Incident Response: Investigating Computer Crime - Softcover

Prosise, Chris; Mandia, Kevin

  • 3.82 out of 5 stars
    22 ratings by Goodreads
 
9780072131826: Incident Response: Investigating Computer Crime

Synopsis

This is one of the first books available that explains what to do after you've been hacked. Written by FBI insiders, this book reveals the computer forensics process and offers authoritative solutions designed to counteract and conquer hacker attacks.

"synopsis" may belong to another edition of this title.

About the Author

Chris Prosise (Cupertino, CA) VP of Consulting at Foundstone, is a recognized network security expert with extensive experience in attack and penetration testing and incident response. Chris has led government and commercial security teams of missions worldwide, from sensitive incident response missions on Top Secret government networks to comprehensive security assessments on some of the worlds largest corporations. Chris is a featured speaker at multiple security conferences such as Forum of Incident Response and Security Teams (FIRST). He has written articles for SysAdmin and is the technical editor of Hacking Exposed.

Kevin Mandia (Alexandria, VA) Director of Computer Forensics at Foundstone is a well-recognized forensics and incident response expert. Kevin leads Foundstone's premiere incident response and forensics services, delivering consulting and training services to Foundstone's clients. Prior to joining Foundstone, Kevin as a Special Agent with AFOSI specializing in computer intrusion cases. Upon leaving the AFOSI, Kevin developed a computer intrusion response course specifically designed at the request of the FBI. Kevin trained over 400 FBI agents as well as personnel from the State Department, the CIA, NASA, the U.S. Postal Service, the Air Force, and other Government Agencies. Kevin is a regular speaker at numerous forums, including the Interpol Computer Crime Conference and various conferences hosted by government agencies and law enforcement organizations. He is on the Editorial Board for the International Journal on Cyber Crime.

From the Back Cover

Learn secrets and strategies for recovering from computer crime incidents

Respond to security breaches and hacker attacks the right way with help from this insightful and practical guide. You'll get details on the entire computer forensic process and learn the importance of following specific procedures immediately after a computer crime incident occurs. Investigate various software including UNIX, Windows NT, Windows 2000, and application servers. Packed with technical examples and loads of how-to scenarios, this book will show you how to recognize unauthorized access, uncover unusual or hidden files, and monitor Web traffic. Detailed, authoritative, and up to date--Incident Response is the only book you need.

  • Plan and prepare for all stages of an investigation--including detection, initial response, management interaction, and more
  • Learn the importance of evidence handling and storage
  • Perform a "trap and trace" and learn network protocols
  • Monitor network traffic and detect illicit servers and covert channels
  • Investigate Web server attacks, DNS attacks, and router attacks

"About this title" may belong to another edition of this title.

Other Popular Editions of the Same Title

9780072226966: Incident Response and Computer Forensics, Second Edition

Featured Edition

ISBN 10:  007222696X ISBN 13:  9780072226966
Publisher: McGraw-Hill/Osborne, 2003
Softcover