Honeypots for Windows and over one million other books are available for Amazon Kindle. Learn more


or
Sign in to turn on 1-Click ordering.
or
Amazon Prime Free Trial required. Sign up when you check out. Learn More
More Buying Choices
Have one to sell? Sell yours here
Honeypots for Windows (Books for Professionals by Professionals)
 
 
Start reading Honeypots for Windows on your Kindle in under a minute.

Don't have a Kindle? Get your Kindle here, or download a FREE Kindle Reading App.

Honeypots for Windows (Books for Professionals by Professionals) [Paperback]

Roger A. Grimes (Author)
4.8 out of 5 stars  See all reviews (5 customer reviews)

List Price: $39.99
Price: $29.94 & this item ships for FREE with Super Saver Shipping. Details
You Save: $10.05 (25%)
  Special Offers Available
o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o
In Stock.
Ships from and sold by Amazon.com. Gift-wrap available.
Only 1 left in stock--order soon (more on the way).
Want it delivered Tuesday, January 31? Choose One-Day Shipping at checkout. Details
Textbook Student FREE Two-Day Shipping for Students. Learn more

Formats

Amazon Price New from Used from
Kindle Edition $17.59  
Paperback $29.94  

Book Description

Books for Professionals by Professionals October 2004

The Book will cover installing, configuring, and maintaining security Honeypots on Windows platforms. The Book will specifically cover the popular open source Honeypot product called honeyd, and summarize other commercial Honeypot solutions. There are no computer security books covering Honeypots (or IDSs) as they run on Windows platforms.

Developers who are tired of reading Unix and Linux documentation and newsgroups to get information on how to build and maintain a Windows-based Honeypot this book is for you. No longer will you have to rummage through Unix-only advice and utilities to pull out the information that related to your Windows deployment. No longer will you have to listen to some Unix head bash Microsoft and Bill Gates when all you wanted to know is why your Honeypot wasn’t working. Learn special tricks and troubleshooting hints to run a Windows-based Honeypot.

Target audience: Windows network and security administrators; intrusion detection software users; subscribers to Honeypot mailing list; readers of other author’s Honeypot books - all are very Unix-centric


Special Offers and Product Promotions

  • Buy $50 in qualifying physical textbooks, get $5 in Amazon MP3 Credit. Here's how (restrictions apply)

Frequently Bought Together

Honeypots for Windows (Books for Professionals by Professionals) + Honeypots: Tracking Hackers + Virtual Honeypots: From Botnet Tracking to Intrusion Detection
Price For All Three: $101.36

Some of these items ship sooner than the others. Show details

Buy the selected items together
  • In Stock.
    Ships from and sold by Amazon.com.
    This item ships for FREE with Super Saver Shipping. Details

  • Honeypots: Tracking Hackers $29.34

    In Stock.
    Ships from and sold by Amazon.com.
    This item ships for FREE with Super Saver Shipping. Details

  • Virtual Honeypots: From Botnet Tracking to Intrusion Detection $42.08

    Usually ships within 7 to 13 days.
    Ships from and sold by Amazon.com.
    This item ships for FREE with Super Saver Shipping. Details



Editorial Reviews

About the Author

Roger A. Grimes (CPA, MCSE NT/2000, CNE 3/4, A+), author of Malicious Mobile Code:  Virus Protection for Windows (O'Reilly) has been fighting malware since 1987, and was in Newsweek magazine for his work on fighting computer viruses way back in 1992.  He has consulted for some of the world's largest companies, universities, and the Navy.  Roger has written dozens of articles for national computer magazines such as, Windows & .Net Magazine, Security Administrator, Microsoft Certified Professional magazine, Network Magazine, and for mainstream newspapers. Recently, Roger was part of a team that helped re-write and create Microsoft technet security content and authored two chapters in McGraw-Hill’s upcoming book, Network Security: The Complete Reference. As a frequent speaker on computer security, including at MCP’s Tech Mentor Security Summit and SANS Conferences, Roger’s sessions are highly rated for their practical application and real world fixes.


Product Details

  • Paperback: 424 pages
  • Publisher: A-Press; 1 edition (October 2004)
  • Language: English
  • ISBN-10: 1590593359
  • ISBN-13: 978-1590593356
  • Product Dimensions: 9.2 x 7.1 x 1 inches
  • Shipping Weight: 1.6 pounds

More About the Author

Discover books, learn about writers, read author blogs, and more.

 

Customer Reviews

5 Reviews
5 star:
 (4)
4 star:
 (1)
3 star:    (0)
2 star:    (0)
1 star:    (0)
 
 
 
 
 
Average Customer Review
4.8 out of 5 stars (5 customer reviews)
 
 
 
 
Share your thoughts with other customers:
Most Helpful Customer Reviews

7 of 8 people found the following review helpful:
5.0 out of 5 stars Immediate and useful information!, April 13, 2005
This review is from: Honeypots for Windows (Books for Professionals by Professionals) (Paperback)
Review by Lou Vega of the Greater Charleston .NET User Group

This book provides immediate and useful information whether you have previous experience with Honeypots or hadn't even heard of one until you picked up the book. I would recommend this book to anyone who has ever been interested in network and systems security as it pertains to a Microsoft Windows environment, especially in light of the fact that most previous books and articles with information about Honeypots were geared toward *nix systems.

Those who have no previous experience with Honeypots and would like a background lesson can jump right into Chapters 1 and 2 which should give them a fair basic understanding of what's involved. Those persons who want to get right to work...start browsing between chapters 3 and 8 for hands on information including screenshots and installation/configuration information. Later chapters cover more advanced information concerning the monitoring and analysis of the traffic captured using your Honeypot.

The author doesn't leave you stranded with just setting up a Honeypot either. The chapters on Network Analysis, Honeypot Monitoring and alerting, and Honeypot data analysis give you a chance to begin to make real use of the Honeypot and the data gathered while using it. The walkthroughs for setting these analysis and monitoring tools seem easy enough and the author makes good use of available open source tools out there for those who don't have the budget for some of the commercial applications available.

An added bonus for any networking security person is the wealth of information concerning how to harden a Windows Server, common ports used in malware and numerous configuration demonstrations make this a handy book to keep as a general security reference.

This book will make a fine addition to any IT professional's reference collection.
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No


2 of 2 people found the following review helpful:
5.0 out of 5 stars Must Have for any Windows Administrator, November 21, 2005
This review is from: Honeypots for Windows (Books for Professionals by Professionals) (Paperback)
Before reading Roger's book I was pretty sure I had a solid understanding of Honeypots, how they work, how they should be deployed, etc. I can honestly say that I still learned a lot from this book. Recommended for beginner to advanced user. The examples are great and very specific. Running a honeypot in a windows environment definately benefits many of my clients because they are unsure how to properly secure a *nix machine. This book showed me step-by-step how to set-up a fully functional Windows Honeypot that anyone can administer. Thanks for the great info Mr. Grimes, can't wait to read the next book.
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No


3 of 4 people found the following review helpful:
4.0 out of 5 stars a state of the art honeypot, February 27, 2005
This review is from: Honeypots for Windows (Books for Professionals by Professionals) (Paperback)
Grimes has a valid gripe. Honeypots have risen to prominence as an aggressive anti-cracker method. So that, for example, the well known Honeynet Project has been running for several years, with good results. But the bulk of these honeypot efforts has been in unix machines. If you run a network of Microsoft boxes, there is a dearth of comprehensive documentation, until this book came along.

It is written for the Microsoft sysadmin who wants to establish a honeypot that is state of the art. This could be one or more machines on her network. Grimes gives detailed instructions. Most importantly, for the honeyd program. Two chapters are devoted to its installation and running.

But even aside from whether you end up running a honeypot, the book has value. It explains network traffic analysis and various tools that aid in this, such as Snort or Ethereal. With or without a honeypot, you'll need more than a passing acquaintance with traffic analysis, and the book can aid in this.
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No

Share your thoughts with other customers: Create your own review
 
 
 
Most Recent Customer Reviews



Only search this product's reviews



Inside This Book (learn more)
Key Phrases - Statistically Improbable Phrases (SIPs): (learn more)
datagram service, terminal services, terminal server, logon type, enterprise server, telnet server, group policy objects, startup type, smurf attack, honeypot administrators, malware code analysis, emulated honeypots, honeypot system, honeypot monitoring, honeypot environment, honeypot deployment, production honeypots, most honeypots, honeypot software, honeypot data, research honeypots, emulated services, compromised honeypot, other honeypots, banner server
Key Phrases - Capitalized Phrases (CAPs): (learn more)
Exchange Server, Windows Server, Service Pack, Active Directory, Microsoft Windows, Event Viewer, Internet Explorer, Name Service, The Honeynet Project, Session Service, Back Orifice, Windows Firewall, Internet Protocol, Windows File Protection, Recent Activity, Code Red, Performance Monitoring, Computer Management, Back Officer Friendly, Sun Aug, Windows Update, Network Neighborhood, Remote Desktop, Hypertext Transfer Protocol, Windows Explorer
Browse Sample Pages:
Front Cover | Table of Contents | First Pages | Index | Surprise Me!
Search Inside This Book:

Citations (learn more)
1 book cites this book:

What Other Items Do Customers Buy After Viewing This Item?


Tags Customers Associate with This Product

 (What's this?)
Click on a tag to find related items, discussions, and people.
 

Your tags: Add your first tag
 

Customer Discussions

This product's forum
Discussion Replies Latest Post
No discussions yet

Ask questions, Share opinions, Gain insight
Start a new discussion
Topic:
First post:
Prompts for sign-in
 


Active discussions in related forums
Search Customer Discussions
Search all Amazon discussions
   
Related forums



So You'd Like to...


Create a guide


Look for Similar Items by Category


Look for Similar Items by Subject