Web Application SecurityAndrew Hoffman
- Genre: Network
- Publish Date: January 17, 2024
- Publisher: O'Reilly Media
- Apple Books | $54.99Amazon Kindle
The most popular and best selling computer network ebooks at the Apple iBookstore.
Chart of the top computer network ebook best sellers was last updated:
1
Web Application SecurityAndrew Hoffman
In the first edition of this critically acclaimed book, Andrew Hoffman defined the three pillars of application security: reconnaissance, offense, and defense. In this revised and updated second edition, he examines dozens of related topics, from the latest types of attacks and mitigations to threat modeling, the secure software development lifecycle (SSDL/SDLC), and more. Hoffman, senior staff security engineer at Ripple, also provides information regarding exploits and mitigations for several additional web application technologies such as GraphQL, cloud-based deployments, content delivery networks (CDN) and server-side rendering (SSR). Following the curriculum from the first book, this second edition is split into three distinct pillars comprising three separate skill sets: Pillar 1: Recon —Learn techniques for mapping and documenting web applications remotely, including procedures for working with web applications Pillar 2: Offense —Explore methods for attacking web applications using a number of highly effective exploits that have been proven by the best hackers in the world. These skills are valuable when used alongside the skills from Pillar 3. Pillar 3: Defense —Build on skills acquired in the first two parts to construct effective and long-lived mitigations for each of the attacks described in Pillar 2.
2
IT Disaster Recovery Planning For DummiesPeter H. Gregory & Philip Jan Rothstein
If you have a business or a nonprofit organization, or if you’re the one responsible for information systems at such an operation, you know that disaster recovery planning is pretty vital. But it’s easy to put it off. After all, where do you start? IT Disaster Recovery Planning For Dummies shows you how to get started by creating a safety net while you work out the details of your major plan. The right plan will get your business back on track quickly, whether you're hit by a tornado or a disgruntled employee with super hacking powers. Here's how to assess the situation, develop both short-term and long-term plans, and keep your plans updated. This easy-to-understand guide will help you Prepare your systems, processes, and people for an organized response to disaster when it strikes Identify critical IT systems and develop a long-range strategy Select and train your disaster recovery team Conduct a Business Impact Analysis Determine risks to your business from natural or human-made causes Get management support Create appropriate plan documents Test your plan Some disasters get coverage on CNN, and some just create headaches for the affected organization. With IT Disaster Recovery Planning For Dummies, you’ll be prepared for anything from hackers to hurricanes!
3
24 Deadly Sins of Software Security: Programming Flaws and How to Fix ThemMichael Howard, David Leblanc & John Viega
"What makes this book so important is that it reflects the experiences of two of the industry's most experienced hands at getting real-world engineers to understand just what they're being asked for when they're asked to write secure code. The book reflects Michael Howard's and David LeBlanc's experience in the trenches working with developers years after code was long since shipped, informing them of problems." --From the Foreword by Dan Kaminsky, Director of Penetration Testing, IOActive Eradicate the Most Notorious Insecure Designs and Coding Vulnerabilities Fully updated to cover the latest security issues, 24 Deadly Sins of Software Security reveals the most common design and coding errors and explains how to fix each one-or better yet, avoid them from the start. Michael Howard and David LeBlanc, who teach Microsoft employees and the world how to secure code, have partnered again with John Viega, who uncovered the original 19 deadly programming sins. They have completely revised the book to address the most recent vulnerabilities and have added five brand-new sins. This practical guide covers all platforms, languages, and types of applications. Eliminate these security flaws from your code: SQL injection Web server- and client-related vulnerabilities Use of magic URLs, predictable cookies, and hidden form fields Buffer overruns Format string problems Integer overflows C++ catastrophes Insecure exception handling Command injection Failure to handle errors Information leakage Race conditions Poor usability Not updating easily Executing code with too much privilege Failure to protect stored data Insecure mobile code Use of weak password-based systems Weak random numbers Using cryptography incorrectly Failing to protect network traffic Improper use of PKI Trusting network name resolution
4
Metasploit, 2nd EditionDavid Kennedy, Mati Aharoni, Devon Kearns, Jim O'Gorman & Daniel G. Graham
The new and improved guide to penetration testing using the legendary Metasploit Framework. Metasploit: The Penetration Tester’s Guide has been the definitive security assessment resource for over a decade. The Metasploit Framework makes discovering, exploiting, and sharing vulnerabilities quick and relatively painless, but using it can be challenging for newcomers. Written by renowned ethical hackers and industry experts, this fully updated second edition includes: Advanced Active Directory and cloud penetration testingModern evasion techniques and payload encodingMalicious document generation for client-side exploitationCoverage of recently added modules and commands Starting with Framework essentials—exploits, payloads, Meterpreter, and auxiliary modules—you’ll progress to advanced methodologies aligned with the Penetration Test Execution Standard (PTES). Through real-world examples and simulated penetration tests, you’ll: Conduct network reconnaissance and analyze vulnerabilitiesExecute wireless network and social engineering attacksPerform post-exploitation techniques, including privilege escalationDevelop custom modules in Ruby and port existing exploitsUse MSFvenom to evade detectionIntegrate with Nmap, Nessus, and the Social-Engineer Toolkit Whether you’re a cybersecurity professional, ethical hacker, or IT administrator, this second edition of Metasploit: The Penetration Tester’s Guide is your key to staying ahead in the ever-evolving threat landscape.
5
System Design Interview – An Insider's GuideAlex Xu
The system design interview is considered to be the most complex and most difficult technical job interview by many. This book provides a step-by-step framework on how to tackle a system design question. It provides many examples to illustrate the systematic approach with detailed steps that you can follow. What’s inside? - An insider’s take on what interviewers really look for and why. - A 4-step framework for solving any system design interview question. - 15 real system design interview questions with detailed solutions. - 188 diagrams to visually explain how different systems work. Table Of Contents Chapter 1: Scale From Zero To Millions Of Users Chapter 2: Back-of-the-envelope Estimation Chapter 3: A Framework For System Design Interviews Chapter 4: Design A Rate Limiter Chapter 5: Design Consistent Hashing Chapter 6: Design A Key-value Store Chapter 7: Design A Unique Id Generator In Distributed Systems Chapter 8: Design A Url Shortener Chapter 9: Design A Web Crawler Chapter 10: Design A Notification System Chapter 11: Design A News Feed System Chapter 12: Design A Chat System Chapter 13: Design A Search Autocomplete System Chapter 14: Design Youtube Chapter 15: Design Google Drive Chapter 16: The Learning Continues
6
Cybersecurity All-in-One For DummiesJoseph Steinberg, Kevin Beaver, Ira Winkler & Ted Coombs
Over 700 pages of insight into all things cybersecurity Cybersecurity All-in-One For Dummies covers a lot of ground in the world of keeping computer systems safe from those who want to break in. This book offers a one-stop resource on cybersecurity basics, personal security, business security, cloud security, security testing, and security awareness. Filled with content to help with both personal and business cybersecurity needs, this book shows you how to lock down your computers, devices, and systems—and explains why doing so is more important now than ever. Dig in for info on what kind of risks are out there, how to protect a variety of devices, strategies for testing your security, securing cloud data, and steps for creating an awareness program in an organization. Explore the basics of cybersecurity at home and in business Learn how to secure your devices, data, and cloud-based assets Test your security to find holes and vulnerabilities before hackers do Create a culture of cybersecurity throughout an entire organization This For Dummies All-in-One is a stellar reference for business owners and IT support pros who need a guide to making smart security choices. Any tech user with concerns about privacy and protection will also love this comprehensive guide.
7
AI for CommunicationDavid J. Gunkel
AI for Communication offers an engaging exploration into the diverse applications of artificial intelligence (AI) within the realm of communication. By bridging the gap between the scientific and engineering realms of AI and communication, this book reveals how AI, since its inception during the Dartmouth Summer workshop of 1956, has inherently been a science of communication. Exploring key advancements such as machine translation, natural language processing, large language models, computational creativity, and social robotics, this book shows how these innovations not only disrupt but also actively transform human communication. The book is designed for students, teachers, and general readers who want to know how the field of communication impacts and influences the theory and practice of AI and how recent developments in AI will affect all aspects of human social interaction.
8
Fundamentals of Computer NetworksMatthew N. O. Sadiku & Cajetan M. Akujuobi
This textbook presents computer networks to electrical and computer engineering students in a manner that is clearer, more interesting, and easier to understand than other texts. All principles are presented in a lucid, logical, step-by-step manner. As much as possible, the authors avoid wordiness and giving too much detail that could hide concepts and impede overall understanding of the material. Ten review questions in the form of multiple-choice objective items are provided at the end of each chapter with answers. The review questions are intended to cover the little “tricks” which the examples and end-of-chapter problems may not cover. They serve as a self-test device and help students determine how well they have mastered the chapter.Provides a comprehensive introduction to key concepts of computer networks, easily digestible for beginners;Uses illustrations, figures and visual comparisons to simplify and clarify the various concepts and applications;Familiarizes students with international standards for computer networks.
9
Ghost in the WiresWilliam L. Simon, Steve Wozniak & Kevin Mitnick
In this "intriguing, insightful and extremely educational" novel, the world's most famous hacker teaches you easy cloaking and counter-measures for citizens and consumers in the age of Big Brother and Big Data (Frank W. Abagnale). Kevin Mitnick was the most elusive computer break-in artist in history. He accessed computers and networks at the world's biggest companies -- and no matter how fast the authorities were, Mitnick was faster, sprinting through phone switches, computer systems, and cellular networks. As the FBI's net finally began to tighten, Mitnick went on the run, engaging in an increasingly sophisticated game of hide-and-seek that escalated through false identities, a host of cities, and plenty of close shaves, to an ultimate showdown with the Feds, who would stop at nothing to bring him down. Ghost in the Wires is a thrilling true story of intrigue, suspense, and unbelievable escapes -- and a portrait of a visionary who forced the authorities to rethink the way they pursued him, and forced companies to rethink the way they protect their most sensitive information. "Mitnick manages to make breaking computer code sound as action-packed as robbing a bank." -- NPR
10
Cloud Computing for Everyone: Understanding principles, architecture, security, data, and green practicesRohit Agarwal & Dilip K. Prasad
DESCRIPTION Cloud computing is transforming the way businesses and individuals operate, offering scalability, flexibility, and efficiency. Cloud Computing for Everyone provides a structured and practical approach to understanding cloud technology, from foundational concepts to advanced applications. The book also covers service models, deployment strategies, security, and cost management. This book explores cloud computing, starting with fundamental concepts, history, characteristics, service and deployment models. It covers cloud security and privacy, including threats, mechanisms, and best practices. The book then examines cloud migration strategies and cost management, including TCO and ROI. It explains cloud architecture, design principles, application development, and advanced technologies such as edge computing, AI/ML services, and multi-cloud strategies. Cloud-based data management and analytics are addressed, along with cloud storage solutions and analytics platforms. Sustainability in cloud computing is also covered, focusing on green practices and environmental considerations. The book concludes with hands-on projects using Azure, providing practical experience in creating virtual machines, networking, deploying web applications, and performing other cloud-related tasks. By the end, readers will understand the core concepts, be able to make informed decisions about cloud adoption, and possess the practical skills to confidently navigate and implement cloud computing solutions in various domains. KEY FEATURES ● A comprehensive guide covering cloud basics to advanced concepts. ● Hands-on cloud projects with step-by-step implementation. ● Insights on cloud security, cost management, and sustainability. WHAT YOU WILL LEARN ● Understand cloud computing concepts, service models, and deployment strategies. ● Implement cloud security, privacy measures, and compliance best practices. ● Plan and execute cloud migration with real-world case studies. ● Optimize cloud costs and manage resources effectively. ● Design cloud-native applications using modern architectures and frameworks. WHO THIS BOOK IS FOR This book is for students, IT professionals, business leaders, and technology enthusiasts who want to understand and implement cloud computing effectively. It serves as a comprehensive guide, covering fundamental concepts, advanced technologies, and hands-on projects, making it suitable for beginners and experienced professionals looking to enhance their cloud expertise.
11
Mastering Google DriveRobert G. Pascall
Are you tired of juggling multiple digital storage platforms, struggling to keep your files organized and accessible? Is collaborating with team members or sharing important documents causing unnecessary headaches? In this step-by-step handbook, you'll discover how to navigate the complexities of Google Drive, harnessing its full potential to streamline your workflow, secure your data, and collaborate seamlessly with ease. Say goodbye to the frustration of disorganized files and inefficient collaboration, and welcome a new era of productivity. Inside this book, you will learn: ✅ How to set up and configure Google Drive to fit your specific needs ✅ An Easy Way to Navigate the Google Drive interface and understand its key features ✅ Proven strategies to organize and structure your files and folders for efficient management ✅ How to utilize advanced search techniques to quickly find the files you need ✅ The best way to secure your data with encryption, permissions, and sharing settings ✅ How to Optimize mobile usage and access your files on the go ✅ How to Integrate Google Drive with other productivity tools to enhance your workflow ✅ Troubleshooting tips and tricks to overcome common challenges ✅ Powerful add-ons and extensions to automate tasks Don't let doubts hold you back! This step-by-step guide is designed with beginners in mind, offering clear explanations and practical examples to facilitate your learning process. Rest assured, you'll be equipped with the skills to conquer Google Drive and revolutionize your digital workflow. Say goodbye to the chaos of scattered files and the frustration of inefficient collaboration! Scroll back up, get your copy and unleash the full potential of Google Drive to optimize your productivity and collaboration!
12
Security Monitoring with WazuhRajneesh Gupta
"This book equips you with the knowledge to effectively deploy and utilize Wazuh, helping your organization stay resilient against evolving cybersecurity threats." – Santiago Bassett, Founder and CEO, Wazuh Key Features Written by a cybersecurity expert recognized for his leadership and contributions in the industryGain practical insights on using Wazuh for threat protection and complianceImplement security monitoring aligned with MITRE ATT&CK, PCI DSS, and GDPRDeploy Wazuh in cloud environments for security and compliancePurchase of the print or Kindle book includes a free PDF eBook Book Description Strengthen your cybersecurity posture with Wazuh’s powerful security monitoring and compliance capabilities. Security Monitoring with Wazuh is a comprehensive, hands-on guide that helps you deploy, configure, and optimize Wazuh to detect threats, automate incident response, and enforce compliance. With real-world use cases, step-by-step configurations, and tool integrations, this book equips you to build an enterprise-grade defense system. You'll begin by setting up an Intrusion Detection System (IDS) using Wazuh and integrating Suricata to monitor network and host-based threats. Moving forward, you'll explore malware detection, vulnerability assessment, and security automation with SOAR. The book also covers threat intelligence, incident response, and proactive threat hunting, helping you detect and mitigate cybersecurity risks effectively. Beyond detection, you'll enforce compliance with industry standards such as MITRE ATT&CK, PCI DSS, and GDPR, ensuring regulatory adherence and security best practices. By integrating Wazuh with TheHive, Cortex, MISP, and other security tools, you'll streamline threat analysis and response. By the end of this book, you'll master Wazuh's full potential, enabling you to deploy, manage, and enhance security monitoring across your infrastructure—from on-premises to cloud environments. What you will learn Set up an intrusion detection system (IDS) using Wazuh and SuricataImplement file integrity monitoring to detect unauthorized changesIntegrate MISP for automated threat intelligence and IOC detectionLeverage TheHive and Cortex for security automation and incident responseDeploy Wazuh for proactive malware detection and endpoint securityUse Shuffle to automate security operations and streamline responsesHunt for threats with Osquery, log analysis, and MITRE ATT&CK mappingEnsure compliance with PCI DSS, GDPR, and security best practices Who this book is for This book is designed for SOC analysts, security engineers, and security architects looking to deploy Wazuh for threat detection, incident response, and compliance monitoring. It provides practical guidance on setting up open-source SOC capabilities, including file integrity monitoring, security automation, and threat intelligence. Managed service providers seeking a scalable security monitoring system will also benefit. Basic knowledge of IT, cybersecurity, cloud, and Linux is recommended.
13
Mastering AI Tools for Everyday Life and WorkJames Karanja
"Mastering AI: Unlocking Tools for Productivity, Creativity, and Success" is your comprehensive guide to leveraging AI in everyday life and work. Whether you're a professional, student, or small business owner, this book provides actionable insights into using AI tools like ChatGPT, AI art generators, and automation systems to boost productivity, enhance creativity, and streamline tasks. Inside, you'll discover how to: •Use AI tools to simplify your personal and professional life. •Enhance your business operations with automation and AI-powered marketing. •Create engaging content faster with AI-driven design and writing tools. •Master the skills needed to stay ahead in an AI-driven world. Packed with practical tips and easy-to-understand applications, this book will show you how AI can be your ultimate tool for success. Start your AI journey today!
14
The Big Switch: Rewiring the World, from Edison to GoogleNicholas Carr
“Magisterial…Draws an elegant and illuminating parallel between the late-19th-century electrification of America and today’s computing world.” —Salon Hailed as “the most influential book so far on the cloud computing movement” (Christian Science Monitor), The Big Switch makes a simple and profound statement: Computing is turning into a utility, and the effects of this transition will ultimately change society as completely as the advent of cheap electricity did. In a new chapter for this edition that brings the story up-to-date, Nicholas Carr revisits the dramatic new world being conjured from the circuits of the “World Wide Computer.”
15
Mastering Apple iPhone - iPhone XS, XS Max, XR, 8 Plus, and IOS 12 Ultimate User GuideAdidas Wilson
Apple's iOS 12 for iPads and iPhones offers many performance enhancements along with new protections for your security and privacy. iOS 12 Compatibility iOS 12 is available to for all devices that are supported by iOS 11; that is, all 64-bit iOS devices from 2013 to the latest. iOS 12 Automatic Updates Once you enable automatic updates on iOS 12, your device will be updating automatically as soon as a new version is released. iOS 12 and iPad Gesture navigation and the status bar layout have been imported from iPhone X. Performance has been improved and even older iPads can now launch faster and work more smoothly. Memos and Apple's Stocks have also been introduced. iOS 12 aims at making iPad and iPhone more responsive and faster on the current generation of iOS devices as well as older ones. iOS 12 also comes with a new solution for memory. People are expecting Apple to release phones in 2019 so their customers can continue to have a wide range of options. In 2018, they released the iPhone XS (5.8 inches), the iPhone XR (6.1 inches) and the iPhone XS Max (6.5 inches). You can get the XR for $749+ and the XS iPhones for $999+. This trend is expected to continue in 2019. According to rumors, you may see 6.5 and 5.8-inch OLED phones and probably a 6.1-inch LCD one. It is hard to guess what the new iPhones will be named but iPhone 11 or iPhone XI are huge possibilities. People started speculating about the 2019 iPhones even before Apple announced the XR and the XS. A few details about the new phones are out.
16
Official (ISC)2 Guide to the CISSP CBKHal Tipton & Steven Hernández
With each new advance in connectivity and convenience comes a new wave of threats to privacy and security that are capable of destroying a company’s reputation, violating a consumer’s privacy, compromising intellectual property, and in some cases endangering personal safety. This is why it is essential for security professionals to stay current on the latest advances in technology and the new security threats they create. Recognized as one of the best tools available for the information security professional and especially for candidates studying for the (ISC)² CISSP examination, the Official (ISC)²® Guide to the CISSP® CBK®, Third Edition is both up-to-date and relevant, reflecting the latest developments in this ever-changing field and providing an intuitive approach to the CISSP Common Body of Knowledge (CBK). It provides a robust and comprehensive study of the 10 domains of the CBK, which covers everything from access controls and cryptography to operations security and physical (environmental) security. Within the sub-topics of these domains, the book discusses the issues facing security professionals today, such as mobile security, cloud computing, risk management and more. Numerous illustrated examples and practical exercises are included in this book to help the reader understand the concepts within the CBK and be able to apply them in real-life situations. Endorsed by (ISC)² and compiled and reviewed by CISSPs and (ISC)² members, this book provides unrivaled preparation for the certification exam and a reference that will serve you well into your career. Earning your CISSP is a venerable achievement that enables you to convey proficiency in an ever advancing industry, and provides you with membership to an elite network of professionals.
17
Cisco IOS Quick Reference Cheat SheetDouglas Chick
Cisco IOS Down & Dirty Quick Reference Companion is a FAST ACCESS to Cisco commands and examples. In addition; each command has a direct link to Cisco’s website for more information and examples. This digital reference guide is a MUST HAVE for any network administrator or engineer that I keep on my laptop, digital reader, or smartphone when you need it. (especially when you cannot get to the internet) With a complete list of commands, description, and link directly to Cisco’s webpage, this is more than just a cheat sheet but a valued resource during emergencies and even a great study guide for your CCNA or any other type of Cisco Certification.
18
TCP / IP For DummiesCandace Leiden & Marshall Wilensky
Packed with the latest information on TCP/IP standards and protocols TCP/IP is a hot topic, because it's the glue that holds the Internet and the Web together, and network administrators need to stay on top of the latest developments. TCP/IP For Dummies, 6th Edition, is both an introduction to the basics for beginners as well as the perfect go-to resource for TCP/IP veterans. The book includes the latest on Web protocols and new hardware, plus very timely information on how TCP/IP secures connectivity for blogging, vlogging, photoblogging, and social networking. Step-by-step instructions show you how to install and set up TCP/IP on clients and servers; build security with encryption, authentication, digital certificates, and signatures; handle new voice and mobile technologies, and much more. Transmission Control Protocol / Internet Protocol (TCP/IP) is the de facto standard transmission medium worldwide for computer-to-computer communications; intranets, private internets, and the Internet are all built on TCP/IP The book shows you how to install and configure TCP/IP and its applications on clients and servers; explains intranets, extranets, and virtual private networks (VPNs); provides step-by-step information on building and enforcing security; and covers all the newest protocols You'll learn how to use encryption, authentication, digital certificates, and signatures to set up a secure Internet credit card transaction Find practical security tips, a Quick Start Security Guide, and still more in this practical guide.
19
Computer Networking: The Complete Beginner's Guide to Learning the Basics of Network Security, Computer Architecture, Wireless Technology and Communications Systems (Including Cisco, CCENT, and CCNA)Benjamin Walker
Keeping this high-demand information from yourself will be detrimental to your technologically-clueless future self... Do computers and technology, in general, feel alien-like to you, as if it's something way past your time? The advancements made in technology have taken over how our society functions, and so there's no other way to deal with your shortcomings than to handle it head-on. According to TechCo , technology has influenced nearly every aspect of our daily lives , resulting in: Improved communicationImproved forms of home entertainmentImproved housing and lifestyle standardsAn altered healthy industryMore convenient tools for education And last, but certainly not least: Easier travel, both short and long distances It's incredible to think there are people who have made all these things possible, yet, don't you want to know more about what's happening on the inside of it all? In a nutshell, it's a form of communication that allows for the sharing of resources from one device to another and without computer networking, none of the technology we have today could have been attained. Starting with the basics , you will be able to work your way up to become a computer whiz and be the one people turn to for computer advice. In Computer Networking , you will discover: The fundamental elements essential to creating your network, including why each of them is so important to your start-up A thorough explanation of the networking terms you need to know, written in plain English for easy comprehensionHow the Internet has had a revolutionary impact on our society, as well as what you can do to keep up with this undeniable part of our livesThe best type of cable to use according to your networking needsThe 4 main types of wireless networks you should know, along with what factors can interfere with the consistency of these connectionsThe #1 aspect of computer networking that can present a critical threat to your valuable data if not taken seriously And much more. Even if you are at the very bottom of the computer food chain, there's no point in staying there. Technology will continue to advance whether you'd like it to or not, so you better jump on board before it's too late. Knowing your way around computers and how to utilize it for communication is a skill set required at almost every workplace you can find in the modern world, yet that fact is not something you should fear. Use it rather for motivation. The more skill sets you develop, the more opportunities you open for yourself. So with that being said, there's no better time than the present to begin your journey towards a well-informed, technologically-gifted you . Join the other side and finally be the one who's able to correct others about their computer knowledge... If you want to overcome your computer phobia and discover the endless opportunities computer networking has in store, then you need this book today!
20
VMware vSphere For DummiesDaniel Mitchell & Tom Keegan
A plain-English guide to the market-leading virtualization and cloud computing technology With virtualization, a single server can host dozens or hundreds of virtual machines running a variety of operating systems, and even hook them together in a virtual network or cloud infrastructure. This practical guide shows you how to create a virtual system using the VMware VSphere environment. You'll find all the information you need to understand, design, and deploy one—without getting overwhelmed with technical detail. And once you’re up and running, this book is the perfect reference for maintenance and troubleshooting issues. Introduces you to virtualization and VMware’s virtualization/cloud computing technology, the most recent version is VMware vSphere Shows you how to design a vSphere environment Covers installation, deployment, management, maintenance, and troubleshooting Provides what IT managers and system administrators need to roll out their first virtualized or cloud infrastructure, or to get up to speed on VMware’s technology Get up and running on the cloud with VMware vSphere For Dummies !
21
Storage Area Networks For DummiesChristopher Poelker & Alex Nikitin
If you’ve been charged with setting up storage area networks for your company, learning how SANs work and managing data storage problems might seem challenging. Storage Area Networks For Dummies, 2nd Edition comes to the rescue with just what you need to know. Whether you already a bit SAN savvy or you’re a complete novice, here’s the scoop on how SANs save money, how to implement new technologies like data de-duplication, iScsi, and Fibre Channel over Ethernet, how to develop SANs that will aid your company’s disaster recovery plan, and much more. For example, you can: Understand what SANs are, whether you need one, and what you need to build one Learn to use loops, switches, and fabric, and design your SAN for peak performance Create a disaster recovery plan with the appropriate guidelines, remote site, and data copy techniques Discover how to connect or extend SANs and how compression can reduce costs Compare tape and disk backups and network vs. SAN backup to choose the solution you need Find out how data de-duplication makes sense for backup, replication, and retention Follow great troubleshooting tips to help you find and fix a problem Benefit from a glossary of all those pesky acronyms From the basics for beginners to advanced features like snapshot copies, storage virtualization, and heading off problems before they happen, here’s what you need to do the job with confidence!
22
Day One: Junos Monitoring & TroubleshootingJamie Panagos & Albert Statti
This Day One book advocates a process for monitoring and troubleshooting your net- work. The goal is to give you an idea of what to look for before ever typing a show command, so by book’s end, you should know not only what to look for, but where to look. Day One: Junos® Monitoring and Troubleshooting shows you how to identify the root causes of a variety of problems and advocates a common approach to isolate the problems with a best practice set of questions and tests. Moreover, it includes the instrumentation to assist in root cause identification and the configuration know-how to solve both common and severe problems before they ever begin. IT’S DAY ONE AND YOU HAVE A JOB TO DO, SO LEARN HOW TO: - Anticipate the causes and locations of network problems before ever logging in to a device. - Develop a standard monitoring and troubleshooting template providing technicians and monitoring systems with all they need to operate your network. - Utilize the OSI model for quick and effective troubleshooting across different protocols and technologies. - Use the power of Junos to monitor device and network health and reduce network downtime. - Develop your own test for checking the suitability of a network fix.
23
Day One Exploring IPV6Chris Grundemann
The impending exhaustion of IPv4 addresses is prompting many network operators to look closer at ways to provide more address space, including IPv6 and NAT solutions. When deploying IPv6, you can gain a great advantage by using Juniper Networks high-end routers because IPv6 has been implemented directly in the ASICs (Application-Specific Integrated Circuit). Having IPv6 compatibility in the hardware means that IPv6 packets can be forwarded at line rate – unlike many competing routers. Additionally, the Junos OS makes configuring and troubleshooting an IPv6 network a snap. As you read this booklet and work through the topics in your lab, you’ll progressively gain a fuller understanding of IPv6 configuration and operation in Junos. The layered, methodical progression provided will get you up to speed on this crucial networking technology quickly and easily. IT’S DAY ONE AND YOU HAVE A JOB TO DO, SO LEARN HOW TO: - Understand IPv6 address length, and read IPv6 addresses. - Add family inet6 and IPv6 addresses to all types of interfaces. - Set up and test IPv6 neighbor discovery and how to implement static routes in IPv6. - Use basic IPv6 troubleshooting and verification commands, such as ping, traceroute, and various show commands. - Understand how the three IGPs support IPv6: RIPng, OSPF3, and IS-IS.
24
Hacking Exposed 7Stuart McClure, Joel Scambray & George Kurtz
The latest tactics for thwarting digital attacks “Our new reality is zero-day, APT, and state-sponsored attacks. Today, more than ever, security professionals need to get into the hacker’s mind, methods, and toolbox to successfully deter such relentless assaults. This edition brings readers abreast with the latest attack vectors and arms them for these continually evolving threats.” --Brett Wahlin, CSO, Sony Network Entertainment “Stop taking punches--let’s change the game; it’s time for a paradigm shift in the way we secure our networks, and Hacking Exposed 7 is the playbook for bringing pain to our adversaries.” --Shawn Henry, former Executive Assistant Director, FBI Bolster your system’s security and defeat the tools and tactics of cyber-criminals with expert advice and defense strategies from the world-renowned Hacking Exposed team. Case studies expose the hacker’s latest devious methods and illustrate field-tested remedies. Find out how to block infrastructure hacks, minimize advanced persistent threats, neutralize malicious code, secure web and database applications, and fortify UNIX networks. Hacking Exposed 7: Network Security Secrets & Solutions contains all-new visual maps and a comprehensive “countermeasures cookbook.” Obstruct APTs and web-based meta-exploits Defend against UNIX-based root access and buffer overflow hacks Block SQL injection, spear phishing, and embedded-code attacks Detect and terminate rootkits, Trojans, bots, worms, and malware Lock down remote access using smartcards and hardware tokens Protect 802.11 WLANs with multilayered encryption and gateways Plug holes in VoIP, social networking, cloud, and Web 2.0 services Learn about the latest iPhone and Android attacks and how to protect yourself
25
Day One: Configuring EX Series Ethernet Switches, Second EditionYong Kim
This Third Edition updates this classic deployment Guide to 2015. The Juniper Networks EX Series Ethernet Switches deliver a high-performance, scal- able solution for campus, branch office, and data center environments. You can deploy cost-effective Junos switching solutions that deliver carrier-class reliability, security risk management, network virtualization, application control, and reduced total cost of ownership. This book gives you both configuration background and key samples so you can get your switch up and optimally running in your network. No theory, no long introductions, just straightforward configurational how-to’s. IT’S DAY ONE AND YOU HAVE A JOB TO DO, SO LEARN HOW TO: - Manage an EX Series switch using the Junos command line interface (CLI). - Set key Virtual Chassis configurations using various interconnection methods,as well as important design considerations for your Virtual Chassis configuration. - Configure Link Aggregation Group (LAG). n Configure Layer 2 Switching and Layer 3 Routing. - Configure basic IP connectivity and elements to enable remote access. - Configure basic static routing. n Set various Ethernet-switching-options such as voice VLAN, L2 security (DHCP snooping, Dynamic ARP Inspection, etc.), or other Layer 2-specific features. - Configure key EX Series switch features such as Ethernet OAM, MVRP, Multicast, EZQOS-Voice and Port Mirroring.
26
Day One: Configuring Junos Policies and Firewall FiltersJack W. Parks, IV
Day One: Configuring Junos Policies and Firewall Filters Pairing routing policy and firewall filters may, at first glance, seem like an odd combination for a routing book, after all, filters are for security and policy is about manipulating route attributes and readvertisement. While route advertisement decisions can impact security, these two topics are more logically bundled into a single book because of the high degree of similarity in their Junos configuration syntax. Knowing one simply helps you learn the other, and given that both are critically important topics in modern IP networks, their synergy should not be ignored. Day One: Configuring Junos Policies and Firewall Filters shows how the savvy network administrator can make unified and robust efficiencies using two similar tools from their Junos toolbox. “Jack Parks provides clear, concise descriptions and configuration examples to illustrate basic concepts as well as complex examples that demystify policy and filter operations and capabilities that are not widely understood. this is your chance to finally understand why that nested firewall or Boolean grouped policy did not behave as you expected.” Harry Reynolds, Author, Senior Test Engineer, Juniper Networks IT’S DAY ONE AND YOU HAVE A JOB TO DO, SO LEARN HOW TO: • Describe the features of policy, firewall filters, and policers in Junos. • Understand the differences between policy and firewall filters. • Configure policy, firewall filters, and policers in the Junos CLI. • Create useful policies for your network. • Understand how policy flow and default policy actions work in Junos. • Develop a foundation for advanced routing policy topics. • Create hierarchical policy and chain policy together. • Create routing policies that share or filter routes with other routers in the network. Juniper Networks Books are singularly focused on network productivity and efficiency. Peruse the complete library at www.juniper.net/books.
27
TCP/IP IllustratedKevin Fall & W Stevens
“For an engineer determined to refine and secure Internet operation or to explore alternative solutions to persistent problems, the insights provided by this book will be invaluable.” —Vint Cerf, Internet pioneer TCP/IP Illustrated, Volume 1, Second Edition, is a detailed and visual guide to today’s TCP/IP protocol suite. Fully updated for the newest innovations, it demonstrates each protocol in action through realistic examples from modern Linux, Windows, and Mac OS environments. There’s no better way to discover why TCP/IP works as it does, how it reacts to common conditions, and how to apply it in your own applications and networks. Building on the late W. Richard Stevens’ classic first edition, author Kevin R. Fall adds his cutting-edge experience as a leader in TCP/IP protocol research, updating the book to fully reflect the latest protocols and best practices. He first introduces TCP/IP’s core goals and architectural concepts, showing how they can robustly connect diverse networks and support multiple services running concurrently. Next, he carefully explains Internet addressing in both IPv4 and IPv6 networks. Then, he walks through TCP/IP’s structure and function from the bottom up: from link layer protocols–such as Ethernet and Wi-Fi–through network, transport, and application layers. Fall thoroughly introduces ARP, DHCP, NAT, firewalls, ICMPv4/ICMPv6, broadcasting, multicasting, UDP, DNS, and much more. He offers extensive coverage of reliable transport and TCP, including connection management, timeout, retransmission, interactive data flow, and congestion control. Finally, he introduces the basics of security and cryptography, and illuminates the crucial modern protocols for protecting security and privacy, including EAP, IPsec, TLS, DNSSEC, and DKIM. Whatever your TCP/IP experience, this book will help you gain a deeper, more intuitive understanding of the entire protocol suite so you can build better applications and run more reliable, efficient networks.
28
Network+ All-in-One Exam Guide, Sixth Edition (Exam N10-006)Mike Meyers
From Mike Meyers, the #1 name in CompTIA training and exam preparation, a thorough revision of his bestselling exam guide—updated to cover the 2015 release of the CompTIA Network+ exam. Get complete coverage of all the CompTIA Network+ exam objectives inside this comprehensive resource. Written by the leading expert on CompTIA certification and training, Mike Meyers, this authoritative guide covers exam N10-006 in full detail. You’ll find learning objectives at the beginning of each chapter, exam tips, scenarios, practice exam questions, and in-depth explanations. Designed to help you pass the exam with ease, this definitive volume also serves as an essential on-the-job reference. CompTIA Network+ Certification All-in-One Exam Guide, Sixth Edition covers all exam topics, including: Network architectures Cabling and topology Ethernet basics Network installation TCP/IP applications and network protocols Routing Network naming Advanced networking devices IPv6 Remote connectivity Wireless networking Virtualization and cloud computing Network operations Managing risk Network security Network monitoring and troubleshooting Electronic content includes: 100+ practice exam questions in a customizable test engine 20+ lab simulations to help you prepare for the performance-based questions One hour of video training from Mike Meyers Mike’s favorite shareware and freeware networking tools and utilities
29
Official (ISC)2 Guide to the CISSP CBKHal Tipton
Never in the history of human civilization has a society been more interconnected through technology and devices than today. Telecommunications and network security are crucial aspects of the modern communications infrastructure which supports unsurpassed communications and collaboration around the world. While communication has become easier than ever, so has the ability to disrupt or eavesdrop sensitive communications. From data to video to voice, telecommunications and network security has never been more significant than today. Ensuring sound and effective communication infrastructures will become the norm for information security professionals.
30
Virtualization For DummiesBernard Golden
Virtualization has become a “megatrend”—and for good reason. Implementing virtualization allows for more efficient utilization of network server capacity, simpler storage administration, reduced energy costs, and better use of corporate capital. In other words: virtualization helps you save money, energy, and space. Not bad, huh? If you’re thinking about “going virtual” but have the feeling everyone else in the world understands exactly what that means while you’re still virtually in the dark, take heart. Virtualization for Dummies gives you a thorough introduction to this hot topic and helps you evaluate if making the switch to a virtual environment is right for you. This fun and friendly guide starts with a detailed overview of exactly what virtualization is and exactly how it works, and then takes you on a tour of the benefits of a virtualized environment, such as added space in overcrowded data centers, lower operations costs through more efficient infrastructure administration, and reduced energy costs through server consolidation. Next, you’ll get step-by-step guidance on how to: Perform a server virtualization cost versus benefit analysis Weigh server virtualization options Choose hardware for your server virtualization project Create a virtualized software environment Migrate to—and manage—your new virtualized environment Whether you’re an IT manager looking to sell the idea to your boss, or just want to learn more about how to create, migrate to, and successfully manage a virtualized environment, Virtualization for Dummies is your go-to guide for virtually everything you need to know.
31
iCloud for BeginnersScott La Counte
A beginners guide to moving to the cloud. iCloud is something that Apple doesn't talk a lot about but is perhaps their biggest service. It's estimated that nearly 850 million people use it. The thing about it, however, is many people don't even know they're using it. What exactly is it? If you are familiar with Google Drive, then the concept is something you probably already understand. It's an online storage locker. But it's more than that. It is a place where you can store files, and it also syncs everything-so if you send a message on your iPhone, it appears on your MacBook and iPad. If you work on a Keynote presentation from your iPad, you can continue where you left off on your iPhone. iCloud has become even more powerful as our photo library grows. Photos used to be relatively small, but as cameras have advanced, the size goes up. Most photos on your phone are several MB big. iCloud means you can keep the newest ones on your phone and put the older ones in the cloud. It also means you don't have to worry about paying for the phone with the biggest hard drive-in fact, even if you have the biggest hard drive, there's a chance it won't fit all of your photos. This short book will help new users navigate their way around the cloud service.
32
Day One: Deploying Basic QoSGuy Davies
DAY ONE: DEPLOYING BASIC QOS By Guy Davies The demands being placed upon today’s networks are growing at an incredible rate. Given the rapid increase in the number of attached devices, the explosion in traffic generated by these devices, and the convergence of legacy networks designed to carry a single type of traffic in isolation – the old approach of simply overprovisioning to support the potential peaks of data is no longer commercially or technically feasible. To stop this perfect storm of a log jam, Day One: Deploying Basic QoS gives you an overview of Quality of Service (QoS) concepts and then provides tools and techniques from the Junos operating system toolbox to implement a comparatively simple class-of-service configuration. It’s a start, it works, and it can be done in your test bed on day one. And true to the principles of Day One network instruction, you’ll be guided through a set of basic requirements and configuration tools using multiple templates and examples from which you can derive your own valid configurations. “This book is a must have for anyone seeking to configure QOS in any Juniper device due to its clarity, precision, and ease of use. It’s applicable to a wide range of engineers, from the Junos novice all the way to the expert. Guy can’t help but share his immense knowledge and practical experience, adding extra value to the topic and the book as a whole.” - Miguel Barreiros, Senior Professional Services Consultant, Juniper Networks IT’S DAY ONE AND YOU HAVE A JOB TO DO, SO LEARN HOW TO: • Understand the principles of QoS, independent of any vendor’s implementation. • Identify the basic building blocks of a QoS implementation. • Identify common traffic behaviors and how they can be manipulated. • Construct combinations of the basic building blocks in order to induce a required behavior. Juniper Networks Books are singularly focused on network productivity and efficiency. Peruse the complete library at www.juniper.net/books.
33
Day One: Advanced IPv6 ConfigurationChris Grundemann
Day One: Advanced IPv6 Configuration is the second book in the Junos® Networking Technologies Series on IPv6. The first book, Day One: Exploring IPv6, introduced all the basics of configuring an IPv6 enabled LAN: interface addressing, static routes, neighbor discovery, and IGP routing. Now you’re ready to complete the configuration and testing tasks required to enable BGP routing in your network. You’ll learn how to set up both Internal Border Gateway Protocol (IBGP) and External Border Gateway Protocol (EBGP) with IPv6, and how to leverage native IPv6 peering. You’ll also learn how to test and verify your IPv6 BGP configurations. So roll up your sleeves and let’s get to work. “This book is a fantastic tutorial on configuring and testing BGP routing with IPv6 on your network. It’s completely hands-on. It also covers native IPv6 peering and how to advertise IPv6 routes over IPv4 peering sessions. Highly recommended.” Owen DeLong, IPv6 Evangelist, Hurricane Electric IT’S DAY ONE AND YOU HAVE A JOB TO DO, SO LEARN HOW TO: • Configure BGP for IPv6, including IBGP and EBGP using Junos. • Understand the use of the IPv6 NLRI in MP-BGP. • Verify the proper operation of IPv6 BGP peering. • Use VRRP for IPv6 to add redundancy and quicker failover. • Implement CoS on an IPv6 network. • Explain the basics of Multicast Listener Discovery (MLD). • Understand the wide variety of options available for systems management in IPv6. • Set up a production IPv6 network based on the success of your testbed and the results and feedback that testbed provides. Juniper Networks Day One books provide just the information you need to know on day one. That’s because they are written by subject matter experts who specialize in getting networks up and running. Visit www.juniper.net/dayone to peruse the complete library. Published by Juniper Networks Books
34
Synology NAS Setup GuideNicholas Rushton
Based around DSM 7.2, Updated September 2025 With superb functionality and ease of use through the acclaimed DSM operating system, Synology DiskStations are the NAS of choice for the discerning purchaser. Whether it is the storage and sharing of information, the streaming of videos, music and photos to computers and smart devices using Plex, video surveillance, or the ability to have a private cloud that allows access to information from anywhere, the DiskStation can do it. But this power and flexibility comes at a price: setting up a DiskStation for the very first time can seem a daunting prospect. This guide, with over 370 illustrations and screen shots and proven easy-to-follow instructions, will take you through the process from start to finish and help ensure that your home or small business network is a success. Covers working with Windows, Mac, Linux PCs, Chromebooks, Smartphones and tablets. Whether you have just purchased a DiskStation, are about to, or simply want to find out more about Synology NAS and DSM, this guide will help you.
35
DNS and BINDCricket Liu & Paul Albitz
DNS and BIND tells you everything you need to work with one of the Internet's fundamental building blocks: the distributed host information database that's responsible for translating names into addresses, routing mail to its proper destination, and even listing phone numbers with the new ENUM standard. This book brings you up-to-date with the latest changes in this crucial service. The fifth edition covers BIND 9.3.2, the most recent release of the BIND 9 series, as well as BIND 8.4.7. BIND 9.3.2 contains further improvements in security and IPv6 support, and important new features such as internationalized domain names, ENUM (electronic numbering), and SPF (the Sender Policy Framework). Whether you're an administrator involved with DNS on a daily basis or a user who wants to be more informed about the Internet and how it works, you'll find that this book is essential reading. Topics include: What DNS does, how it works, and when you need to use itHow to find your own place in the Internet's namespaceSetting up name serversUsing MX records to route mailConfiguring hosts to use DNS name serversSubdividing domains (parenting)Securing your name server: restricting who can query your server, preventing unauthorized zone transfers, avoiding bogus servers, etc.The DNS Security Extensions (DNSSEC) and Transaction Signatures (TSIG)Mapping one name to several servers for load sharingDynamic updates, asynchronous notification of change to a zone, and incremental zone transfersTroubleshooting: using nslookup and dig, reading debugging output, common problemsDNS programming using the resolver library and Perl's Net::DNS module
36
A Beginner's Guide to Ham RadioGEORGE FREEMAN
Why do we Need Ham? Ham radio is a fun hobby that affords you to talk to other Ham radio operators locally and around the world. Depending on your license class, Ham radio is used for a wide variety of activities. It is also useful in emergencies, search and rescue operations in disaster situations where all communication networks are down. The beauty of ham radio is that it is independent of any resources whether grid or internet for operation. Grab this guide today and learn all you need to know about Ham Radio.
37
Hacking: The Art of Exploitation, 2nd EditionJon Erickson
Hacking is the art of creative problem solving, whether that means finding an unconventional solution to a difficult problem or exploiting holes in sloppy programming. Many people call themselves hackers, but few have the strong technical foundation needed to really push the envelope. Rather than merely showing how to run existing exploits, author Jon Erickson explains how arcane hacking techniques actually work. To share the art and science of hacking in a way that is accessible to everyone, Hacking: The Art of Exploitation, 2nd Edition introduces the fundamentals of C programming from a hacker's perspective. The included LiveCD provides a complete Linux programming and debugging environment—all without modifying your current operating system. Use it to follow along with the book's examples as you fill gaps in your knowledge and explore hacking techniques on your own. Get your hands dirty debugging code, overflowing buffers, hijacking network communications, bypassing protections, exploiting cryptographic weaknesses, and perhaps even inventing new exploits. This book will teach you how to: – Program computers using C, assembly language, and shell scripts – Corrupt system memory to run arbitrary code using buffer overflows and format strings – Inspect processor registers and system memory with a debugger to gain a real understanding of what is happening – Outsmart common security measures like nonexecutable stacks and intrusion detection systems – Gain access to a remote server using port-binding or connect-back shellcode, and alter a server's logging behavior to hide your presence – Redirect network traffic, conceal open ports, and hijack TCP connections – Crack encrypted wireless traffic using the FMS attack, and speed up brute-force attacks using a password probability matrix Hackers are always pushing the boundaries, investigating the unknown, and evolving their art. Even if you don't already know how to program, Hacking: The Art of Exploitation, 2nd Edition will give you a complete picture of programming, machine architecture, network communications, and existing hacking techniques. Combine this knowledge with the included Linux environment, and all you need is your own creativity.
38
Explain the Cloud Like I’m 10Todd Hoff
This is a completely updated and expanded version. What is the cloud? Discover the secrets of the cloud through simple explanations that use lots of pictures and lots of examples. Why learn about the cloud? It’s the future. The cloud is the future of software, the future of computing, and the future of business. If you’re not up on the cloud, the future will move on without you. Don’t miss out. Not a techie? Don’t worry. I wrote this book for you! After reading Explain Cloud Like I'm 10, you will understand the cloud. You will understand how the cloud works. You will understand all the major technologies that make up the cloud. When you hear someone say some new cool thing is in the cloud, you’ll understand exactly what they mean. You will feel the cloud deep in your bones. That’s a promise. How do I deliver on that promise? I’ll tell you a little secret: the cloud is not that hard to understand. It’s just that nobody has taken the time to explain it properly. I take the time. I go slow. You’ll learn step-by-step, one idea at a time. You’ll learn by seeing and understanding. You’ll learn something new, whether you’re a beginner, someone who knows a little and wants to know more or thinking about a career change. In Explain Cloud Like I'm 10 , you’ll discover: An intuitive picture-based definition of the cloud. The deepest secrets behind how the cloud works and what cloud providers do. How the cloud got its name. A more interesting story than you might think. What it means when someone says a service is in the cloud. Significant new advances in the cloud like the cloud model, cloud-native development, DevOps, FinOps, and more. Should you move to the cloud at all? How to make your move to the cloud. How to select between AWS, Azure, GCP, Kubernetes, private cloud, on-prem, colos, bare-metal, edge computing, hybrid-cloud, and multi-cloud. The difference between IaaS, CaaS, PaaS, FaaS, and SaaS and when you'll want to use them. How to learn more about the cloud after you finish the book. How to get a job in the cloud. All about cloud economics and how to significantly lower your cloud bill. If stormy weather affects cloud computing. How the internet really works. Most people don’t know. You will. The good, the bad, and the ugly of cloud computing. It's not all wine and roses. How cloud computing changed how software is made—forever. Why AWS became so popular. Hint: it’s not the technology. What happens when you press play on Netflix. Why Kindle is the perfect example of a cloud service. The radically different approaches Apple and Google take to the cloud. How Google Maps and Facebook Messenger excel as cloud applications. How Walmart built the most enormous hybrid cloud in the world. Why Coca-Cola loves serverless computing. Cloud providers are engaging in a winner-take-all war to addict you to their ecosystems. Key ideas like VMs, serverless, containers, multi-tenancy, workloads, virtualization, caching, OpEx, CapEx, networking, public key cryptography, EC2, S3, CDNs, elastic computing, auto-scaling, datacenters, cloud storage, latency, bandwidth, CPUs, GPUs, TPUs, OSs, Infrastructure as Code, automation, pipelines, CI/CD, APIs, functions, and programming. And so much more. Sound like gobbledygook? Don’t worry! It will all make sense. There's so much to learn! I’ve been a programmer and a writer for over 30 years. I’ve been in cloud computing since the beginning, and I’m here to help you on your journey to understand the cloud. Consider me your guide. I’ll be with you every step of the way. Sound fun? Buy Explain Cloud Like I'm 10, and let’s start learning about the cloud today!
39
Ethical HackingDaniel G. Graham
A hands-on guide to hacking computer systems from the ground up, from capturing traffic to crafting sneaky, successful trojans. A crash course in modern hacking techniques, Ethical Hacking is already being used to prepare the next generation of offensive security experts. In its many hands-on labs, you’ll explore crucial skills for any aspiring penetration tester, security researcher, or malware analyst. You’ll begin with the basics: capturing a victim’s network traffic with an ARP spoofing attack and then viewing it in Wireshark. From there, you’ll deploy reverse shells that let you remotely run commands on a victim’s computer, encrypt files by writing your own ransomware in Python, and fake emails like the ones used in phishing attacks. In advanced chapters, you’ll learn how to fuzz for new vulnerabilities, craft trojans and rootkits, exploit websites with SQL injection, and escalate your privileges to extract credentials, which you’ll use to traverse a private network. You’ll work with a wide range of professional penetration testing tools—and learn to write your own tools in Python—as you practice tasks like: • Deploying the Metasploit framework’s reverse shells and embedding them in innocent-seeming files • Capturing passwords in a corporate Windows network using Mimikatz • Scanning (almost) every device on the internet to find potential victims • Installing Linux rootkits that modify a victim’s operating system • Performing advanced Cross-Site Scripting (XSS) attacks that execute sophisticated JavaScript payloads Along the way, you’ll gain a foundation in the relevant computing technologies. Discover how advanced fuzzers work behind the scenes, learn how internet traffic gets encrypted, explore the inner mechanisms of nation-state malware like Drovorub, and much more. Developed with feedback from cybersecurity students, Ethical Hacking addresses contemporary issues in the field not often covered in other books and will prepare you for a career in penetration testing. Most importantly, you’ll be able to think like an ethical hacker: someone who can carefully analyze systems and creatively gain access to them.
40
The Kubernetes BookNigel Poulton
The #1 Best-Selling Kubernetes book –Fully Updated for 2025! For nearly a decade, The Kubernetes Book has been the go-to resource for developers, DevOps engineers, and IT professionals looking to master Kubernetes. With thousands of reviews and a track record as the most popular Kubernetes book, this Amazon bestseller is the ultimate guide to Kubernetes mastery. What’s New in the 2025 Edition? ✅ All content & examples updated for the latest versions of Kubernetes ✅ Native sidecar containers with hands-on examples ✅ Wasm integration—build & deploy WebAssembly apps on Kubernetes ✅ Real-world node failure scenarios to enhance troubleshooting skills ✅ Simplified cluster setup for both cloud-based & local environments Why Learn Kubernetes? Kubernetes is the foundation of modern cloud computing, and demand for Kubernetes expertise is at an all-time high. Whether you’re running production workloads in the cloud or experimenting locally, this book equips you with the skills needed to succeed. What You’ll Learn: ✔️ Set up Kubernetes clusters (for free!) ✔️ Understand Kubernetes architecture, scheduling, and networking ✔️ Master Pods, Deployments, Services, StatefulSets, Ingress, and more ✔️ Deploy Wasm applications to Kubernetes ✔️ Gain real-world troubleshooting & security skills ✔️ Demystify the Kubernetes API, service discovery, and load balancing ✔️ Learn Kubernetes jargon-free, with practical, hands-on examples Who Is This Book For? 🔹 Developers & DevOps Engineers – Want to level up your containerization and cloud-native skills? This book has you covered. 🔹 IT Professionals – Need Kubernetes knowledge for managing cloud infrastructure? This book delivers exactly what you need. Why This Book? 📖 Most comprehensive Kubernetes guide—trusted by thousands of professionals 🛠️ Packed with examples—not just theory, but practical hands-on learning 🚀 Covers the latest Kubernetes features—so you stay ahead of the curve Master Kubernetes faster and more efficiently than ever before. Get your copy today and take your cloud-native skills to the next level!
41
Time Management for System AdministratorsThomas A. Limoncelli
Time is a precious commodity, especially if you're a system administrator. No other job pulls people in so many directions at once. Users interrupt you constantly with requests, preventing you from getting anything done. Your managers want you to get long-term projects done but flood you with requests for quick-fixes that prevent you from ever getting to those long-term projects. But the pressure is on you to produce and it only increases with time. What do you do? The answer is time management. And not just any time management theory--you want Time Management for System Administrators , to be exact. With keen insights into the challenges you face as a sys admin, bestselling author Thomas Limoncelli has put together a collection of tips and techniques that will help you cultivate the time management skills you need to flourish as a system administrator. Time Management for System Administrators understands that an Sys Admin often has competing goals: the concurrent responsibilities of working on large projects and taking care of a user's needs. That's why it focuses on strategies that help you work through daily tasks, yet still allow you to handle critical situations that inevitably arise. Among other skills, you'll learn how to: Manage interruptionsEliminate timewastersKeep an effective calendarDevelop routines for things that occur regularlyUse your brain only for what you're currently working onPrioritize based on customer expectationsDocument and automate processes for faster execution What's more, the book doesn't confine itself to just the work environment, either. It also offers tips on how to apply these time management tools to your social life. It's the first step to a more productive, happier you.
42
SharePoint 2010 For DummiesVanessa L. Williams
Here's the bestselling guide on SharePoint 2010, updated to cover Office 365 SharePoint Portal Server is an essential part of the enterprise infrastructure for many businesses. The Office 365 version includes significantly enhanced cloud capabilities. This second edition of the bestselling guide to SharePoint covers getting a SharePoint site up and running, branded, populated with content, and more. It explains ongoing site management and offers plenty of advice for administrators who want to leverage SharePoint and Office 365 in various ways. Many businesses today rely on SharePoint Portal Server to aggregate SharePoint sites, information, and applications into a single portal This updated edition covers the enhanced cloud capacities of Office 365 and Microsoft SharePoint Online Shows how to use SharePoint to leverage data centers and collaborate with both internal and external customers, including partners and clients Covers getting a site up and running, populating it with content, branding it, and managing the site long term Administrators and small-business website managers will find SharePoint 2010 For Dummies, 2nd Edition gives them the information they need to make the most of this technology.
43
Wireless Home Networking For DummiesDanny Briere & Pat Hurley
The perennial bestseller shows you how share your files and Internet connection across a wireless network Fully updated for Windows 7 and Mac OS X Snow Leopard, this new edition of this bestseller returns with all the latest in wireless standards and security. This fun and friendly guide shows you how to integrate your iPhone, iPod touch, smartphone, or gaming system into your home network. Veteran authors escort you through the various financial and logisitical considerations that you need to take into account before building a wireless network at home. Covers the basics of planning, installing, and using wireless LANs Reviews essential information on the latest security issues Delivers valuable tips on how to stay current with fast-moving technology Discusses how to share resources such as printers, scanners, an Internet connection, files, and more with multiple computers on one network Wireless Home Networking For Dummies, 4th Edition skips the technical jargon and gets you connected with need-to-know information on building a wireless home network.
44
Network WarriorGary A. Donahue
Pick up where certification exams leave off. With this practical, in-depth guide to the entire network infrastructure, you’ll learn how to deal with real Cisco networks, rather than the hypothetical situations presented on exams like the CCNA. Network Warrior takes you step by step through the world of routers, switches, firewalls, and other technologies based on the author's extensive field experience. You'll find new content for MPLS, IPv6, VoIP, and wireless in this completely revised second edition, along with examples of Cisco Nexus 5000 and 7000 switches throughout. Topics include: An in-depth view of routers and routingSwitching, using Cisco Catalyst and Nexus switches as examplesSOHO VoIP and SOHO wireless access point design and configurationIntroduction to IPv6 with configuration examplesTelecom technologies in the data-networking world, including T1, DS3, frame relay, and MPLSSecurity, firewall theory, and configuration, as well as ACL and authenticationQuality of Service (QoS), with an emphasis on low-latency queuing (LLQ)IP address allocation, Network Time Protocol (NTP), and device failures
45
Practical Packet Analysis, 3rd EditionChris Sanders
It’s easy to capture packets with Wireshark, the world’s most popular network sniffer, whether off the wire or from the air. But how do you use those packets to understand what’s happening on your network? Updated to cover Wireshark 2.x, the third edition of Practical Packet Analysis will teach you to make sense of your packet captures so that you can better troubleshoot network problems. You’ll find added coverage of IPv6 and SMTP, a new chapter on the powerful command line packet analyzers tcpdump and TShark, and an appendix on how to read and reference packet values using a packet map. Practical Packet Analysis will show you how to: –Monitor your network in real time and tap live network communications –Build customized capture and display filters –Use packet analysis to troubleshoot and resolve common network problems, like loss of connectivity, DNS issues, and slow speeds –Explore modern exploits and malware at the packet level –Extract files sent across a network from packet captures –Graph traffic patterns to visualize the data flowing across your network –Use advanced Wireshark features to understand confusing captures –Build statistics and reports to help you better explain technical network information to non-techies No matter what your level of experience is, Practical Packet Analysis will show you how to use Wireshark to make sense of any network and get things done.
46
Mastering Active Directory for Windows Server 2008John A. Price, Brad Price & Scott Fenstermacher
Find all the information you need to manage and maintain Active Directory in Mastering Active Directory for Windows Server® 2008 , an in-depth guide updated with over 300 pages of new material. Revised to address the new components, enhancements, and capabilities brought by Windows Server 2008 to the directory services, this book covers domain name system design, Active Directory forest and domain design, maintaining organizational units, managing group policy, implementing best practices, and more. Expect high-level coverage of the new version of Microsoft's powerful user authentication and authorization tool, fully updated for Windows Server 2008.
47
Cloud ComputingThomas Erl, Ricardo Puttini & Zaigham Mahmood
Clouds are distributed technology platforms that leverage sophisticated technology innovations to provide highly scalable and resilient environments that can be remotely utilized by organizations in a multitude of powerful ways. To successfully build upon, integrate with, or even create a cloud environment requires an understanding of its common inner mechanics, architectural layers, and models, as well as an understanding of the business and economic factors that result from the adoption and real-world use of cloud-based services. In Cloud Computing: Concepts, Technology & Architecture , Thomas Erl, one of the world’s top-selling IT authors, teams up with cloud computing experts and researchers to break down proven and mature cloud computing technologies and practices into a series of well-defined concepts, models, technology mechanisms, and technology architectures, all from an industry-centric and vendor-neutral point of view. In doing so, the book establishes concrete, academic coverage with a focus on structure, clarity, and well-defined building blocks for mainstream cloud computing platforms and solutions. Subsequent to technology-centric coverage, the book proceeds to establish business-centric models and metrics that allow for the financial assessment of cloud-based IT resources and their comparison to those hosted on traditional IT enterprise premises. Also provided are templates and formulas for calculating SLA-related quality-of-service values and numerous explorations of the SaaS, PaaS, and IaaS delivery models. With more than 260 figures, 29 architectural models, and 20 mechanisms, this indispensable guide provides a comprehensive education of cloud computing essentials that will never leave your side.
48
Microsoft Windows Networking EssentialsDarril Gibson
The core concepts and technologies of Windows networking Networking can be a complex topic, especially for those new to the field of IT. This focused, full-color book takes a unique approach to teaching Windows networking to beginners by stripping down a network to its bare basics, thereby making each topic clear and easy to understand. Focusing on the new Microsoft Technology Associate (MTA) program, this book pares down to just the essentials, showing beginners how to gain a solid foundation for understanding networking concepts upon which more advanced topics and technologies can be built. This straightforward guide begins each chapter by laying out a list of topics to be discussed, followed by a concise discussion of the core networking skills you need to have to gain a strong handle on the subject matter. Chapters conclude with review questions and suggested labs so you can measure your level of understanding of the chapter's content. Serves as an ideal resource for gaining a solid understanding of fundamental networking concepts and skills Offers a straightforward and direct approach to networking basics and covers network management tools, TCP/IP, the name resolution process, and network protocols and topologies Reviews all the topics you need to know for taking the MTA 98-366 exam Provides an overview of networking components, discusses connecting computers to a network, and looks at connecting networks with routers If you're new to IT and interested in entering the IT workforce, then Microsoft Windows Networking Essentials is essential reading.
49
The Pentester BluePrintPhillip L. Wylie & Kim Crawley
JUMPSTART YOUR NEW AND EXCITING CAREER AS A PENETRATION TESTER The Pentester BluePrint: Your Guide to Being a Pentester offers readers a chance to delve deeply into the world of the ethical, or "white-hat" hacker. Accomplished pentester and author Phillip L. Wylie and cybersecurity researcher Kim Crawley walk you through the basic and advanced topics necessary to understand how to make a career out of finding vulnerabilities in systems, networks, and applications. You'll learn about the role of a penetration tester, what a pentest involves, and the prerequisite knowledge you'll need to start the educational journey of becoming a pentester. Discover how to develop a plan by assessing your current skillset and finding a starting place to begin growing your knowledge and skills. Finally, find out how to become employed as a pentester by using social media, networking strategies, and community involvement. Perfect for IT workers and entry-level information security professionals, The Pentester BluePrint also belongs on the bookshelves of anyone seeking to transition to the exciting and in-demand field of penetration testing. Written in a highly approachable and accessible style, The Pentester BluePrint avoids unnecessarily technical lingo in favor of concrete advice and practical strategies to help you get your start in pentesting. This book will teach you: The foundations of pentesting, including basic IT skills like operating systems, networking, and security systems The development of hacking skills and a hacker mindset Where to find educational options, including college and university classes, security training providers, volunteer work, and self-study Which certifications and degrees are most useful for gaining employment as a pentester How to get experience in the pentesting field, including labs, CTFs, and bug bounties
50
Networking for Systems AdministratorsMichael W. Lucas
Stop waiting for the network team! If basic TCP/IP was hard, network administrators couldn’t do it. Servers give sysadmins a incredible visibility into the network—once they know how to unlock it. Most sysadmins don’t need to understand window scaling, or the differences between IPv4 and IPv6 echo requests, or other intricacies of the TCP/IP protocols. You need only enough to deploy your own applications and get easy support from the network team. This book teaches you: How modern networks really work The essentials of TCP/IP The next-generation protocol, IPv6 The right tools to diagnose network problems, and how to use them Troubleshooting everything from the physical wire to DNS How to see the traffic you send and receive Connectivity testing How to communicate with your network team to quickly resolve problems A systems administrator doesn’t need to know the innards of TCP/IP, but knowing enough to diagnose your own network issues transforms a good sysadmin into a great one.