- ホーム
- > 洋書
- > 英文書
- > Computer / General
Full Description
Based on the author's popular online course, Offensive Security turns offensive security theory into practice, equipping security professionals with the hands-on knowledge they'll need to carry out red team operations in the field. Unlike other offensive security books, this title explains the 'how' of red team operations, embracing the hacker spirit by teaching techniques and practices often kept under wraps in the industry. Erdmann also covers tooling and infrastructure, two key components of red team operations; comparable resources tend to focus on one or the other and lack specifics on implementation. The book begins by covering how to write custom tools then teaches readers how to engineer the infrastructure to effectively use those tools. Projects and screenshots throughout help reinforce learning, and the conversational tone is approachable and engaging. Erdmann emphasizes that readers can apply the skills they acquire here across numerous IT areas, as the technologies and procedures covered are applicable to defensive security or even neutral IT roles.
Contents
Introduction
PART I: OFFENSIVE SECURITY DEVELOPMENT
Chapter 1: Web Applications Exploits
Chapter 2: Authentication Attacks
Chapter 3: Malware Design and Distribution
PART II: OFFENSIVE SECURITY ENGINEERING
Chapter 4: Configuring OffSec Infrastructure with IaC Tools
Chapter 5: Applying Network Fundamentals to C2 Implementation
Chapter 6: Reverse VPN Tunneling
Chapter 7: Managing Infrastructure for OffSec Operations
PART III: OFFENSIVE SECURITY IN THE REAL WORLD
Chapter 8: A Red Teaming Deep Dive
Chapter 9: Scenario 1: Classic Exploitation
Chapter 10: Scenario 2: The DropBox
Chapter 11: Scenario 3: A Phishing Attack with C2 Redirectors
Chapter 12: Multiplayer C2 Configuration