Amazon.com: Writing Security Tools and Exploits: James Foster: Books


Digital Delivery
(How does this work?)
 

Writing Security Tools and Exploits
 
 

Writing Security Tools and Exploits [Download: PDF] [Digital]

James Foster (Author)
4.5 out of 5 stars  See all reviews (2 customer reviews)

Price: $49.95
o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o o
Available for download now.
Ships from and sold by Amazon.com.
Edition: e-document (Learn more)


Editorial Reviews

About the Author

James C. Foster, Fellow, is the Deputy Director of Global Security Solution Development for Computer Sciences Corporation where he is responsible for the vision and development of physical, personnel, and data security solutions. Preceding CSC, Foster was the Director of Research and Development for Foundstone Inc. and was responsible for all aspects of product, consulting, and corporate R&D initiatives. Prior to joining Foundstone, Foster was an Executive Advisor and Research Scientist with Guardent Inc. and an adjunct author at Information Security Magazine, subsequent to working as Security Research Specialist for the Department of Defense. Foster is also a well published author with multiple commercial and educational papers; and has authored, contributed, or edited for major publications to include Snort 2.1 Intrusion Detection (Syngress, ISBN: 1-931836-04-3), Hacking Exposed, Fourth Edition, Anti-Hacker Toolkit, Second Edition, Advanced Intrusion Detection, Hacking the Code: ASP.NET Web Application Security (Syngress, ISBN: 1-932266-65-8), Anti-Spam Toolkit, Google Hacking for Penetration Techniques (Syngress, ISBN: 1-931836-36-1), and Sockets, Shellcode, Porting and Coding (Syngress ISBN: 1-597490-05-9).


Product Details

    Do you have the free reader for this item?
    Adobe Reader
  • Format: Adobe Reader (PDF)
  • Printable: Yes. This title is printable
  • Mac OS Compatible: OS 9.x or later
  • Windows Compatible: Yes
  • Handheld Compatible: Yes. Adobe Reader is available for PalmOS, Pocket PC, and Symbian OS.
  • Digital: 650 pages
  • Publisher: Syngress (February 25, 2006)
  • Average Customer Review: 4.5 out of 5 stars  See all reviews (2 customer reviews)
  • Amazon Best Sellers Rank: #4,289,123 Paid in Books (See Top 100 Paid in Books)
  • Required Free Software: Adobe Reader

Inside This Book (learn more)
Browse and search another edition of this book.
Key Phrases - Statistically Improbable Phrases (SIPs): (learn more)
tap module, protocol dissector, implementation snippet, nasl script, next dissector, exploit module, header breakdown, integer bugs, fake chunk, byte character buffer, heap corruption bug, nop sled, dtors section, push ebp text, integer wrapping, accept system call, saved eip, exploit developer, execve system call, eax text, push byte, backward consolidation, char shellcode, pcap files, payload generation
Key Phrases - Capitalized Phrases (CAPs): (learn more)
Metasploit Framework, Fri Nov, Windows Reverse, Microsoft Windows, Name Default Description, Ask the Author, Renaud Deraison, Token Ring, Doug Lea, Findsock Shell, Microsoft Corp, Starting Bind Handler, Core Security Technologies, Internet Protocol, Matt Miller, Red Hat, Transmission Control Protocol, Michel Arboi, University of Washington, Advanced Server, Double Word Xor Encoder, Extensions Feature, Header Packet, Internet Explorer, Julian Seward
New!
Books on Related Topics | Concordance | Text Stats
Browse Sample Pages:
Front Cover | Table of Contents | First Pages | Index | Surprise Me!
Search Inside This Book:



Suggested Tags from Similar Products

 (What's this?)
Be the first one to add a relevant tag (keyword that's strongly related to this product).
 

Your tags: Add your first tag
 

 

Customer Reviews

2 Reviews
5 star:
 (1)
4 star:
 (1)
3 star:    (0)
2 star:    (0)
1 star:    (0)
 
 
 
 
 
Average Customer Review
4.5 out of 5 stars (2 customer reviews)
 
 
 
 
Share your thoughts with other customers:
Most Helpful Customer Reviews

18 of 18 people found the following review helpful:
5.0 out of 5 stars Excellent Book, but disappointing. . ., December 28, 2005
By 
Marco De Vivo "Mr. TCP/IP" (Miami, Florida United States) - See all my reviews
(REAL NAME)   
Amazon Verified Purchase(What's this?)
Would like just to tell how good this book is (and it is indeed), but I am very disappointed by the fact that no CD is actually included and the companion Web site doesn't seem to exist either. !!

The Editorial review claims:

"The book is accompanied with a companion Web site containing both commented and uncommented versions of the source code examples presented throughout the book. In addition to the book source code, the CD also contains a copy of the author-developed Hacker Code Library v1.0."

Well, sorrily, that's NOT true.

Perhaps this confusion is due to changes resulting from the merge of Syngress with ORA, but still not fair with buyers.

Otherwise, if you, like me, are a researcher (or just interested) in the "secure code" area, then buy the book in spite of all.

By far it is the very best book written about these issues. Best in the sense of most useful. Well designed organized, with in deep study of vulnerabilities and associated exploit codes. Shellcode is explained in a rich and fresh way and the Why, How and When of shellcode are explained under an integrated framework.

NASL and MSF are explained and used in detailed and useful examples, and IMHO, this book presents the most easy, clear and condensed explanation about the Race Conditions, Format Strings, and Buffer Overflows problems I ever read yet.

Warning: Not an entry level book. You need to be familiar with several software and hardware architecture concepts to obtain full benefits from it.
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No


3 of 5 people found the following review helpful:
4.0 out of 5 stars Great Book Examines Security Exploitation, April 24, 2006
By 
If you are an IT professional that needs to learn more about security exploitation and how people can get in and abuse your system, this is a great book for this purpose. Very technical book, not for beginners!!

If you work in IT and want to learn about how to keep the hackers out, this text is a worthwhile read for you

**** RECOMMENDED
Help other customers find the most helpful reviews 
Was this review helpful to you? Yes No

Share your thoughts with other customers: Create your own review
 
 
 
Only search this product's reviews



Customer Discussions

This product's forum
Discussion Replies Latest Post
No discussions yet

Ask questions, Share opinions, Gain insight
Start a new discussion
Topic:
First post:
Prompts for sign-in
 

Search Customer Discussions
Search all Amazon discussions
   





Look for Similar Items by Category


Look for Similar Items by Subject

Search Books by subject:



i.e., each book must be in subject 1 AND subject 2 AND ...