid, but rather to acquaint them with the many risks posed by the Internet. This excellent book shows that someone quite possibly is out to get you, but it provides the tools to protect yourself.
Secrets of Computer EspionageReview Date: 2004-05-14
Joel McNamara makes you walk a mile in the bad guys shoes, forcing you to see both sides of the story. You will learn the real threats behind internet worms (such as Sasser) and trojan horses (like MyDoom). Discover why Windows(tm) isn't safe and learn who's after your PII (Personally Identifiable Information).
View the world through the eyes of an internet private eye and see that everything really is an open book, it just depends on where you look. Let Joel be your guide. Buy the ticket, take the ride... then go to www.pcpitbull.com and see what's really inside.
Wow! Absolutely a great, great book!Review Date: 2003-11-26
The conversational tone is fun and often quite funny while not making the user feel talked down to. And Mr. McNamara does an equally great job of explaining very complex topics in way that works for both extremely sophisticated computer technology professionals and non-techies alike. I've brought this book around for side-discussions in the seminars I've given since it came out and my students, ranging from small business owners to 30+ year professional tech veterans in Fortune 50s have learned new and important lessons from it. For a book to address all these audiences is rare. For a book to succeed and be invaluable for all of them is virtually unheard of. This book succeeds amazingly well.
I've not only read the book through in one sitting, I keep referring back to it and it's incredibly useful web site on a regular basis.
Joel, thank you for writing one of the key books of the year!
Highly Recommended!Review Date: 2004-04-22

Used price: $26.72

excellentReview Date: 2008-01-14
Mauri
More than just words!Review Date: 2008-02-22
This book is excellent for both the beginner and the advanced! Plenty of real examples! Walks the beginner through the concepts of foot printing. It explains the technologies and then for the advanced it talks about creating custom code for each vulnerability.
This is a must have for any security professional's library! it was worth every penny!
A Truely Excellent Resource for any Professional Web Hacker!Review Date: 2008-01-25
Kevin
An excellent thorough resource for web application securityReview Date: 2008-01-20
This book is extremely up to date with its coverage of new AJAX and XSS-type attacks while still covering the relatively old vulnerabilities like buffer overflows and sql injections.
The authors are both professional penetration testers which gives them credibility over the information they provide in this book, and one of them is the author of the excellent free web application hacking tool called Burp Suite.
I would recommend this book to anyone that has a basic knowledge of how the Web works (http, javascript, cookies, html, and basics of a programming language like php or java) although you could learn these technologies as you are reading the book which would take some more time.
Everything You Need to KnowReview Date: 2008-01-16
The first few chapters provide context and background information. Chapter 3 on Web Application Technologies provides particularly useful background info. The next 666 pages of the book are all about attacking the applications.
There next five chapters cover mapping application functionality, client side controls, authentication, sessions, and access controls. The coverage is comprehensive. I'm not new to these topics, but I learned so much in every chapter. The depth of coverage is amazing.
The next six chapters are the heart of this book. They cover injection, path traversal, application logic, XSS and related attacks, automating attacks, and information disclosure. You'll find full treatment of attacks we're all familiar with like SQL injection and cross site scripting as well as many that most of us haven't heard of before. The danger is real and these chapters need to be read.
The final next four chapters cover attacks against compiled applications, application architecture, web servers, and source code. The final two chapters are more useful as a quick reference. They provide an overview of the tools covered throughout the book and describe attack methodology discussed throughout the book for exploiting each technology.
This book scores five easily based on the relevance and value of the information.

Used price: $2.64

When Hackers Won't Take No for an AnswerReview Date: 2005-07-20
Unique and on the markReview Date: 2004-03-21
- The book provides a coherent and focused approach to developing and implementing a security plan. You can find numerous books on writing and implementing policies and procedures, or establishing a security posture, but this is the first book I've read that steps you through the process of conceiving, implementing and keeping alive a viable security plan.
- By separating the process into three distinct domains (referred to as 'stacks') you ensure that your plan encompasses and integrates the technology, process and business elements into a coherent strategy.
- Artifacts in the form of a complete set of worksheets provide a set of tools that give a framework and speed up the planning process.
The planning approach set forth in the book is straightforward and realistic - you're led through the preliminaries, which includes conceiving a plan that matches your needs, and selling the plan to sponsors (an often overlooked, but essential activity when fighting for budget). The next step is to perform an impact analysis, and this is where the book shines, because the author focuses on business issues instead of technology. This promotes awareness and goes a long way towards getting buy-in and funding, as well as laying a solid foundation for a long-term security plan. Next the author shows how to select the correct security model and avoid common pitfalls. These lead to building organizational consensus - buy-in from all stakeholders. The difference between this step and the preliminary step of selling to a sponsor and obtaining funding, which is vertical, you need to promote the plan horizontally as well. The final steps are to implement and continuously refine the plan.
Of course, the overview above only describes the approach contained within the book. There is much more to commend it, such as clear writing, superb page design that portrays information in graphs, illustrations and tables, and the details the author provides. There is not a single statement or recommendation that is unsupported, and the material is both sensible and accurate.
Greenberg has done 1/2 the work for youReview Date: 2003-03-08
I read the book twice: once to get an idea of what all the worksheets were about and once to really read them with all the technical and practical details provided by Greenberg.
Greenberg identifies 28 security elements, including 15 fundamental elements, (six of which are core elements), and 13 wrap-up elements. Core elements include things like authorization and access control, authentication, encryption, integrity, nonrepudiation, and privacy. Those may seem obvious, but Greenberg has a lot of useful things to say about them that others haven't said.
Perhaps the most valuable part of the book is all the other elements, which we tend to forget, including addressing and routing (with tips on how to get those right from a security point of view), configuration management, directory services, time services, staff management, legal issues, and so on.
I'd be interested to see some projects get implemented with Greenberg's methods. I think it should work quite well, although due to entropy, laziness, over-worked engineers, and other such factors, I would guess that some of the numerous worksheets will fall by the wayside. But I think Greenberg would be OK with that as long as most of the worksheets are maintained and the company adopts security as a way of thinking.
In summary, this book is definitely worth reading, probably numerous times!
Great security cookbook.Review Date: 2003-06-16
With that, Mission-Critical Security Planner is a surprisingly good book, aimed at someone looking to start developing their information security infrastructure. Rather than having to reinvent the wheel, the book provides planners with the framework and tools they need to create their information security infrastructure.
One good feature of the book it is large collection of templates and worksheets on various security elements. .../
The book is not overly technical and is quite good for those who need to get their security group up and running in a short timeframe.
For those that are serious about security, they will find that Mission-Critical Security Planner is like a cookbook. They can use it to prepare their security as needed.
Overall, Mission-Critical Security Planner is a very readable and useful book. Those who have an imperative to get their security groups up and running will find huge value in the book immediately.
Awesome high-level bookReview Date: 2003-05-07
This visionary book proves the opposite: you can have a high-level security book, which is not just practical, but actionable. "Mission Critical Security Planner" delivers a portion of the security process, packed into one toolkit. Make no mistake - this book is about planning how to do security, not how to tweak your scanner or configure a firewall. However, planning is indeed a critical (and, as the author points out, often missing) piece of security conundrum, and the book delivers on that.
An awesome component of the book is a large collection of templates and worksheets on "selling" security measures, planning the implementations, organizing security team, dealing with various business people and many other occasions. The book has the printed versions while its companion website criticalsecurity.com has the download.
The main part of the book is organized around "security fundamentals", large domains of security (such as authentication, encryption, integrity, privacy, etc), which are used to structure the security planning process, described by the author. For each of the fundamentals, the content is organized in sections: summary, security stack (covering various aspects from physical to application level), life-cycle management (from technology selection to response), business (on dealing with various categories of business people, such as suppliers and customers) and selling security (to execs, managers and staff). All of the above contain various templates.
Among the more fun parts, the section on negotiating with hackers is just exclusive and of the never-seen-before kind. Section in hacker profiling is also of interest, since it seems to originate from author's experiences (and not in just reading about it on the news). The book also demystifies such elusive notions as "impact analysis", "security ROI". PKI also has a prominent role in the book. While PKI (as it is defined today) might or might not fly, the book gives a great example of large-scale production implementation, running for many years. Another great feature of the book is author's "future 10 attacks list" with his predictions on threat landscape.
Overall, the book seems indispensable to those responsible for securing networks. Security managers and CSOs will likely gain maximum benefits from using it (due to the book targeting), but other security professionals will benefit as well. Notice, that the benefits can be derived from "using" it as opposed to just "reading" it, although even the latter will prove highly enlightening. The "selling security" templates alone are likely worth their weigh in gold. The book is well-written and, while not possessing the lively style of some recent security books, will beat some of them hands down in real-world applicability. After all, even if you very well know that IDS is valuable, who will help you to "sell" it to the CIO? This book just might!
Anton Chuvakin, Ph.D., GCIA, GCIH is a Senior Security Analyst with a major information security company. His areas of infosec expertise include intrusion detection, UNIX security, forensics, honeypots, etc. In his spare time, he maintains his security portal info-secure.org

Used price: $125.97

Excellent Book, Great For Novices & Experienced AlikeReview Date: 2008-03-30
I wish that more electronics writers would cover the material with this author's style and accuracy. Also, kudos for providing parts sources and for using easy to find and inexpensive components. (I've seen many people, myself included, become frustrated by hard-to-find parts lists or the use of discontinued items. These projects suffer from neither of those problems.)
In the end, you'll be left wanting to know more about the components and techniques you've picked up. (You'll probably want to add Don Lancaster's classic CMOS Cookbook to your shopping cart. It will give you the details about many of these components.) Highly recommended. I'm looking forward to other books by this author.
so good for electronic musicians and composersReview Date: 2007-01-18
I just love it !!
ExcellentReview Date: 2006-11-10
Rediscovers the simple facts of electronic musicReview Date: 2007-01-07
The book starts with some brief information on the tools you'll need plus the author's seven rules for experimentation. Part two is dedicated to listening. He shows you how to use radios and coils to find hidden electronic music, how to use the speaker as a microphone and vice versa, and how to use piezo disks to pick up tiny sounds, among other topics. Part three, on touching, shows you how to transform a portable radio into a synthesizer, change the clock circuit in toys to produce new sounds, and use photocells and pressure pads to "play" the modified toy. Part four, Building, shows the reader how to breadboard up some oscillators along with some controlling circuitry and produce gating, ducking, tremolo and panning effects. Part five, Looking, concerns translating video to audio using commonly found devices. The final section goes into depth on mixing circuits, how to build a good but cheap amplifier, connecting sensors to computers via game controllers, and a section on power supplies.
The book is written such that you should proceed from beginning to end, since the devices in earlier sections are used to assemble the devices in later chapters. By the time you finish you should have entire experimental musical instruments that you have assembled yourself.
Let's make music!Review Date: 2007-01-10
Related Subjects: Phreaking Cryptography Groups Exploits Text Archives Cracking Fake Identification Conventions People Ethics Hardware Stores Software Newbies Commentary Viruses Magazines and E-zines Software Piracy
More Pages: 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70