نام کتاب
Practical Social Engineering

A Primer for the Ethical Hacker

Joe Gray

Paperback243 Pages
PublisherNo Starch Press
Edition1
LanguageEnglish
Year2022
ISBN9781718500983
1K
A4768
انتخاب نوع چاپ:
جلد سخت
488,000ت
0
جلد نرم
428,000ت
0
طلق پاپکو و فنر
438,000ت
0
مجموع:
0تومان
کیفیت متن:اورجینال انتشارات
قطع:B5
رنگ صفحات:سیاه و سفید
پشتیبانی در روزهای تعطیل!
ارسال به سراسر کشور

#Ethical_Hacker

#Hacker

#hacking

#OSINT

#Python

#HTML

توضیحات

A guide to hacking the human element.


Even the most advanced security teams can do little to defend against an employee clicking a malicious link, opening an email attachment, or revealing sensitive information in a phone call. Practical Social Engineering will help you better understand the techniques behind these social engineering attacks and how to thwart cyber criminals and malicious actors who use them to take advantage of human nature.


Joe Gray, an award-winning expert on social engineering, shares case studies, best practices, open source intelligence (OSINT) tools, and templates for orchestrating and reporting attacks so companies can better protect themselves. He outlines creative techniques to trick users out of their credentials, such as leveraging Python scripts and editing HTML files to clone a legitimate website. Once you’ve succeeded in harvesting information about your targets with advanced OSINT methods, you’ll discover how to defend your own organization from similar threats.


You’ll learn how to:

  • Apply phishing techniques like spoofing, squatting, and standing up your own web server to avoid detection
  • Use OSINT tools like Recon-ng, theHarvester, and Hunter
  • Capture a target’s information from social media
  • Collect and report metrics about the success of your attack
  • Implement technical controls and awareness programs to help defend against social engineering


Fast-paced, hands-on, and ethically focused, Practical Social Engineering is a book every pentester can put to use immediately.


Table of Contents

Part I: The Basics

Chapter 1: What Is Social Engineering?

Chapter 2: Ethical Considerations in Social Engineering


Part II: Offensive Social Engineering

Chapter 3: Preparing for an Attack

Chapter 4: Gathering Business OSINT

Chapter 5: Social Media and Public Documents

Chapter 6: Gathering OSINT About People

Chapter 7: Phishing

Chapter 8: Cloning a Landing Page

Chapter 9: Detection, Measurement, and Reporting


Part III: Defending Against Social Engineering

Chapter 10: Proactive Defense Techniques

Chapter 11: Technical Email Controls

Chapter 12: Producing Threat Intelligence


Appendix A: Scoping Worksheet

Appendix B: Reporting Template

Appendix C: Information-Gathering Worksheet

Appendix D: Pretexting Sample

Appendix E: Exercises to Improve Your Social Engineering


Review

"One of the best Social Engineering books of all time"

- BookAuthority


"I really liked the way that [Joe] lays out tools to use, including walking through where to download them from and install them . . . as beginner-friendly and as easy to use as possible."

—Patrick Laverty, Layer 8 Podcast


"A great introductory text for those that want to master the fundamentals of social engineering."

—Ben Rothke, Senior Information Security Manager, Tapad


About the Author

Joe Gray, a veteran of the U.S. Navy Submarine Force, is the inaugural winner of the DerbyCon Social Engineering Capture the Flag (SECTF) and was awarded a DerbyCon Black Badge. Joe is the Founder and Principal Instructor at The OSINTion. By day, Joe is a Security Threat Hunting and Intelligence Engineer at Mercari.


As a member of the Password Inspection Agency, Joe has consistently performed well in Capture the Flag events, specifically those involving OSINT. Examples include 2nd Place in the HackFest Quebec Missing Persons CTF and Winning the TraceLabs OSINT Search Party during DEFCON 28 (as a member of The Password Inspection Agency), DEFCON 29 (as a member of The Federal Bureau of OH-SHINT), and DEFCON 30 (as a member of the Eff Ess Bees). Independently, Joe placed 4th in the DerbyCon OSINT CTF, 3rd in the National Child Protection Task Force Missing Persons CTF, and 2nd Place in Hacker Jeopardy at Hack in Paris.


Joe has contributed material for a variety of platforms such as Forbes and Dark Reading in addition to his platforms. Joe has authored the OSINT tools DECEPTICON Bot and WikiLeaker in addition to Practical Social Engineering, available via NoStarch Press.

دیدگاه خود را بنویسید
نظرات کاربران (0 دیدگاه)
نظری وجود ندارد.
کتاب های مشابه
+Security
980
CompTIA Security+ Certification Study Guide
466,000 تومان
Software Development
927
Security Chaos Engineering
635,000 تومان
Machine Learning
1,009
Machine Learning and Security
584,000 تومان
هک و امنیت
1,251
The Browser Hacker's Handbook
1,035,000 تومان
هک و امنیت
496
Industrial Automation and Control System Security Principles
985,000 تومان
لینوکس
1,412
Learning eBPF
422,000 تومان
هک و امنیت
1,599
Evading EDR
507,000 تومان
هک و امنیت
1,013
CompTIA PenTest+ Study Guide: Exam PT0-002
957,000 تومان
هک و امنیت
256
Wireshark for Security Professionals
592,000 تومان
هک و امنیت
844
IAPP CIPP / US - Study Guide
498,000 تومان
قیمت
منصفانه
ارسال به
سراسر کشور
تضمین
کیفیت
پشتیبانی در
روزهای تعطیل
خرید امن
و آسان
آرشیو بزرگ
کتاب‌های تخصصی
هـر روز با بهتــرین و جــدیــدتـرین
کتاب های روز دنیا با ما همراه باشید
آدرس
پشتیبانی
مدیریت
ساعات پاسخگویی
درباره اسکای بوک
دسترسی های سریع
  • راهنمای خرید
  • راهنمای ارسال
  • سوالات متداول
  • قوانین و مقررات
  • وبلاگ
  • درباره ما
چاپ دیجیتال اسکای بوک. 2024-2022 ©