Thursday, 19 August 2010

Network flow analysis by Michael W. Lucas, review

Network Flow Analysis by Michael W. Lucas

ISBN: 978-1-59327-203-6

Paperback: 224 pages

Publisher: No Starch Press June 2010

network flow analysis cover

August 2010

Fantastic and very complete information about network flows

Content

This book is a easy guide to the world of netflow logging and analysis. The content ranges from basic configuration of flow logging and easy custo  More text

Posted by hlk at CEST 09:08 19/08/2010 in Books

Thursday, 24 June 2010

The book of Xen, review

The book of Xen: a practical guide for the system administrator by Chris Takemura and Luke S. Crawford

ISBN: 978-1593271862

Paperback: 312 pages

Publisher: No Starch Press October 8, 2009

Review by Henrik Lund Kramshoej, hlk@kramse.org

Book of Xen cover

June 2010

Practical use and short cut to running Xen quickly.

Content

This book is a how-to and a Xen guru standing behind you gu  More text

Posted by hlk at CEST 09:06 24/06/2010 in Books

Monday, 23 November 2009

The book for Windows bug hunters, Gray Hat Python review

Gray Hat Python: Python programming for hackers and reverse engineers by Justin Seitz

ISBN: 978-1593271923

Paperback: 232 pages

Publisher: No Starch Press April 1, 2009

Review by Henrik Lund Kramshoej, hlk@kramse.org

Gray Hat Python cover

November 2009

This book was a joy to read, but take notice of the reverse engineer part in the title.

Contents

The content of this   More text

Posted by hlk at CET 06:11 23/11/2009 in Books

Tuesday, 3 November 2009

Hacking VoIP: Protocols, Attacks, and Countermeasures, review

Review by Henrik Lund Kramshoej, hlk@kramse.org

Hacking VoIP: Protocols, Attacks, and Countermeasures by Himanshu Dwivedi

ISBN: 978-159327163

Paperback: 211 pages

Publisher: NO STARCH PRESS 15 Oct 2008

Hacking VoIP

November 2009

This is a very short book, so I will try to keep the review short too.

I have tried to stay clear of VoIP networks, phones, software, hacking - while keeping an eye out for major problems. The monster called VoIP includes just to many protocols and I have a lot of work doing internet security as it is.

During the last few years though, people are moving even more into VoIP phones and thus I have read a few resources about VoIP, attended a few conference presentations about VoIP security - but not really gotten dirty with hacker tools for VoIP. I asked for a review copy of this book and one was provided by the nice people of No Starch.

This has changed and this book is the reason, because Hacking VoIP is a very practical book that will get you started hacking VoIP networks.

The book is very short, which is great, I like books that you can actually read from cover to cover. The content is also presented clearly with excellent wording and just enough detail to get me started. The book also list precise tools, programs and even allows you to download configurations and special tools.

The problems described are very real and the scenarios are precisely what is found in real life. The target audience for this book is specified as VoIP administrators, but being a security consultant myself I think the actual target audience is a bit wider. The level needed to do the lab exercises is consistent with a VoIP administrator, which have had some experience using Asterisk/BackTrack.

This book also present a VoIP Security Audit Program (VSAP) which I think is a great idea and resource for people to audit their own systems.

To summarize the Good stuff:

  • Short - this book is short, so you can actually finish it
  • Practical - using the tools described you will be able to get a VoIP network running quickly
  • Contents - Specific VoIP stuff, not generic hacker stuff
  • Writing style - excellent

The Bad stuff about this book

  • Repeated content - chapter 8 contains some sniffing and injection which is repeated from chapter 4, including half page screen shoots :-( This might be more of an editorial problem, but having a 200 page book which repeats itself?!
  •   More text

Posted by hlk at CET 09:11 03/11/2009 in Books

Monday, 4 May 2009

IPv6 i Danmark er ligegyldigt

Nu vil spøgefugle som kender mig sikkert sige, "ja det er rigtigt" - men det er desværre mere alvorligt.

Prøver vi så at være seriøse et øjeblik, selvom det er tragisk ... så er vores status i Danmark

  • DNSSEC - er vi på forkant selvom ICANN opfordrer alle til at komme igang ASAP - NEJ
  • IT-sikkerhedsuddannelser - er vi på forkant selvom truslerne burde opfordre alle til at komme igang ASAP - NEJ
    (Faktisk tror jeg næsten mine kursister i Nigeria var mere obs på sikkerhed end danske virksomheder)
  • IT-sikkerhed - er vi på forkant   More text

Posted by hlk at CEST 17:05 04/05/2009 in Books

Bøger bøger bøger

Jeg læser mange bøger, fagbøger.

Indimellem bliver jeg så spurgt om jeg kan anbefale en god bog om et bestemt emne - og det gør jeg da gerne.

Men hvorfor kun anbefale gode bøger når man kan score KASSSEN på at anbefale bøger :-)

Jeg har derfor tilføjet en Amazon UK Store til min blog så folk kan se nogle af de bøger jeg anbefaler. Specielt har jeg valgt kun at tilføje relevante bøger og bøger som jeg selv anbefaler. Det betyder at gamle bøger som ikke er relevante mere ikke vil blive tilføjet butikken, selvom det kan være klassikere som du bør se på.

Så tryk på e  More text

Posted by hlk at CEST 08:05 04/05/2009 in Books

Monday, 16 February 2009

uCertify.com PrepKit 640-802: CCNA: ICND1 and ICND 2, review

I received an email asking if I would review a PrepKit from uCertify.com which I agreed to.

The company uCertify provides IT certification preparation PrepKits for all major vendors such as Microsoft, Sun, Oracle, CompTIA, Cisco, Adobe and CIW in a software package that you can download from the internet and run on your time on your computer.

I decided to ask for a license for the PrepKit 640-802: CCNA: ICND1 and ICND 2 priced at $129.99 aimed at Cisco CCNA which is an en  More text

Posted by hlk at CET 06:02 16/02/2009 in Books

Wednesday, 24 September 2008

Hacking Exposed Linux 3rd edition, review

Hacking Exposed Linux

Cover for the book Hacking Exposed Linux 3rd edition

Third Edition by ISECOM

ISBN: 978-0-07-226257-5

Review by Henrik Lund Kramshoej, hlk@kramse.org

September 2008

Messy and mediocre Linux security book.

I will probably take a lot of heat for this, so let me start by putting on my asbestos suit.

  More text

Posted by hlk at CEST 06:09 24/09/2008 in Books

Tuesday, 17 June 2008

Required reading for web people

High Performance Web Sites by Steve Souders

ISBN: 978-0-596-52930-7

June 2008

book-steve-84x110.jpg

Required reading for web people

No matter if you only run a private site or a large enterprise site you will benefit from this book about optimizing response time and providing users with a better experience visiting your sites.

Contents

This book is very short  More text

Posted by hlk at CEST 09:06 17/06/2008 in Books

Sunday, 8 June 2008

Gray Hat Hacking 2nd ed., review

Review by Henrik Lund Kramshoej, hlk@kramse.org

Gray Hat Hacking, 2nd edition by Shon Harris, Allen Harper, Chris Eagle, and Jonathan Ness

ISBN: 978-0071495684


grayhat_2nd.jpg

A perfect reference for IT-security consultants

Contents

Second edition of books I like are always welcome - and this book is no exception. So I was very happy when I was provided a review copy from the publisher.

I really liked the first edition   More text

Posted by hlk at CEST 18:06 08/06/2008 in Books

Thursday, 27 March 2008

Jon Erickson, Hacking - Art of Exploitation

Jeg har fået tilsendt bogen Hacking, Art of Exploitation, læst den og skrevet et review, som jeg hermed gengiver:

hacking_2E_cov.jpg

Review by Henrik Lund Kramshoej, hlk@kramse.org

Hacking - Art of Exploitation, 2nd edition by Jon Erickson

ISBN: 978-1-59327-144-2

March 2008

Contents

This is the second edition of a well known book about hacking and con  More text

Posted by hlk at CET 08:03 27/03/2008 in Books

Monday, 28 January 2008

The Book of PF, review

Jeg har fået tilsendt bogen Book of PF, læst den og skrevet et review, som jeg hermed gengiver:

Book of PF cover

Review by Henrik Lund Kramshoej, hlk@kramse.org

The Book of PF by Peter N.M Hansteen

ISBN: 978-1-59327-165-7

January 2008

Biased review ahead This review is going to be biased. First of all I love OpenBSD, I love PF and I have  More text

Posted by hlk at CET 08:01 28/01/2008 in Books