Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 54 guests online
 
Free Business and Tech Magazines and eBooks

You are here: Home arrow Featuresarrow Book Reviewsarrow Review - Secrets and Lies: Digital Security in a Networked World
EH-Net
May 18, 2013, 10:16:05 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: Review - Secrets and Lies: Digital Security in a Networked World  (Read 8015 times)
0 Members and 1 Guest are viewing this topic.
UNIX
Hero Member
*****
Offline Offline

Posts: 1234


View Profile
« on: August 12, 2009, 05:22:45 AM »

Quote


Secrets and Lies: Digital Security in a Networked World is divided into three chapters. The first one gives a good overview on threats and systems. The next chapter is the biggest of the three and focuses on security technologies which can be used against digital threats. The third and last chapter covers methodologies which can be used in order to build a more secure environment.

In his former book, Applied Cryptography, Schneier wrote about mathematical solutions which seems to be the key to absolute security, at least in theory. In Secrets and Lies he revises his point of view and put it in a more realistic way by applying it to reality. A chain is only as strong as its weakest link it says, which is absolutely true and could be seen many times in past and probably will be seen many times in future. There are reams of threats one have to encounter - systems are connected to the internet, employees could be blackmailed, buildings can be intruded, hardware gets old and vendors could conceal vulnerabilities in their products. In order to know the weakest link one have first to know what the chain consists of. In this first part Schneier explains this and more, and gives some further suggestions, such as possible scenarios and reasons why an attacker might be motivated.

The second and biggest part of this book covers many topics which are important in order to protect against various threats. They are presented in several small parts and discuss their pros and cons and are backed up by samples.


Full review is available here.

Feedback is as always appreciated.
Logged
MadmanTM
Newbie
*
Offline Offline

Posts: 27


nothing is impossible.


View Profile
« Reply #1 on: August 15, 2009, 10:01:31 PM »

this book is on my list Tongue

i am glad you enjoyed it.
Logged

Network+, Security+
CEH Soon.
SynJunkie
Jr. Member
**
Offline Offline

Posts: 71


View Profile WWW
« Reply #2 on: August 18, 2009, 10:40:26 AM »

THis is a really great book, as is his other book "Beyond Fear".  Essential reading in my opinion.

If you enjoy Bruces books he has a monthly news letter here:

http://www.schneier.com/crypto-gram.html

If your limited on reading time you could cath the podcast version here:

http://crypto-gram.libsyn.com

Cheers


Syn
Logged

----------------------------------
http://synjunkie.blogspot.com
chrisj
Hero Member
*****
Offline Offline

Posts: 1163


View Profile WWW
« Reply #3 on: August 18, 2009, 03:13:26 PM »

SynJunkie:
I found that the crypto-gram really is just a rehash of the stuff from his blog.

http://www.schneier.com/blog/

Beyond Fear and Schneier on Security are on my shelf at home, and will hopefully be read soon.

chrisj
Logged

OSWP, Sec+
SynJunkie
Jr. Member
**
Offline Offline

Posts: 71


View Profile WWW
« Reply #4 on: August 19, 2009, 04:23:55 AM »

Chris

Sorry, I should have made that clearer.  That is what I meant when I said "if your short on time there is a podcast version". Or words to that effect.

I don't have time to read his blog but I do have a 3hr commute every day so the podcast is perfect for me.

Regards

Syn

Logged

----------------------------------
http://synjunkie.blogspot.com
UNIX
Hero Member
*****
Offline Offline

Posts: 1234


View Profile
« Reply #5 on: August 19, 2009, 05:58:42 AM »

Beyond Fear is on my endless to-read list as well. I will probably read and work through some other books first, but looking forward to this one too. Too many books, too little time.
Logged
dalepearson
Sr. Member
****
Offline Offline

Posts: 357


View Profile WWW
« Reply #6 on: August 19, 2009, 07:28:56 AM »

Seems its just me then, I have not had much luck reading his books.
Just seems to rub me up the wrong way some how and I cant get into them.

If the library had them I might have a read, but not going to risk a purchase.
Logged

chrisj
Hero Member
*****
Offline Offline

Posts: 1163


View Profile WWW
« Reply #7 on: August 19, 2009, 10:38:02 AM »

If the library had them I might have a read, but not going to risk a purchase.

My local library has Secrets and Lies, as well as Beyond Fear. So there's a chance something around you might have it.

Another Option is to find someone local to you who has a copy and would be willing to loan it to you. If you were in the Metro-Detroit / Ann Arbor area, I'd be happy to loan you my copy.
Logged

OSWP, Sec+
Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.067 seconds with 23 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Advertisement

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.