Image
 
linkedin_logo.png rss_logo.jpg
twitter_logo.png youtube_logo.jpg
Latest Additions
 
EH-Net Login
Welcome Guest.






Lost Password?
No account yet? Register
Who's Online
We have 38 guests online
 
Free Business and Tech Magazines and eBooks

You are here: Home arrow Featuresarrow Book Reviewsarrow Recomended book for Pen Tester
EH-Net
May 21, 2013, 10:40:06 PM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1] 2 3 4   Go Down
  Print  
Author Topic: Recomended book for Pen Tester  (Read 45773 times)
0 Members and 1 Guest are viewing this topic.
millwalll
Guest
« on: May 16, 2011, 01:44:45 PM »

Hi All,

I have a lot of spare time on my hands at the moment why I am trying to break into the industry. I want to know if there are any books that are worth reading ?

I really looking for something that will be very hands on so subject get explained then you go test it on your lab.

Any recommendation please ?
Logged
UNIX
Hero Member
*****
Offline Offline

Posts: 1235


View Profile
« Reply #1 on: May 16, 2011, 01:55:06 PM »

General pentesting or any specific area you are interested in?
Logged
cd1zz
Hero Member
*****
Offline Offline

Posts: 561


View Profile WWW
« Reply #2 on: May 16, 2011, 04:39:37 PM »

From the web side, the Web Application Hackers Handbook is very specific and technical. If you're interested in exploit development, take a look at the Shellcoders Handbook....very technical.
Logged

millwalll
Guest
« Reply #3 on: May 16, 2011, 05:37:30 PM »

I am interested in anything that going to improve my skills to be a pen tester.

I have just got shell code book and does look very technical I am not sure I am ready to develop exploits yet.

Is there one topic a pen tester should know like the back of his hand ?
I was thinking about SQL Injections ..
Logged
cd1zz
Hero Member
*****
Offline Offline

Posts: 561


View Profile WWW
« Reply #4 on: May 16, 2011, 05:44:44 PM »

There is no single book to do that. You need about 30 books and tons of exp Smiley

If you want to look at SQL injection hit the book I recommended. There are also numerous SQL injection tutorials/walk throughs on the intertubes.

Logged

millwalll
Guest
« Reply #5 on: May 16, 2011, 06:05:13 PM »

Not just SQL just any books that will build on my skill I currently at the level of using exploits I know how to scan and find out information and find vulnerabilities I now want learn the next steps. How to attack the system
Logged
SecurityMonkey
Jr. Member
**
Offline Offline

Posts: 89



View Profile WWW
« Reply #6 on: May 16, 2011, 06:49:43 PM »

I have been reading Grey Hat Hacking... it's a good read and full of info. Easy to follow even if you are new to the game.
Logged

cd1zz
Hero Member
*****
Offline Offline

Posts: 561


View Profile WWW
« Reply #7 on: May 16, 2011, 08:30:46 PM »

+1 for grey hat - good book.
Logged

millwalll
Guest
« Reply #8 on: May 16, 2011, 08:52:10 PM »

cool I go for that then thanks
Logged
cd1zz
Hero Member
*****
Offline Offline

Posts: 561


View Profile WWW
« Reply #9 on: May 16, 2011, 08:56:13 PM »

One more a little less technical but a very very good book is Counter Hack Reloaded. I remember reading that in the beginning and it "opened my eyes."
Logged

SecurityMonkey
Jr. Member
**
Offline Offline

Posts: 89



View Profile WWW
« Reply #10 on: May 17, 2011, 12:13:37 AM »

Counter Hack Reloaded is a great book as well
Logged

chrisj
Hero Member
*****
Offline Offline

Posts: 1163


View Profile WWW
« Reply #11 on: May 17, 2011, 10:15:16 AM »

I was going to suggest Counter Hack Reloaded too. Trying to slowly move my way through it (think I mentioned haven't read much lately).

Books I'm trying to read:
Hacking Work (Horrible book, about breaking policies you don't understand and putting your job at risk. Like forwarding your work email to your GMAIL account. Using Google Docs for collaboration, company tools suck, etc.)

Counter Hack Reloaded

Professional Penetration Testing

Hacking Exposed
Hacking Exposed Wireless
Hacking Exposed web apps
Logged

OSWP, Sec+
kriscamaro68
Jr. Member
**
Offline Offline

Posts: 61



View Profile
« Reply #12 on: May 17, 2011, 11:59:24 AM »

Check out this book: http://www.amazon.com/BackTrack-Assuring-Security-Penetration-Testing/dp/1849513945/ref=sr_1_1?ie=UTF8&qid=1305651497&sr=8-1
Logged

A+, Net+, Server+, Security+, MCP/XP
millwalll
Guest
« Reply #13 on: May 17, 2011, 12:32:45 PM »


I have already read this book thanks
Logged
chrisj
Hero Member
*****
Offline Offline

Posts: 1163


View Profile WWW
« Reply #14 on: May 17, 2011, 01:23:40 PM »


How does it compare to the other books that publisher put out? I tried reading their Xen book, but the pages all fell out, and it looked like there was no technical editor for it. I kept sending in errata, for non-working commands, with what they should have been, but never saw the page updated.
Logged

OSWP, Sec+
Pages: [1] 2 3 4   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines
Joomla Bridge by JoomlaHacks.com
Valid XHTML 1.0! Valid CSS!
Page created in 0.08 seconds with 23 queries.
 
Exclusive Deal

sansfire13_245x90_cw90.jpg
SANSFIRE 2013
June 15 - 22

5% Off w/ Code: EHN_5

SANS Deals 4 EH-Netters
5% OFF Any SANS Course in Any Format!
Coupon Code: EHN_5 Including SANS Rocky Mountain 2013 & SANS Boston 2013
Polls
Compared to this year, 2013 will be:
 
Recent Forum Topics
EH-Net News Feeds
Latest Additions
 
         
Free Business and Tech Magazines and eBooks

© 2013 The Ethical Hacker Network
Joomla! is Free Software released under the GNU/GPL License.