04-23-2008, 01:30 PM
![[Image: f4h5id.jpg]](http://i26.tinypic.com/f4h5id.jpg)
Hack the Stack was written for those who seek to better understand and to gain a deeper knowledge of how TCP/IP systems really work. Such knowledge enables security professionals to make networks more secure.
• Extend OSI to Network Security: Use the well-known Open Systems Interconnect (OSI) model to see security topics in a new way.
• Defend the Physical Layer: Learn ways to avoid the loss of physical security, which can result in total exposure.
• Attack and Defend the Data Link Layer: Examine methods like ARP spoofing, MAC flooding, and using honeytokens.
• Understand IP Attacks: Learn how spoofing and evasion tasks can undermine the network layer.
• Detect Scans on Your Network: Understand port scanning techniques and utilities such as Scanrand, Wireshark, and Nmap.
• Avoid the Effects of Session Hijacking: See how Ettercap can be used for both malicious activity and to protect the session layer.
• Protect the Confidentiality of a Transaction: Use protocols such as IPSec to secure communications between two hosts.
• Analyze DNS and Its Weaknesses: See how DNS is susceptible to attacks that could lead to DoS or provide attackers with information.
• Make the Case for Stronger Security: Perform asset identification and valuation procedures.
Link:
[hide]http://rapidshare.com/files/109571225/Syngress_Hack_the_Stack.pdf[/hide]