Showing posts with label wireless. Show all posts
Showing posts with label wireless. Show all posts

Kismet Hacking Review

Kismet Hacking
Average Reviews:

(More customer reviews)
My complaint. This book didn't even mention that they use Gentoo, sorta a major piece of info. This is kinda important if you need to recompile the kernel, which you do. And if you do..what optional software to have installed to make recompiling easier? That's all I can think of because I just set it down somewhere that it is likely to just collect dust. There were of course some information that would be great to know that was told. That information was that you had to do a recompile and a few other items necessary to install kismet.

Click Here to see more reviews about: Kismet Hacking

Kismet is the industry standard for examining wireless network traffic, and is used by over 250,000 security professionals, wireless networking enthusiasts, and WarDriving hobbyists.Unlike other wireless networking books that have been published in recent years that geared towards Windows users, Kismet Hacking is geared to those individuals that use the Linux operating system. People who use Linux and want to use wireless tools need to use Kismet. Now with the introduction of Kismet NewCore, they have a book that will answer all their questions about using this great tool. This book continues in the successful vein of books for wireless users such as WarDriving: Drive, Detect Defend.*Wardrive Running Kismet from the BackTrack Live CD*Build and Integrate Drones with your Kismet Server*Map Your Data with GPSMap, KisMap, WiGLE and GpsDrive

Buy Now

Click here for more information about Kismet Hacking

Read More...

Hacking Wireless Networks For Dummies (For Dummies (Computers)) Review

Hacking Wireless Networks For Dummies (For Dummies (Computers))
Average Reviews:

(More customer reviews)
Think your wireless network is secure from unauthorized use or attack? It's probably not. I just finished reading Hacking Wireless Network For Dummies by Kevin Beaver and Peter T. Davis, and this is one of the most practical books I've ever read for testing a network against attack.
Contents:
Part 1 - Building the Foundation for Testing Wireless Networks: Introduction to Wireless Hacking; The Wireless Hacking Process; Implementing a Testing Methodology; Amassing Your War Chest
Part 2 - Getting Rolling with Common Wi-Fi Hacks: Human (in)Security; Containing the Airwaves; Hacking Wireless Clients; Discovering Default Settings; Wardriving
Part 3 - Advanced Wi-Fi Hacks: Still at War; Unauthorized Wireless Devices; Network Attacks; Denial-of-Service Attacks; Cracking Encryption; Authenticating Users
Part 4 - The Part of Tens: Ten Essential Tools for Hacking Wireless Networks; Ten Wireless Security-Testing Mistakes; Ten Tips for Following Up after Your Testing
Part 5 - Appendixes: Wireless Hacking Resources; Glossary of Acronyms
Index
The target of this book is the security professional involved in testing networks to make them more secure. There's a heavy emphasis on "ethical hacking", or learning how to test a network's security without doing harm or using the information in a destructive fashion. A security consultant using this book would learn how to pre-plan a test, work with the company to make sure they were properly authorized, and then write up the results in a professional manner. That aspect of the book is impressive, and it helps to frame the information in the right light (not as a textbook on how to break into networks).
From a practical standpoint, this book excels. Each of the chapters covers the theory behind how or why a certain aspect of a wireless network would be vulnerable to an attack or exploit. Then the authors cover a number of open source and commercial software packages that are available to focus on that area. For instance, chapter 14 goes into why WEP encryption is flawed and how it can be broken with relatively little effort. It's followed by an explanation on how WPA addresses some of those issues. Finally you get coverage on available tools that are used to crack WEP and how you can use them to test your own network.
Highly practical and heavy on application... If you're a security professional with responsibility for your organization's wireless network, you need to read this book. And if you're a techno-geek with your own wireless network, you'll want to get this book to play around. I know I will be doing a little hacking at Chez Duffbert...

Click Here to see more reviews about: Hacking Wireless Networks For Dummies (For Dummies (Computers))

Become a cyber-hero - know the common wireless weaknesses
"Reading a book like this one is a worthy endeavor toward becoming an experienced wireless security professional."--Devin Akin - CTO, The Certified Wireless Network Professional (CWNP) Program
Wireless networks are so convenient - not only for you, but also for those nefarious types who'd like to invade them. The only way to know if your system can be penetrated is to simulate an attack. This book shows you how, along with how to strengthen any weak spots you find in your network's armor.
Discover how to:
Perform ethical hacks without compromising a system
Combat denial of service and WEP attacks
Understand how invaders think
Recognize the effects of different hacks
Protect against war drivers and rogue devices


Buy Now

Click here for more information about Hacking Wireless Networks For Dummies (For Dummies (Computers))

Read More...

Google Hacking for Penetration Testers Review

Google Hacking for Penetration Testers
Average Reviews:

(More customer reviews)
This review mainly focuses on evaluating how valuable is to get a copy of "Google Hacking for Penetration Testers - VOLUME 2" if you already own a copy of the first edition, and the scores rates exactly that. If you don't have neither of them, I strongly encourage you to acquire Volume 2 (see details below), no matter what area of the information security field you work in (and specially if you are a penetration tester), as the contents affect to you in multiple ways. On my day-to-day security consulting practice, I'm still very surprised about how many IT people don't know about these techniques. The book is a masterpiece for information disclosure and mining from public sources, such as (but not only) Google. If I had to evaluate the book on itself, not comparing between editions, it would definitely get a score of 5/5.
The first edition was released in 2005 and opened the world of the Google Hacking techniques to the general public, together with the GHDB. The second edition title is (at least) confusing, as Volume 2 seems to denote it is a complementary book to the first edition. It is not, so I do not recommend you to get the first edition today. Volume 2, or the second edition as it should have been called, has been thoroughly updated (including most of the screenshots) to cover the latest changes and Google applications. I did a major update to the SANS "Power Search with Google" course on the first half of 2006, when some of the new Google functionality (not in the first edition) was already available. The second edition reflects those updates I identified and put back together then, even the tiny ones, such as the maximum search terms, that changed from 10 to 32. Additionally, all the statistical references, covering number of results returned by Google, and main contents have been reviewed and updated to reflect the current state of the art.
Some chapters have been kept from the previous edition (chapters 1 to 3, and chapters 6 to 9, and chapter 12), although they have suffered updates. Others have been moved (such as the old chapter 10, now chapter 4) or redesigned (like the new chapter 5). Besides, there are brand new chapters, like 10 and 11.
I specially like the updates on chapter 5, with the new tools and scripts to query Google and, specially, to parse and process the results, including several Perl and User-Agent tricks. The book, obviously, covers the Google API changes and provides solutions to overcome them, such as Aura. Chapters 6 and 8 include relevant updates to the Google code search engine and new capabilities to locate malware and binaries, plus new techniques to track down login portals and network embedded devices and reports, respectively.
The new chapter 10 is a great reference covering the new Google services from a hacking and "malicious" perspective. It is a required update given the pace Google releases new functionality and information sources, such as the AJAX capabilities and API, the source code search engine, calendar, blogger, and alert services.
The new chapter 11, "Google Hacking Showcase", includes the real-world Google Hacking samples and cases Johnny Long has been presenting in several hacking conferences during the last years. A found having a printed copy of it within the book very valuable, as it is an eye-opener, and it is a fun read. Definitely, if you have not seen Johnny's presentations and talks, I encourage you to access the archives from BlackHat and DefCon and enjoy them.
Finally, chapter 12 (the old chapter 11), covers new techniques and tools from a defensive perspective. The new additions increase the defender arsenal in order to mitigate the old and new threats covered throughout the book.
The influence of multiple authors in this edition is evident, something good for the new contents and material, but not so good for the chapter layout, as some do not follow the original format with a final summary, solutions, links and FAQ. Chapter 10 is a good example of both.
The complementary appendixes from the first edition, not directly relevant to the book topic from my perspective, have been removed. Overall, I feel some of the waffle has been left out, a smart decision (but not always easy) in order to keep the book size reasonable, and make room for the new contents.
I would like to see some of the pages that simply provide long listings from the GHDB moved to an appendix and simply referenced from the associated chapter. It might be useful to have these lists full of query samples on the book, but not just in the middle of a chapter. Another improvement would be to have a book webpage consolidating all the code samples, such as the Blogger submission script, as I'm not sure they are all available on a single website.
To sum up, if you don't have a copy of this book, go and buy Volume 2! (not to mention Johnny's involvement with charities). If you are a professional penetration tester, the new material in this second edition is highly recommended, so update your shelves and start applying the new contents on your daily practice. If you are an infosec pro, not directly involved in Google Hacking tasks, and you already own a copy of the first edition, I think you do not need Volume 2, as you already understand the threat, risks, and what is all this about.
At some point I was almost involved in co-authoring this 2nd edition, but finally it didn't happened. A pity, as definitely, this is one of today's reference books that should be on any infosec shelves.

Click Here to see more reviews about: Google Hacking for Penetration Testers

A self-respecting Google hacker spends hours trolling the Internet for juicy stuff. Firing off search after search, they thrive on the thrill of finding clean, mean, streamlined queries and get a real rush from sharing those queries and trading screenshots of their findings. I know because I've seen it with my own eyes. As the founder of the Google Hacking Database (GHDB) and the Search engine hacking forums at http://johnny.ihackstuff.com, I am constantly amazed at what the Google hacking community comes up with. It turns out the rumors are true-creative Google searches can reveal medical, financial, proprietary and even classified information. Despite government edicts, regulation and protection acts like HIPPA and the constant barking of security watchdogs, this problem still persists. Stuff still makes it out onto the web, and Google hackers snatch it right up. Protect yourself from Google hackers with this new volume of information.-Johnny Long.Learn Google Searching BasicsExplore Google's Web-based Interface, build Google queries, and work with Google URLs..Use Advanced Operators to Perform Advanced QueriesCombine advanced operators and learn about colliding operators and bad search-fu..Learn the Ways of the Google HackerSee how to use caches for anonymity and review directory listings and traversal techniques..Review Document Grinding and Database DiggingSee the ways to use Google to locate documents and then search within the documents to locate information. .Understand Google's Part in an Information Collection FrameworkLearn the principles of automating searches and the applications of data mining..Locate Exploits and Finding TargetsLocate exploit code and then vulnerable targets..See Ten Simple Security SearchesLearn a few searches that give good results just about every time and are good for a security assessment..Track Down Web ServersLocate and profile web servers, login portals, network hardware and utilities..See How Bad Guys Troll for DataFind ways to search for usernames, passwords, credit card numbers, social security numbers, and other juicy information..Hack Google ServicesLearn more about the AJAX Search API, Calendar, Blogger, Blog Search, and more.

Buy Now

Click here for more information about Google Hacking for Penetration Testers

Read More...

Mobile Advertising: Supercharge Your Brand in the Exploding Wireless Market Review

Mobile Advertising: Supercharge Your Brand in the Exploding Wireless Market
Average Reviews:

(More customer reviews)
It's today's freshest (March 2008) book on Mobile Marketing. I am half through the book and I want to share my immediate impressions.
I like how the book is organized. The way the presentation unfolds enhances my reading experience - I am interested to be reminded about all existing marketing channels. Even if you are a teacher of marketing or an experienced marketing professional, it is still good to review - even if one has to battle the temptation to exclaim "I know this!" - the history of marketing. And what this history is teaching us, or at least is making clearer for me, is this: it is hard (the change is usually revolutionary!) but possible (it is just growing a lot!) to predict the next turn in development of marketing.
March 1, 2008 article at http://www.alleyinsider.com/ by Henry Blodget cites a poll of 1,979 adults surveyed online by http://www.zogby.com/. In this, claimed representative, sample of the US population:
* 48% said their primary source of news is the Internet (up 20% from only a year ago)
* 29% of Americans say their primary news source is TV
* 11% say it's radio
* 10% say it's newspapers
Whatever the statistics, here is a general trend: people, on average, spend more time on the Internet than with any other single media. Obviously, the ad budgets follow eyeballs of people (in 2007, the online portion of the total ad spend was estimated at 30%).
The shift of marketing to the Internet is truly revolutionary. Growth of the channel and its effectiveness are amazing. The speed is "7 percentage points of market share in a single year". Effectiveness is truly redefined - to paraphrase the famous quote of John Wanamaker, we now know which half of the advertising dollars is wasted. It became possible with the invention of online search advertising model that was introduced by Google. Ads became relevant and contextual; campaign planning became easier; campaign results fairer. What is even more important, in my view, is that marketing campaigns become measurable. Also note that the Internet combines all the features of the old media, to wit: video, audio, pictures, text. At the same time, there is something very new about this channel. It's also interactive.
Now think about this: in 2008 the Internet will be more frequently accessed on mobile phones than on PCs. In Japan and Korea, browsing is used by 90 percent of all cell phone users. There are 3 billion cell phone subscribers worldwide, three times the number of PC users, who stare on their phones at least daily. There are two times more people using SMS (TXT) than email.
What does it mean? It means that the potential is huge and that it has been building up for the last ten years, now reaching its tipping point. So what is awaiting us soon and how to capitalize on the opportunity?
Read! (I also have to finish the book!)

Click Here to see more reviews about: Mobile Advertising: Supercharge Your Brand in the Exploding Wireless Market

A practical guide to the emerging mobile advertising market, Mobile Advertising covers all the major topics in this emerging multibillion-dollar industry. This is a complete how-to guide for anyone who wants to understand and take advantage of this hot new advertising medium. Drawing on the experience of three industry veterans, insights from key influencers and decision makers, and detailed case studies, the book gives you practical guidance for getting the most out of mobile advertising.

Buy Now

Click here for more information about Mobile Advertising: Supercharge Your Brand in the Exploding Wireless Market

Read More...

Absolute Beginner's Guide to Security, Spam, Spyware & Viruses Review

Absolute Beginner's Guide to Security, Spam, Spyware and Viruses
Average Reviews:

(More customer reviews)
I checked the book out of the library to give me something to read on a trip, and liked it so much, I purchased it when I returned. It includes step by step instructions for the beginner, but as you get further into the book, some of the details may scare away new computer users. Working on computers for 20+ years, I figured it would be a good review, but I learned a lot.

Click Here to see more reviews about: Absolute Beginner's Guide to Security, Spam, Spyware & Viruses

Batten down the hatches! Hackers, spammers and thieves (oh my!) are after you! The mere act of turning on an Internet-connected computer can put you, your family, and your personal finances at risk by exposing you to viruses, scam artists, hackers, identity thieves, and spammers. How do you fight back? Absolute Beginner's Guide to Security, Spam, Spyware and Viruses is your first line of defense. Clear, easy-to-understand definitions of viruses, spyware, and hackers will help you understand what you're up against everytime you go online. Then, you'll learn about other threats, such as identity theft, phishing, and other potential dangers you'll face in your everyday computing. Find out how to search out and destroy spyware, malware and other viscious programs that could potentially harm your computer. Then find out how to lock out hackers, spammers, and theives for good. We'll tell you how to immediately cut the risk of being attacked in half — in less than 10 minutes! Protect your bank accounts, digital photos, digital music collection, masters thesis, and everything you hold near and dear on your computer with the help of the Absolute Beginner's Guide to Security, Spam, Spyware and Viruses.

Buy Now

Click here for more information about Absolute Beginner's Guide to Security, Spam, Spyware & Viruses

Read More...

Network Know-How: An Essential Guide for the Accidental Admin Review

Network Know-How: An Essential Guide for the Accidental Admin
Average Reviews:

(More customer reviews)
If I hired a new employee for my computer consulting business, I'd give them this to read. I'd HOPE that there was nothing in here they didn't already know, but I've seen supposedly knowledgeable people with tremendous knowledge gaps, so this would cover my bases.
Really it's more for the small business or home user. I can't tell you how many times I've had calls from very small businesses or home users who couldn't afford to pay me to help them with exactly the kinds of things this book covers. That's great, because too often I've felt sorry for them and helped for free: from now on I'll just tell them to get this book.
I was happy to see that the author did not ignore Linux and Mac OS X. I don't think he ignored much of anything: it's all here, from basic wiring to VPN's. No, it's not deep techy details, but it's more than enough to get you started and might just be all that you need. Best of all, it's completely non-threatening. You'd need to be very tech-phobic to feel frightened by this: the author explains things very gently, yet very completely.
I lead a little computer club here in our retirement community; I'm going to be waving this around at the next meeting and telling the people they want to get this. Very, very good.


Click Here to see more reviews about: Network Know-How: An Essential Guide for the Accidental Admin



Buy Now

Click here for more information about Network Know-How: An Essential Guide for the Accidental Admin

Read More...