EH-Net
May 24, 2013, 02:49:51 AM *
Welcome, Guest. Please login or register.
Did you miss your activation email?

Login with username, password and session length
News: Go back to The Ethical Hacker Network Online Magazine Home Page
 
   Home   Help Calendar Login Register  
Pages: [1]   Go Down
  Print  
Author Topic: No Tech Hacking  (Read 3393 times)
0 Members and 1 Guest are viewing this topic.
T_Bone
Full Member
***
Offline Offline

Posts: 199


View Profile
« on: September 05, 2010, 05:54:00 AM »

I am currently reading the book "No Tech Hacking" by Johnny Long, Scott Pinzon and Kevin Mitnick.  I would certaintly recommend it when it comes to physical security Smiley
Logged
sil
Hero Member
*****
Offline Offline

Posts: 549



View Profile WWW
« Reply #1 on: September 05, 2010, 11:08:39 AM »

I am currently reading the book "No Tech Hacking" by Johnny Long, Scott Pinzon and Kevin Mitnick.  I would certaintly recommend it when it comes to physical security Smiley

And this is why an account on Safari pays off: "Unauthorised Access: Physical Penetration Testing For IT Security Teams[/b]

Code:
Gathering the Right Equipment 155
The ‘‘Get of Jail Free’’ Card 155
Photography and Surveillance Equipment 157
Computer Equipment 159
Wireless Equipment 160
Global Positioning Systems 165
Lock Picking Tools 167
Forensics Equipment 169
Communications Equipment 170
Scanners 171
Summary 175

http://my.safaribooksonline.com/9780470747612

Another must have (pokes dynamik go and buy this one too): "Tales from the Front Line" and Counter Intelligence are worth reading as are the methodology/framework they lay out. E.g., without posting TMI:

Quote
1. Receiving the assignment – At this stage, contracts have been signed and certain legal formalities observed.

2. Negotiating the Rules of Engagement – These define what you can and can’t do during testing and their purpose is usually to limit testers to a certain scope.

3. Performing Preliminary Research – You are now ready to pursue the initial information-gathering phase. This will take many forms:
 • Determining Risk – It’s important to accurately gauge the risk a project poses both to the company and to the team members executing it.
 • Writing a Test Plan – A formal (but flexible) test plan is a good idea from both project management and legal perspectives.
 • Gathering Equipment – Equipment is discussed in Chapter 8 but it’s important for the team to take gear that’s appropriate to the test without being over encumbered.

4. Providing documentation and legal requirements – Once the planning stage is complete you will have a not insignificant amount of documentation. We discuss what you should have and who should have access to it.

For a book like this, I'd watch Chris Nickerson's (hola) Tiger Team as well:
http://en.wikipedia.org/wiki/Tiger_Team_%28TV_series%29
Logged

Pages: [1]   Go Up
  Print  
 
Jump to:  

Powered by MySQL Powered by PHP Powered by SMF 1.1.18 | SMF © 2013, Simple Machines Valid XHTML 1.0! Valid CSS!
Page created in 0.087 seconds with 19 queries.