語系:
繁體中文
English
說明(常見問題)
回圖書館首頁
手機版館藏查詢
登入
回首頁
切換:
標籤
|
MARC模式
|
ISBD
Cisco router and switch forensics = ...
~
Liu, Dale.{me_controlnum}
FindBook
Google Book
Amazon
博客來
Cisco router and switch forensics = investigating and analyzing malicious network activity /
紀錄類型:
書目-電子資源 : Monograph/item
正題名/作者:
Cisco router and switch forensics/ Dale Liu, lead author and technical editor ; James Burton ... [et al.].
其他題名:
investigating and analyzing malicious network activity /
作者:
Liu, Dale.{me_controlnum}
出版者:
Burlington, MA :Syngress, : c2009.,
面頁冊數:
1 online resource (xi, 504 p.) :ill.
附註:
Includes index.
內容註:
Introduction: An Overview of Cisco Router and Switch Forensics -- Chapter 1: Digital Forensics and Analyzing Data -- Chapter 2: Seizure of Digital Information -- Chapter 3: The Basics of Networking -- Chapter 4: The Language and Mindset of a Network Administrator -- Chapter 5: Subnetting and CIDR -- Chapter 6: Arrival on the Scene -- Chapter 7: Diagramming the Network Infrastructure -- Chapter 8: Cisco IOS Router Basics -- Chapter 9: Understanding the Methods and Mindset of the Attacker -- Chapter 10: Collecting the Non-Volatile Data from a Router -- Chapter 11: Collecting the Volatile Data from a Router -- Chapter 12: Cisco IOS Switch Basics -- Chapter 13: Virtual LANs -- Chapter 14: Collecting the Non-Volatile and Volatile Data from a Switch -- Chapter 15: Preparing Your Report -- Chapter 16: Preparing to Testify -- Appendix A: Cisco Wireless Device Forensics.
標題:
Computer networks - Security measures. -
電子資源:
http://www.sciencedirect.com/science/book/9781597494182
ISBN:
9781597494182
Cisco router and switch forensics = investigating and analyzing malicious network activity /
Liu, Dale.{me_controlnum}
Cisco router and switch forensics
investigating and analyzing malicious network activity /[electronic resource] :Dale Liu, lead author and technical editor ; James Burton ... [et al.]. - Burlington, MA :Syngress,c2009. - 1 online resource (xi, 504 p.) :ill.
Includes index.
Introduction: An Overview of Cisco Router and Switch Forensics -- Chapter 1: Digital Forensics and Analyzing Data -- Chapter 2: Seizure of Digital Information -- Chapter 3: The Basics of Networking -- Chapter 4: The Language and Mindset of a Network Administrator -- Chapter 5: Subnetting and CIDR -- Chapter 6: Arrival on the Scene -- Chapter 7: Diagramming the Network Infrastructure -- Chapter 8: Cisco IOS Router Basics -- Chapter 9: Understanding the Methods and Mindset of the Attacker -- Chapter 10: Collecting the Non-Volatile Data from a Router -- Chapter 11: Collecting the Volatile Data from a Router -- Chapter 12: Cisco IOS Switch Basics -- Chapter 13: Virtual LANs -- Chapter 14: Collecting the Non-Volatile and Volatile Data from a Switch -- Chapter 15: Preparing Your Report -- Chapter 16: Preparing to Testify -- Appendix A: Cisco Wireless Device Forensics.
Cisco IOS (the software that runs the vast majority of Cisco routers and all Cisco network switches) is the dominant routing platform on the Internet and corporate networks. This widespread distribution, as well as its architectural deficiencies, makes it a valuable target for hackers looking to attack a corporate or private network infrastructure. Compromised devices can disrupt stability, introduce malicious modification, and endanger all communication on the network. For security of the network and investigation of attacks, in-depth analysis and diagnostics are critical, but no book currently covers forensic analysis of Cisco network devices in any detail. Cisco Router and Switch Forensics is the first book devoted to criminal attacks, incident response, data collection, and legal testimony on the market leader in network devices, including routers, switches, and wireless access points. Why is this focus on network devices necessary? Because criminals are targeting networks, and network devices require a fundamentally different approach than the process taken with traditional forensics. By hacking a router, an attacker can bypass a network?s firewalls, issue a denial of service (DoS) attack to disable the network, monitor and record all outgoing and incoming traffic, or redirect that communication anywhere they like. But capturing this criminal activity cannot be accomplished with the tools and techniques of traditional forensics. While forensic analysis of computers or other traditional media typically involves immediate shut-down of the target machine, creation of a duplicate, and analysis of static data, this process rarely recovers live system data. So, when an investigation focuses on live network activity, this traditional approach obviously fails. Investigators must recover data as it is transferred via the router or switch, because it is destroyed when the network device is powered down. In this case, following the traditional approach outlined in books on general computer forensics techniques is not only insufficient, but also essentially harmful to an investigation. Jargon buster: A network switch is a small hardware device that joins multiple computers together within one local area network (LAN). A router is a more sophisticated network device that joins multiple wired or wireless networks together. * The only book devoted to forensic analysis of routers and switches, focusing on the operating system that runs the vast majority of network devices in the enterprise and on the Internet * Outlines the fundamental differences between router forensics and traditional forensics, a critical distinction for responders in an investigation targeting network activity * Details where network forensics fits within the entire process of an investigation, end to end, from incident response and data collection to preparing a report and legal testimony.
ISBN: 9781597494182
Source: 175574:171995Elsevier Science & Technologyhttp://www.sciencedirect.comSubjects--Topical Terms:
579161
Computer networks
--Security measures.Index Terms--Genre/Form:
542853
Electronic books.
LC Class. No.: TK5105.59 / .L58 2009
Dewey Class. No.: 005.8
Cisco router and switch forensics = investigating and analyzing malicious network activity /
LDR
:05064cmm 2200325Ia 4500
001
1046374
003
OCoLC
005
20111122085807.0
006
m d
007
cr cn|||||||||
008
120427s2009 maua o 001 0 eng d
020
$a
9781597494182
020
$a
1597494186
035
$a
(OCoLC)459953626
035
$a
ocn459953626
037
$a
175574:171995
$b
Elsevier Science & Technology
$n
http://www.sciencedirect.com
040
$a
OPELS
$b
eng
$c
OPELS
$d
OPELS
$d
CDX
$d
OCLCQ
049
$a
TEFA
050
4
$a
TK5105.59
$b
.L58 2009
082
0 4
$a
005.8
$2
22
100
1
$a
Liu, Dale.{me_controlnum}
$3
1375147
245
1 0
$a
Cisco router and switch forensics
$h
[electronic resource] :
$b
investigating and analyzing malicious network activity /
$c
Dale Liu, lead author and technical editor ; James Burton ... [et al.].
260
$a
Burlington, MA :
$b
Syngress,
$c
c2009.
300
$a
1 online resource (xi, 504 p.) :
$b
ill.
500
$a
Includes index.
505
0
$a
Introduction: An Overview of Cisco Router and Switch Forensics -- Chapter 1: Digital Forensics and Analyzing Data -- Chapter 2: Seizure of Digital Information -- Chapter 3: The Basics of Networking -- Chapter 4: The Language and Mindset of a Network Administrator -- Chapter 5: Subnetting and CIDR -- Chapter 6: Arrival on the Scene -- Chapter 7: Diagramming the Network Infrastructure -- Chapter 8: Cisco IOS Router Basics -- Chapter 9: Understanding the Methods and Mindset of the Attacker -- Chapter 10: Collecting the Non-Volatile Data from a Router -- Chapter 11: Collecting the Volatile Data from a Router -- Chapter 12: Cisco IOS Switch Basics -- Chapter 13: Virtual LANs -- Chapter 14: Collecting the Non-Volatile and Volatile Data from a Switch -- Chapter 15: Preparing Your Report -- Chapter 16: Preparing to Testify -- Appendix A: Cisco Wireless Device Forensics.
520
$a
Cisco IOS (the software that runs the vast majority of Cisco routers and all Cisco network switches) is the dominant routing platform on the Internet and corporate networks. This widespread distribution, as well as its architectural deficiencies, makes it a valuable target for hackers looking to attack a corporate or private network infrastructure. Compromised devices can disrupt stability, introduce malicious modification, and endanger all communication on the network. For security of the network and investigation of attacks, in-depth analysis and diagnostics are critical, but no book currently covers forensic analysis of Cisco network devices in any detail. Cisco Router and Switch Forensics is the first book devoted to criminal attacks, incident response, data collection, and legal testimony on the market leader in network devices, including routers, switches, and wireless access points. Why is this focus on network devices necessary? Because criminals are targeting networks, and network devices require a fundamentally different approach than the process taken with traditional forensics. By hacking a router, an attacker can bypass a network?s firewalls, issue a denial of service (DoS) attack to disable the network, monitor and record all outgoing and incoming traffic, or redirect that communication anywhere they like. But capturing this criminal activity cannot be accomplished with the tools and techniques of traditional forensics. While forensic analysis of computers or other traditional media typically involves immediate shut-down of the target machine, creation of a duplicate, and analysis of static data, this process rarely recovers live system data. So, when an investigation focuses on live network activity, this traditional approach obviously fails. Investigators must recover data as it is transferred via the router or switch, because it is destroyed when the network device is powered down. In this case, following the traditional approach outlined in books on general computer forensics techniques is not only insufficient, but also essentially harmful to an investigation. Jargon buster: A network switch is a small hardware device that joins multiple computers together within one local area network (LAN). A router is a more sophisticated network device that joins multiple wired or wireless networks together. * The only book devoted to forensic analysis of routers and switches, focusing on the operating system that runs the vast majority of network devices in the enterprise and on the Internet * Outlines the fundamental differences between router forensics and traditional forensics, a critical distinction for responders in an investigation targeting network activity * Details where network forensics fits within the entire process of an investigation, end to end, from incident response and data collection to preparing a report and legal testimony.
588
$a
Description based on print version record.
650
0
$a
Computer networks
$x
Security measures.
$3
579161
650
0
$a
Routers (Computer networks)
$3
582091
650
0
$a
Computer crimes
$x
Investigation.
$3
622656
655
4
$a
Electronic books.
$2
lcsh
$3
542853
776
0 8
$i
Print version:
$a
Liu, Dale.
$t
Cisco router and switch forensics.
$d
Burlington, MA : Syngress, c2009
$z
9781597494182
$z
1597494186
$w
(OCoLC)262433471
856
4 0
$3
ScienceDirect
$u
http://www.sciencedirect.com/science/book/9781597494182
938
$a
Coutts Information Services
$b
COUT
$n
10638647
994
$a
C0
$b
TEF
筆 0 讀者評論
館藏地:
全部
電子資源
出版年:
卷號:
館藏
1 筆 • 頁數 1 •
1
條碼號
典藏地名稱
館藏流通類別
資料類型
索書號
使用類型
借閱狀態
預約狀態
備註欄
附件
W9135091
電子資源
11.線上閱覽_V
電子書
EB TK5105.59 .L58 2009
一般使用(Normal)
在架
0
1 筆 • 頁數 1 •
1
多媒體
評論
新增評論
分享你的心得
Export
取書館
處理中
...
變更密碼
登入