Example: stock market

Certifi ed Ethical Hacker - pearsoncmg.com

certified Ethical Hacker (CEH) Cert Guide Michael Gregg 800 East 96th Street Indianapolis, Indiana 46240 USA. certified Ethical Hacker (CEH) Cert Guide Associate Publisher Copyright 2014 by Pearson Education, Inc. Dave Dusthimer All rights reserved. No part of this book shall be reproduced, stored in Acquisitions Editor a retrieval system, or transmitted by any means, electronic, mechanical, Betsy Brown photocopying, recording, or otherwise, without written permission from the publisher. No patent liability is assumed with respect to the use of the Development Editor information contained herein.

Certifi ed Ethical Hacker (CEH) Cert Guide Michael Gregg . Certifi ed Ethical Hacker (CEH) Cert Guide ... Practice Exam I 561 Practice Exam II 603 ... APPENDIX B Memory Tables (CD only) APPENDIX C Memory Table Answer Key (CD only) iv Certified Ethical Hacker (CEH) Cert Guide Table of Contents Introduction xxiii Chapter 1 Ethical Hacking Basics ...

Tags:

  Exams, Certified, Ethical, Hacker, Certifi ed ethical hacker, Certifi, Certified ethical hacker

Information

Domain:

Source:

Link to this page:

Please notify us if you found a problem with this document:

Other abuse

Advertisement

Transcription of Certifi ed Ethical Hacker - pearsoncmg.com

1 certified Ethical Hacker (CEH) Cert Guide Michael Gregg 800 East 96th Street Indianapolis, Indiana 46240 USA. certified Ethical Hacker (CEH) Cert Guide Associate Publisher Copyright 2014 by Pearson Education, Inc. Dave Dusthimer All rights reserved. No part of this book shall be reproduced, stored in Acquisitions Editor a retrieval system, or transmitted by any means, electronic, mechanical, Betsy Brown photocopying, recording, or otherwise, without written permission from the publisher. No patent liability is assumed with respect to the use of the Development Editor information contained herein.

2 Although every precaution has been taken in Ellie C. Bru the preparation of this book, the publisher and author assume no respon- Managing Editor sibility for errors or omissions. Nor is any liability assumed for damages Sandra Schroeder resulting from the use of the information contained herein. ISBN-13: 978-0-7897-5127-0 Senior Project Editor ISBN-10: 0-7897-5127-5 Tonya Simpson Copy Editor Library of Congress Control Number: 2013953303 Keith Cline Printed in the United States of America Indexer Second Printing: May 2014 Tim Wright Trademarks Proofreader All terms mentioned in this book that are known to be trademarks or ser- Kathy Ruiz vice marks have been appropriately capitalized.

3 Pearson IT Certi cation Technical Editors cannot attest to the accuracy of this information. Use of a term in this book Brock Pearson should not be regarded as affecting the validity of any trademark or service Tatyana Zidarov mark. Publishing Coordinator Warning and Disclaimer Vanessa Evans Every effort has been made to make this book as complete and as accurate as possible, but no warranty or tness is implied. The information provided Media Producer is on an as is basis. The author and the publisher shall have neither li- Lisa Matthews ability nor responsibility to any person or entity with respect to any loss or Book Designer damages arising from the information contained in this book or from the Alan Clements use of the CD or programs accompanying it.

4 Compositor Bulk Sales Jake McFarland Pearson IT Certi cation offers excellent discounts on this book when or- dered in quantity for bulk purchases or special sales. For more information, please contact Corporate and Government Sales 1-800-382-3419. For sales outside of the , please contact International Sales Contents at a Glance Introduction xxiii CHAPTER 1 Ethical Hacking Basics 3. CHAPTER 2 The Technical Foundations of Hacking 39. CHAPTER 3 Footprinting and Scanning 77. CHAPTER 4 Enumeration and System Hacking 137. CHAPTER 5 Linux and Automated Assessment Tools 173.

5 CHAPTER 6 Trojans and Backdoors 213. CHAPTER 7 Sniffers, Session Hijacking, and Denial of Service 251. CHAPTER 8 Web Server Hacking, Web Applications, and Database Attacks 297. CHAPTER 9 Wireless Technologies, Mobile Security, and Attacks 341. CHAPTER 10 IDS, Firewalls, and Honeypots 381. CHAPTER 11 Buffer Overflows, Viruses, and Worms 417. CHAPTER 12 Cryptographic Attacks and Defenses 453. CHAPTER 13 Physical Security and Social Engineering 493. CHAPTER 14 Final Preparation 527. Glossary 535. Practice Exam I 561. Practice Exam II 603. Index 646. APPENDIX A Answers to the Do I Know This Already?

6 Quizzes and Review Questions (CD only). APPENDIX B Memory Tables (CD only). APPENDIX C Memory Table Answer Key (CD only). iv certified Ethical Hacker (CEH) Cert Guide Table of Contents Introduction xxiii Chapter 1 Ethical Hacking Basics 3. Do I Know This Already? Quiz 3. Foundation Topics 6. Security Fundamentals 6. Goals of Security 7. Risk, Assets, Threats, and Vulnerabilities 8. Defining an Exploit 10. Security Testing 10. No-Knowledge Tests (Black Box) 11. Full-Knowledge Testing (White Box) 11. Partial-Knowledge Testing (Gray Box) 11. Types of Security Tests 12.

7 Hacker and Cracker Descriptions 13. Who Attackers Are 15. Hacker and Cracker History 16. Ethical Hackers 17. Required Skills of an Ethical Hacker 18. Modes of Ethical Hacking 19. Test Plans Keeping It Legal 21. Test Phases 23. Establishing Goals 24. Getting Approval 25. Ethical Hacking Report 25. Vulnerability Research Keeping Up with Changes 26. Ethics and Legality 27. Overview of Federal Laws 28. Compliance Regulations 30. Chapter Summary 31. Exam Preparation Tasks 32. Review All Key Topics 32. Hands-On Labs 32. Lab 1-1 Examining Security Policies 32. Table of Contents v Review Questions 33.

8 Define Key Terms 36. View Recommended Resources 36. Chapter 2 The Technical Foundations of Hacking 39. Do I Know This Already? Quiz 39. Foundation Topics 42. The Attacker's Process 42. Performing Reconnaissance and Footprinting 42. Scanning and Enumeration 43. Gaining Access 44. Escalation of Privilege 45. Maintaining Access 45. Covering Tracks and Planting Backdoors 45. The Ethical Hacker 's Process 46. National Institute of Standards and Technology 47. Operational Critical Threat, Asset, and Vulnerability Evaluation 47. Open Source Security Testing Methodology Manual 48.

9 Security and the Stack 48. The OSI Model 48. Anatomy of TCP/IP Protocols 51. The Application Layer 53. The Transport Layer 57. The Internet Layer 60. The Network Access Layer 65. Chapter Summary 67. Exam Preparation Tasks 67. Review All Key Topics 67. Define Key Terms 68. Exercises 68. Install a Sniffer and Perform Packet Captures 68. List the Protocols, Applications, and Services Found at Each Layer of the Stack 70. Review Questions 71. Suggested Reading and Resources 75. vi certified Ethical Hacker (CEH) Cert Guide Chapter 3 Footprinting and Scanning 77.

10 Do I Know This Already? Quiz 77. Foundation Topics 80. The Seven-Step Information-Gathering Process 80. Information Gathering 80. Documentation 80. The Organization's Website 81. Job Boards 83. Employee and People Searches 84. EDGAR Database 87. Google Hacking 88. Usenet 92. Registrar Query 93. DNS Enumeration 96. Determine the Network Range 101. Traceroute 101. Identifying Active Machines 104. Finding Open Ports and Access Points 105. Nmap 112. SuperScan 115. THC-Amap 115. Scanrand 116. Hping 116. Port Knocking 117. War Dialers 117. War Driving 118. OS Fingerprinting 118.


Related search queries