0
نام کتاب
Mastering Kali Linux for Advanced Penetration Testing

Become a cybersecurity ethical hacking expert using Metasploit, Nmap, Wireshark, and Burp Suite

Vijay Kumar Velu

Print Length573 Pages
PublisherPackt
Edition4
LanguageEnglish
Year2022
ISBN9781801819770
10
1K
A2084
انتخاب نوع چاپ:
جلد سخت
1,766,000ت
0
جلد نرم
1,896,000ت(2 جلدی)
0
طلق پاپکو و فنر
1,916,000ت(2 جلدی)
0
مجموع:
0تومان
کیفیت متن:اورجینال انتشارات
قطع:B5
رنگ صفحات:رنگی با کادر / تصویر
پشتیبانی در روزهای تعطیل!
ارسال به سراسر کشور

#LinuxLinux

#Kali_Linux

#hacker

#hacking

#ethical_hacking

#Network

#cybersecurity

#Website

#EC2

#web_applications

#Penetration_Testing

#AWS

توضیحات

🛡️ تسلط بر Pentesting پیشرفته با Kali Linux


🚀 رویکردهای کلیدی‌ای رو یاد بگیر که مهاجم‌های واقعی برای انجام Pentesting پیشرفته در زیرساخت‌های شدیدا محافظت‌شده، محیط‌های Cloud و Virtualized و Deviceها استفاده میکنن و با جدیدترین تکنیک‌های Phishing و Hacking آشنا شو.


ویژگی‌های کلیدی

🔴 Red Teaming رو بررسی میکنی و با بازی کردن نقش مهاجم، به‌شکل Proactive از زیرساخت خودت دفاع میکنی

🔍 از OSINT، Google Dorkها، Nmap، recon-ng و ابزارهای دیگه برای Passive و Active Reconnaissance استفاده میکنی

📱 با جدیدترین تکنیک‌های Phishing مبتنی بر Email، Wi-Fi و Mobile آشنا میشی


📘 توضیح کتاب

🌐 Remote Working فرصت‌های زیادی در اختیار Hackerها قرار داده، چون اطلاعات محرمانه بیشتری نسبت به قبل از طریق اینترنت به اشتراک گذاشته میشه. در این ویرایش جدید از Mastering Kali Linux for Advanced Penetration Testing، با یک رویکرد Offensive مهارت‌های Penetration Testing خودت رو تقویت میکنی و تاکتیک‌های پیشرفته‌ای رو که Hackerهای واقعی استفاده میکنن، در محیط‌های کنترل‌شده بررسی میکنی.


☁️ از یکپارچه‌سازی Lab با Cloud Serviceها عبور میکنی تا با بُعد دیگه‌ای از Exploitation آشنا بشی که معمولا در Penetration Testها نادیده گرفته میشه. روش‌های مختلف نصب و اجرای Kali Linux در VM و محیط‌های Containerized رو بررسی میکنی و سرویس‌های Cloud آسیب‌پذیر رو روی AWS با استفاده از Containerها دیپلوی میکنی. همین‌طور یاد میگیری Misconfigurationهای S3 Bucketها چطور میتونن مسیر دسترسی به EC2 Instanceها رو باز کنن.


🔎 کتاب وارد Passive و Active Reconnaissance میشه؛ از جمع‌آوری اطلاعات کاربران گرفته تا Port Scanning در مقیاس بزرگ. بعد روی Vulnerability Assessmentهای مختلف، از جمله Threat Modeling، تمرکز میکنه.


🧩 میبینی Hackerها چطور بعد از Compromise کردن سیستم از Lateral Movement، Privilege Escalation و Command and Control یا C2 استفاده میکنن.


🎯 تا پایان کتاب، مجموعه‌ای از رویکردهای پیشرفته Pentesting و تکنیک‌های Hacking روی Networkها، IoT، Embedded Peripheral Deviceها و Radio Frequencyها رو بررسی کرده‌ای.


🎯 چیزهایی که یاد میگیری

🌐 Networkها رو در محیط‌های Wired، Wireless، Cloud Infrastructure و Web Serviceها بررسی و تست میکنی

📡 با تکنیک‌های Hacking مربوط به Embedded Peripheral Deviceها، Bluetooth، RFID و IoT آشنا میشی

🛡️ روی روش‌های عبور از Antivirusهای سنتی و ابزارهای Endpoint Detection and Response یا EDR مسلط میشی

🧪 Exploitهای مربوط به Data Systemها رو با Metasploit، PowerShell Empire و CrackMapExec تست میکنی

☁️ Cloud Security Vulnerability Assessment انجام میدی و Security Misconfigurationها رو بررسی میکنی

🕵️ از bettercap و Wireshark برای Network Sniffing استفاده میکنی

🧩 Attackهای پیچیده رو با Metasploit، Burp Suite و OWASP ZAP پیاده‌سازی میکنی


👤 این کتاب برای چه کسانیه؟

🔐 این ویرایش چهارم برای Security Analystها، Pentesterها، Ethical Hackerها، Red Team Operatorها و Security Consultantهاییه که میخوان امنیت Infrastructure، Application و Cloud رو با استفاده از قابلیت‌های پیشرفته Kali Linux یاد بگیرن و بهینه کنن.

📌 داشتن تجربه قبلی در Penetration Testing و دانش پایه Ethical Hacking کمک میکنه بیشترین استفاده رو از مطالب کتاب ببری.


📖 فهرست مطالب

فصل ۱. Penetration Testing هدف‌محور

فصل ۲. Open-Source Intelligence و Passive Reconnaissance

فصل ۳. Active Reconnaissance در Networkهای داخلی و خارجی

فصل ۴. Vulnerability Assessment

فصل ۵. Social Engineering پیشرفته و Physical Security

فصل ۶. Attackهای Wireless و Bluetooth

فصل ۷. Exploit کردن Web-Based Applicationها

فصل ۸. Cloud Security Exploitation

فصل ۹. عبور از Security Controlها

فصل ۱۰. Exploitation

فصل ۱۱. Action on the Objective و Lateral Movement

فصل ۱۲. Privilege Escalation

فصل ۱۳. Command and Control

فصل ۱۴. Hacking روی Embedded Deviceها و RFID


📝 نقد و بررسی

💭 «اول از همه باید بگم Vijay Kumar Velu نویسنده فوق‌العاده‌ایه. در این کتاب درباره رویکردهای پیشرفته Pentesting، تکنیک‌های مختلف Hacking و موضوع‌های خیلی بیشتری صحبت میکنه. به‌عنوان کسی که ۱۰ ساله در صنعت IT و Cyber فعالیت میکنه، میتونم بگم این کتاب خیلی خوب نوشته شده و حتی برای افراد تازه‌کار هم قابل‌فهمه. اگر میخوای در حوزه Cybersecurity و Ethical Hacking متخصص بشی، این کتاب رو شدیدا پیشنهاد میکنم!»

دیوید میس – CyberTech Dave


💭 «این کتاب برای هر کسی که به Pentesting علاقه داره، چه متخصص باتجربه باشه و چه نباشه، یک استاندارد طلاییه. کتاب از راه‌اندازی Environmentهای موردنیاز شروع میکنه و با پیش رفتن فصل‌ها وارد تکنیک‌های پیشرفته‌تر میشه. دقیقا همون چیزی بود که وقتی مسیر حرفه‌ای خودم رو شروع کردم دنبالش بودم و یک خلأ اطلاعاتی بزرگ رو پر میکنه.»

گابریل همپل، CECI، CCIP، CCTA، CHTI


👤 درباره نویسنده

👨‍💻 ویجی کومار ولو متخصص Information Security، نویسنده، سخنران، سرمایه‌گذار و Blogger پرشوریه. او بیش از ۱۶ سال تجربه در صنعت IT داره، Licensed Penetration Tester است و روی ارائه راهکارهای فنی برای طیف گسترده‌ای از مسئله‌های Cyber، از Security Configuration Reviewهای ساده گرفته تا Cyber Threat Intelligence، تخصص داره.

🎓 ویجی چندین Qualification امنیتی از جمله CEH، ECSA و CHFI داره.

📚 او چند کتاب در حوزه Penetration Testing نوشته، از جمله Mastering Kali Linux for Advanced Penetration Testing – Second & Third Editions و Mobile Application Penetration Testing.

🤝 ویجی برای کامیونیتی هم به‌عنوان Chair Member در NCDRC India فعالیت میکنه.

🎵 وقتی مشغول کار نیست، از نوازندگی و فعالیت‌های خیریه لذت میبره.


Master key approaches used by real attackers to perform advanced pentesting in tightly secured infrastructure, cloud and virtualized environments, and devices, and learn the latest phishing and hacking techniques


Key Features

  • Explore red teaming and play the hackers game to proactively defend your infrastructure
  • Use OSINT, Google dorks, Nmap, recon-nag, and other tools for passive and active reconnaissance
  • Learn about the latest email, Wi-Fi, and mobile-based phishing techniques


Book Description

Remote working has given hackers plenty of opportunities as more confidential information is shared over the internet than ever before. In this new edition of Mastering Kali Linux for Advanced Penetration Testing, you'll learn an offensive approach to enhance your penetration testing skills by testing the sophisticated tactics employed by real hackers. You'll go through laboratory integration to cloud services so that you learn another dimension of exploitation that is typically forgotten during a penetration test. You'll explore different ways of installing and running Kali Linux in a VM and containerized environment and deploying vulnerable cloud services on AWS using containers, exploiting misconfigured S3 buckets to gain access to EC2 instances.

This book delves into passive and active reconnaissance, from obtaining user information to large-scale port scanning. Building on this, different vulnerability assessments are explored, including threat modeling. See how hackers use lateral movement, privilege escalation, and command and control (C2) on compromised systems.

By the end of this book, you'll have explored many advanced pentesting approaches and hacking techniques employed on networks, IoT, embedded peripheral devices, and radio frequencies.


What you will learn

  • Exploit networks using wired/wireless networks, cloud infrastructure, and web services
  • Learn embedded peripheral device, Bluetooth, RFID, and IoT hacking techniques
  • Master the art of bypassing traditional antivirus and endpoint detection and response (EDR) tools
  • Test for data system exploits using Metasploit, PowerShell Empire, and CrackMapExec
  • Perform cloud security vulnerability assessment and exploitation of security misconfigurations
  • Use bettercap and Wireshark for network sniffing
  • Implement complex attacks with Metasploit, Burp Suite, and OWASP ZAP

Who this book is for

This fourth edition is for security analysts, pentesters, ethical hackers, red team operators, and security consultants wanting to learn and optimize infrastructure/application/cloud security using advanced Kali Linux features. Prior penetration testing experience and basic knowledge of ethical hacking will help you make the most of this book.


Table of Contents

  1. Goal-Based Penetration Testing
  2. Open-Source Intelligence and Passive Reconnaissance
  3. Active Reconnaissance of External and Internal Networks
  4. Vulnerability Assessment
  5. Advanced Social Engineering and Physical Security
  6. Wireless and Bluetooth Attacks
  7. Exploiting Web-Based Applications
  8. Cloud Security Exploitation
  9. Bypassing Security Controls
  10. Exploitation
  11. Action on the Objective and Lateral Movement
  12. Privilege Escalations
  13. Command and Control
  14. Embedded Devices and RFID Hacking


Review

"First off, I would like to say that Vijay Kumar Velu is a brilliant author. In this book, he talks about advanced pentesting approaches, different hacking techniques, and much more. For someone who has been in the IT/cyber industry for the past 10 years, I can say this book is very well-written and easy to understand even for a beginner. If you want to become a cybersecurity ethical hacking expert, I would highly recommend this book!!"

David Meece - CyberTech Dave



"This book is the gold standard for anyone, seasoned veteran or not, interested in pentesting. The book covers the setup of the environments needed and builds up to more advanced techniques as it progresses. It is exactly what I was looking for when I was getting started in my career and fills a huge information gap!"

Gabrielle Hempel, CECI, CCIP, CCTA, CHTI


About the Author

Vijay Kumar Velu is a passionate information security practitioner, author, speaker, investor, and blogger. He has 16+ years of IT industry experience, is a licensed penetration tester and is specialized in providing technical solutions to diverse cyber problems, ranging from simple security configuration reviews to cyber threat intelligence. Vijay holds multiple security qualifications, including CEH, ECSA, and CHFI. He has authored a few books on penetration testing: Mastering Kali Linux for Advanced Penetration Testing - Second & Third Editions, and Mobile Application Penetration Testing. For the community, Vijay serves as the chair member of NCDRC, India. When not working, he enjoys playing music and doing charity work.

دیدگاه خود را بنویسید
نظرات کاربران (0 دیدگاه)
نظری وجود ندارد.
کتاب های مشابه
لینوکس
978
The Art of Linux Kernel Design
1,561,000 تومان
لینوکس
1,186
Linux in a Nutshell
2,254,000 تومان
لینوکس
1,171
Mastering Linux Device Driver Development
1,819,000 تومان
لینوکس
1,163
Practical Ansible
878,000 تومان
لینوکس
1,405
Building Embedded Linux Systems
1,112,000 تومان
هک و امنیت
1,160
Kali Linux Cookbook
1,540,000 تومان
هک و امنیت
1,221
Beginning Ethical Hacking with Kali Linux
1,125,000 تومان
لینوکس
1,523
Windows Subsystem for Linux 2 (WSL 2) Tips, Tricks, and Techniques
747,000 تومان
لینوکس
1,118
Learn Windows Subsystem for Linux
632,000 تومان
هک و امنیت
2,547
Windows and Linux Penetration Testing from Scratch
1,429,000 تومان
قیمت
منصفانه
ارسال به
سراسر کشور
تضمین
کیفیت
پشتیبانی در
روزهای تعطیل
خرید امن
و آسان
آرشیو بزرگ
کتاب‌های تخصصی
هـر روز با بهتــرین و جــدیــدتـرین
کتاب های روز دنیا با ما همراه باشید
آدرس
پشتیبانی
مدیریت
ساعات پاسخگویی
درباره اسکای بوک
دسترسی های سریع
  • راهنمای خرید
  • راهنمای ارسال
  • سوالات متداول
  • قوانین و مقررات
  • وبلاگ
  • درباره ما