computer books and technical books at discount prices
Advanced Search
View
My
0
Shopping
Bag
Home Login F.A.Q. Contact Us
 
My Myself and I:
 Order Tracking 
 My Wishlist 
 My Gift Registry 
 Change User Preferences 
 E-mail Notifications 

Browse Books:
 Bestsellers 
 New Arrivals 
 Bargain Computer Books 
 Classic Computer Books 

Browse Subjects:
 business applications 
 cad/cam 
 certification 
 computing 
 databases 
 desktop publishing 
 engineering 
 gaming 
 geographic/gis 
 graphics/animation 
 groupware 
 internet 
 mathematics 
 microsoft programming 
 multimedia 
 networking 
 object-oriented 
 operating systems 
 other & misc 
 programming languages 
 servers 
 web design/development 

Incident Response: Investigating Computer Crime
by Mandia, Kevin / Prosise, Chris
 

 
Cover Price: $39.99
Online Price: $22.39
You save $17.60 (44%)

 

ISBN-10: 0072131829
ISBN-13: 9780072131826
Publisher: Osborne
Published July 2001; Paperback; 509 pages
Add to Shopping Bag
 

OUT OF STOCK
0 COPIES
 
Add to Wishlist
Related categories:
All Sections > Networking > Security > Intrusion Detection

Our Comments:
Please See ISBN 007222696X for 2nd Edition.

Summary:
Learn secrets and strategies for recovering from computer crime incidents.

Incident Response: Investigating Computer Crime describes the methods and techniques necessary to perform a professional and successful response to computer security incidents.

Key features include:

  • Provides an insider's perspective on the incident response process that has never been disclosed or published!
  • Includes real case scenarios with insightful tips on how to respond to computer crime incidents.
  • Gain FBI insider information from authors Chris Prosise and Kevin Mandia who are well-recognized network security, forensics and incident response trainers and consultants.
Respond to security breaches and hacker attacks the right way with help from this insightful and practical guide. You'll get details on the entire computer forensic process and learn the importance of following specific procedures immediately after a computer crime incident occurs. Investigate various software including UNIX, Windows NT, Windows 2000, and application servers. Packed with technical examples and loads of how-to scenarios, this book will show you how to recognize unauthorized access, uncover unusual or hidden files, and monitor Web traffic. Detailed, authoritative, and up to date--Incident Response is the only book you need.
  • Plan and prepare for all stages of an investigation--including detection, initial response, management interaction, and more
  • Learn the importance of evidence handling and storage
  • Perform a "trap and trace" and learn network protocols
  • Monitor network traffic and detect illicit servers and covert channels
  • Investigate Web server attacks, DNS attacks, and router attacks


Table of Contents:
Part I: Learning the Ropes
1: Insiders and Outsiders: A Case Study ..... 3
2: Introduction to Incident Response ..... 15
3: Preparing for Incident Response ..... 33

Part II: Putting on the Gloves
4: Investigative Guidelines ..... 75
5: The Computer Forensic Process ..... 87
6: Learning Network Protocols and Performinga Trap and Trace ..... 131
7: Performing Network Surveillance ..... 155
8: Advanced Network Surveillance ..... 197

Part III: Getting Into the Ring: Investigating Systems
9: Initial Response to Windows NT/2000 ..... 225
10: Investigating Windows NT/2000 ..... 253
11: Initial Response to UNIX Systems ..... 301
12: Investigating UNIX ..... 325

Part IV: Investigating Nonplatform-Specific Technology
13: Investigating Routers ..... 349
14: Investigating Web Attacks ..... 369
15: Investigating Application Servers ..... 381
16: Investigating Hacker Tools ..... 399

Part V: Appendixes
A: Establishing Identity in Cyberspace ..... 429
B: Information Security Policies and AcceptableUse Policies ..... 461
C: Computer Crime Statutes ..... 465
D: Response Organizations ..... 469

Index ..... 473