WWW.COMPUTEREBOOK.NET
Free Computer Book Download
Hacking Exposed - Network Security Secrets & Solutions, 2nd Edition Ebook
![]() |
Author(s): Joel Scambray, Stuart MCClure, George Kurtz
Publisher: MCGraw-Hill
Year: 2001
ISBN: 0-07-219214-3
Language: English
File type: PDF
Pages: 735
Size (for download): 7.39 MB
When a tree falls in the forest and no one is around to hear it, it certainly makes a sound. But if a computer network has a security vulnerability and no one knows about it, is it insecure? Only the most extreme Berkeleian idealist might argue against the former, but the latter is not nearly so obvious.
A network with a security vulnerability is insecure to those who know about the vulnerability.If noone knows about itâ€â€ÂÂif it is literally a vulnerability that has not been discoveredâ€â€ÂÂthen the network is secure. If one person knows about it, then the network is insecure to him but secure to everyone else. If the network equipment manufacturer knows about it…if security researchers know about it…if the hacking community knows about it the insecurity of the network increasesas news of the vulnerability gets out.
Or does it? The vulnerability exists, whether or not anyone knows about it.Publishing a vulnerability does not cause the network to be insecure. To claim that would be confusing knowledge about a thing with the thing itself. Publishing increases the likelihood that an attacker will use the vulnerability, but not the severity of the vulnerability. Publishing also increases the likelihood that people can defend against the vulnerability. Just as an attacker can’t exploit a vulnerability he does not know about, a defender can’t protect against a vulnerability he does not know about.
So if keeping vulnerabilities secret increases security, it does so in a fragile way. Keeping vulnerabilities secret only works as long as they remain secretâ€â€ÂÂbut everything about information works toward spreading information. Some people spread secrets accidentally; others spread them on purpose. Sometimes secrets are re-derived by someone else. And once a secret is out, it can never be put back.
Keywords Ebooks:
vulnerability Ebook network Ebook knows Ebook security Ebook insecure Ebook
| Ebook | |
| Server | Status |
| rapidshare.de | Alive |
Random Ebooks
| Designing SQL Server 2000 Databases for .Net |
| The Microsoft .NET initiative is the future of e-commerce - making it possible for organisations to build a secure, reliable e-commerce infrastructure. This is ... |
| Applied C# In Financial Markets |
| This book is designed to help experienced programmers into the C# language. It covers all the relevant concepts of C# from a ï¬Ânance viewpoint. In the prep... |
| MySQL Stored Procedure Programming |
| MySQL Stored Procedure Programming covers a lot of ground. The book starts with a thorough introduct... |
| After Effects Apprentice |
| If youre new to After Effects and want to get up to speed quickly, After Effects Apprentice was created just for you. With 11 core lessons plus a fun final pro... |
| Excel Hacks: Tips & Tools for Streamlining Your SpreadsheetsExcel Hacks: Tips & Tools for Streamlining Your Spreadsheets |
| Millions of users create and share Excel spreadsheets every day, but few go deeply enough to learn the techniques that will make their work much easier. There a... |
| Test Driven: TDD and Acceptance TDD for Java Developers |
| In test driven development, you first write an executable test of what your application code must do. Only then do you write the code itself and, with the test ... |
| Practical Ruby Gems |
| Practical Ruby Gems is a comprehensive guide to utilizing and creating Ruby Gems–ready-made Ruby code modules that can be easily added to Ruby and Rails ... |
| Learning SQL on SQL Server 2005 |
| Anyone who interacts with today's modern databases needs to know SQL (Structured Query Language), th... |
| Pro Java 6 3D Game Development Java 3D JOGL JInput and JOAL APIs |
| This book looks at the two most popular ways of using Java SE 6 to write 3D games on PCs: Java 3D (a high-level scene graph API) and JOGL (a Java layer over Op... |
| Pro SharePoint Solution Development |
| Pro SharePoint Solution Development: Combining .NET, SharePoint, and Office 2007 takes a practical problem/solution approach to common business challenges. You... |
Warning: fopen() [function.fopen]: Filename cannot be empty in /home1/ebooksix/public_html/www.computerebook.net/php/center_show_web.php on line 359
Warning: fwrite(): supplied argument is not a valid stream resource in /home1/ebooksix/public_html/www.computerebook.net/php/center_show_web.php on line 360
Warning: fclose(): supplied argument is not a valid stream resource in /home1/ebooksix/public_html/www.computerebook.net/php/center_show_web.php on line 361
