How secure is your network? The best way to find out is to attack it. Network Security Assessment provides you with the tricks and tools professional security consultants use to identify and assess risks in Internet-based networks-the same penetration testing model they use to secure government, military, and commercial networks. With this book, you can adopt, refine, and reuse this testing model to design and deploy networks that are hardened and immune from attack.
Network Security Assessment demonstrates how a determined attacker scours Internet-based networks in search of vulnerable components, from the network to the application level. This new edition is up-to-date on the latest hacking techniques, but rather than focus on individual issues, it looks at the bigger picture by grouping and analyzing threats at a high-level. By grouping threats in this way, you learn to create defensive strategies against entire attack categories, providing protection now and into the future.
Network Security Assessment helps you
Assessment is the first step any organization should take to start managing information risks correctly. With techniques to identify and assess risks in line with CESG CHECK and NSA IAM government standards, Network Security Assessment gives you a precise method to do just that.
Christopher Ross McNab is an author, computer hacker, and founder of AlphaSOC. McNab is best known for his Network Security Assessment books, which detail practical penetration testing tactics that can be adopted to evaluate the security of networks in-line with CESG CHECK, PCI DSS, and NIST SP 800-115 standards.
He is not to be confused with Chris McNab, Welsh author, survivalist and military expert.
The book is a guide that covers the full stack when you're trying to do security assesment in your network. It is mainly offensive, more than defensive, but at the end of each chapter you can find a small guide on hardening that specific layer/app. The book is quite hands-on, with many commands, and lots of links. So reading it on paper is not the best use of your time and/or money. Also I was expecting something more theoretical, but it's full of details on specific technologies. All in all, it's a well-written book, but I was not the target.
I found this book while searching for security protocols book. I must say it wasn't a bad coincidence. Expect to learn lot of tricks about networks. By the end the book talk about local buffer overflow techniques. This author knows what he is saying.
Warning: out dated (2007) but still very - very useful
A little bit out of date but not by much. As a starter into the industry, NSA provided a good foundation for further practical learning. Covers the basic techniques required for network infrastructure testing.
Easy read and good introduction to network security. The content is outdated though and much of the information included is irrelevant to modern day pentesting