000 05569cam a2200661Ii 4500
001 ocn876746646
003 OCoLC
005 20190328114807.0
006 m o d
007 cr cnu---unuuu
008 140415s2014 ne ob 000 0 eng d
010 _a 2015303187
040 _aN$T
_beng
_erda
_epn
_cN$T
_dIDEBK
_dOPELS
_dUKMGB
_dE7B
_dYDXCP
_dOCLCO
_dCDX
_dB24X7
_dCOO
_dTPH
_dOCLCA
_dOCLCQ
_dOCLCO
_dDEBSZ
_dVGM
_dLIV
_dOCLCQ
_dSAV
_dOCLCA
_dREB
_dOCLCO
_dOCLCF
_dU3W
_dD6H
_dLND
_dCHVBK
_dINT
_dOTZ
_dAU@
_dOCLCQ
_dWYU
_dOCLCO
_dOCLCA
016 7 _a016724752
_2Uk
016 7 _a016724862
_2Uk
019 _a1026443332
_a1065941456
020 _a9780128006191
_q(electronic bk.)
020 _a0128006196
_q(electronic bk.)
020 _z9780128006047
020 _z0128006048
020 _a9781306583534
020 _a1306583535
035 _a(OCoLC)876746646
_z(OCoLC)1026443332
_z(OCoLC)1065941456
050 4 _aTK5105.59
060 4 _aOnline Book
072 7 _aCOM
_x060040
_2bisacsh
072 7 _aCOM
_x043050
_2bisacsh
072 7 _aCOM
_x053000
_2bisacsh
082 0 4 _a005.8
_223
100 1 _aSood, Aditya K.,
_eauthor.
245 1 0 _aTargeted cyber attacks : multi-staged attacks driven by exploits and malware /
_h[electronic resource]
_cAditya K Sood, Richard Enbody.
264 1 _aAmsterdam ;
_aBoston :
_bSyngress,
_c2014.
300 _a1 online resource.
336 _atext
_btxt
_2rdacontent
337 _acomputer
_bc
_2rdamedia
338 _aonline resource
_bcr
_2rdacarrier
588 0 _aPrint version record.
520 _aCyber-crime increasingly impacts both the online and offline world, and targeted attacks play a significant role in disrupting services in both. Targeted attacks are those that are aimed at a particular individual, group, or type of site or service. Unlike worms and viruses that usually attack indiscriminately, targeted attacks involve intelligence-gathering and planning to a degree that drastically changes its profile. Individuals, corporations, and even governments are facing new threats from targeted attacks. Targeted Cyber Attacks examines real-world examples of directed attacks and provides insight into what techniques and resources are used to stage these attacks so that you can counter them more effectively. A well-structured introduction into the world of targeted cyber-attacksIncludes analysis of real-world attacksWritten by cyber-security researchers and experts.
504 _aIncludes bibliographical references.
505 0 _aFront Cover; Targeted Cyber Attacks; Copyright Page; A Few Words About Targeted Cyber Attacks; Contents; Acknowledgments; About the Authors; Overview; 1 Introduction; References; 2 Intelligence Gathering; 2.1 Intelligence Gathering Process; 2.2 OSINT, CYBINT, and HUMINT; 2.3 OSNs: A Case Study; References; 3 Infecting the Target; 3.1 Elements Used in Incursion; 3.2 Model A: Spear Phishing Attack: Malicious Attachments; 3.3 Model B: Spear Phishing Attack: Embedded Malicious Links; 3.4 Model C: Waterholing Attack; 3.5 Model D: BYOD as Infection Carriers: USB.
505 8 _a3.6 Model E: Direct Incursion: Network ExploitationReferences; 4 System Exploitation; 4.1 Modeling Exploits in Targeted Attacks; 4.2 Elements Supporting System Exploitation; 4.2.1 Browser Exploit Packs (BEPs); 4.2.2 Zero-Day Vulnerabilities and Exploits; 4.3 Defense Mechanisms and Existing Mitigations; 4.4 Anatomy of Exploitation Techniques; 4.4.1 Return-to-Libc Attacks; 4.4.2 Return-oriented Programming; 4.4.3 Attacking DEP and ASLR; 4.4.4 Digging Inside Info Leak Vulnerabilities; 4.5 Browser Exploitation Paradigm; 4.6 Drive-By Download Attack Model; 4.6.1 Compromising a Web Site/Domain.
505 8 _a4.6.2 Infecting a Web Site4.6.3 Hosting BEPs and Distributing Links; 4.6.4 Fingerprinting the User Environment; 4.6.5 Attacking Heap-Model of Exploitation; 4.6.6 Heap Spraying; 4.6.7 Heap Feng Shui/Heap Massage; 4.7 Stealth Malware Design and Tactics; 4.7.1 Hooking; 4.7.2 Bypassing Static and Dynamic Detection Mechanisms; References; 5 Data Exfiltration Mechanisms; 5.1 Phase 1: Data Gathering Mechanisms; 5.2 Phase 2: Data Transmission; References; 6 Maintaining Control and Lateral Movement; 6.1 Maintaining Control; 6.1.1 Deploying BackConnect Servers; 6.1.2 Local Privilege Escalation.
505 8 _a8 Challenges and Countermeasures8.1 Real-Time Challenges; 8.1.1 Persisting False Sense of Security; 8.1.2 Myths About Malware Infections and Protection; 8.2 Countermeasures and Future Developments; 8.2.1 Building a Strong Response Plan; 8.2.2 End System Security; 8.2.3 User Centric Security; 8.2.4 Network Level Security; 8.2.5 Security Assessment and Patch Management; 8.2.6 Next-generation Defenses; References; 9 Conclusion; References; Abbreviations.
650 0 _aComputer networks
_xSecurity measures.
650 0 _aCyberspace
_xSecurity measures.
650 0 _aComputer crimes
_xPrevention.
650 7 _aCOMPUTERS
_xSecurity
_xOnline Safety & Privacy.
_2bisacsh
650 7 _aCOMPUTERS
_xSecurity
_xNetworking.
_2bisacsh
650 7 _aCOMPUTERS
_xSecurity
_xGeneral.
_2bisacsh
650 7 _aComputer crimes
_xPrevention.
_2fast
_0(OCoLC)fst00872068
650 7 _aComputer networks
_xSecurity measures.
_2fast
_0(OCoLC)fst00872341
650 1 2 _aComputer Security.
_0(DNLM)D016494
655 4 _aElectronic books.
655 0 _aElectronic books.
700 1 _aEnbody, Richard J.,
_eauthor.
776 0 8 _iPrint version:
_tTargeted Cyber Attacks
_z9780128006047
_w(OCoLC)869777042
856 4 0 _3ScienceDirect
_uhttp://www.sciencedirect.com/science/book/9780128006047
999 _c246901
_d246901