Cargando…

Privileged attack vectors : building effective cyber-defense strategies to protect organizations /

See how privileges, insecure passwords, administrative rights, and remote access can be combined as an attack vector to breach any organization. Cyber attacks continue to increase in volume and sophistication. It is not a matter of if, but when, your organization will be breached. Threat actors targ...

Descripción completa

Detalles Bibliográficos
Clasificación:Libro Electrónico
Autor principal: Haber, Morey J. (Autor)
Formato: Electrónico eBook
Idioma:Inglés
Publicado: [United States] : Apress, 2020.
Edición:Second edition.
Temas:
Acceso en línea:Texto completo (Requiere registro previo con correo institucional)

MARC

LEADER 00000cam a2200000 i 4500
001 OR_on1158581349
003 OCoLC
005 20231017213018.0
006 m o d
007 cr |n|||||||||
008 200620s2020 xxua ob 001 0 eng d
040 |a YDX  |b eng  |e rda  |e pn  |c YDX  |d GW5XE  |d EBLCP  |d LQU  |d OCLCF  |d WAU  |d UKMGB  |d N$T  |d LIP  |d UKAHL  |d BRF  |d OCLCQ  |d COM  |d OCLCO  |d OCLCQ  |d OCLCO 
015 |a GBC0D2643  |2 bnb 
016 7 |a 019832883  |2 Uk 
019 |a 1159164034  |a 1159164709  |a 1162009373  |a 1163835363  |a 1164667990  |a 1175697605  |a 1182529089  |a 1183404737  |a 1184024536  |a 1195450197  |a 1196163179  |a 1197547887  |a 1198157791  |a 1198817323  |a 1200350219  |a 1203562803  |a 1239687102 
020 |a 9781484259146  |q (electronic bk.) 
020 |a 1484259149  |q (electronic bk.) 
020 |z 1484259130 
020 |z 9781484259139 
024 7 |a 10.1007/978-1-4842-5914-6.  |2 doi 
024 8 |a 10.1007/978-1-4842-5 
029 1 |a AU@  |b 000067299381 
029 1 |a AU@  |b 000067909601 
029 1 |a UKMGB  |b 019832883 
035 |a (OCoLC)1158581349  |z (OCoLC)1159164034  |z (OCoLC)1159164709  |z (OCoLC)1162009373  |z (OCoLC)1163835363  |z (OCoLC)1164667990  |z (OCoLC)1175697605  |z (OCoLC)1182529089  |z (OCoLC)1183404737  |z (OCoLC)1184024536  |z (OCoLC)1195450197  |z (OCoLC)1196163179  |z (OCoLC)1197547887  |z (OCoLC)1198157791  |z (OCoLC)1198817323  |z (OCoLC)1200350219  |z (OCoLC)1203562803  |z (OCoLC)1239687102 
037 |a com.springer.onix.9781484259146  |b Springer Nature 
050 4 |a QA76.9.A25 
072 7 |a UR.  |2 bicssc 
072 7 |a COM053000.  |2 bisacsh 
072 7 |a UR.  |2 thema 
082 0 4 |a 005.8  |2 23 
049 |a UAMI 
100 1 |a Haber, Morey J.,  |e author. 
245 1 0 |a Privileged attack vectors :  |b building effective cyber-defense strategies to protect organizations /  |c Morey J. Haber. 
250 |a Second edition. 
264 1 |a [United States] :  |b Apress,  |c 2020. 
300 |a 1 online resource (xxxv, 384 pages) :  |b color illustrations 
336 |a text  |b txt  |2 rdacontent 
337 |a computer  |b c  |2 rdamedia 
338 |a online resource  |b cr  |2 rdacarrier 
347 |a text file 
347 |b PDF 
520 |a See how privileges, insecure passwords, administrative rights, and remote access can be combined as an attack vector to breach any organization. Cyber attacks continue to increase in volume and sophistication. It is not a matter of if, but when, your organization will be breached. Threat actors target the path of least resistance: users and their privileges. In decades past, an entire enterprise might be sufficiently managed through just a handful of credentials. Todays environmental complexity has seen an explosion of privileged credentials for many different account types such as domain and local administrators, operating systems (Windows, Unix, Linux, macOS, etc.), directory services, databases, applications, cloud instances, networking hardware, Internet of Things (IoT), social media, and so many more. When unmanaged, these privileged credentials pose a significant threat from external hackers and insider threats. We are experiencing an expanding universe of privileged accounts almost everywhere. There is no one solution or strategy to provide the protection you need against all vectors and stages of an attack. And while some new and innovative products will help protect against or detect against a privilege attack, they are not guaranteed to stop 100% of malicious activity. The volume and frequency of privilege-based attacks continues to increase and test the limits of existing security controls and solution implementations. Privileged Attack Vectors details the risks associated with poor privilege management, the techniques that threat actors leverage, and the defensive measures that organizations should adopt to protect against an incident, protect against lateral movement, and improve the ability to detect malicious activity due to the inappropriate usage of privileged credentials. This revised and expanded second edition covers new attack vectors, has updated definitions for privileged access management (PAM), new strategies for defense, tested empirical steps for a successful implementation, and includes new disciplines for least privilege endpoint management and privileged remote access. You will: Know how identities, accounts, credentials, passwords, and exploits can be leveraged to escalate privileges during an attack Implement defensive and monitoring strategies to mitigate privilege threats and risk Understand a 10-step universal privilege management implementation plan to guide you through a successful privilege access management journey Develop a comprehensive model for documenting risk, compliance, and reporting based on privilege session activity. 
505 0 |a Chapter 1: Privileged Attack Vectors -- Chapter 2: Privileges -- Chapter 3: Credentials -- Chapter 4: Attack Vectors -- Chapter 5: Passwordless Authentication -- Chapter 6: Privilege Escalation -- Chapter 7: Insider and External Threats -- Chapter 8: Threat Hunting -- Chapter 9: Unstructured Data -- Chapter 10: Privileged Monitoring -- Chapter 11: Privileged Access Management -- Chapter 12: PAM Architecture -- Chapter 13: Break Glass -- Chapter 14: Industrial Control Systems (ICS) and Internet of Things (IoT) -- Chapter 15: The Cloud -- Chapter 16: Mobile Devices -- Chapter 17: Ransomware and Privileges -- Chapter 18: Remote Access -- Chapter 19: Secured DevOps (SecDevOps) -- Chapter 20: Regulatory Compliance -- Chapter 21: Just in Time -- Chapter 22: Zero Trust -- Chapter 23: Sample Privileged Access Management Use Cases -- Chapter 24: Deployment Considerations -- Chapter 25: Privileged Account Management Implementation -- Chapter 26: Machine Learning -- Chapter 27: Conclusion -- Index. 
588 0 |a Online resource; title from PDF title page (Ebook Central, viewed August 30, 2020). 
504 |a Includes bibliographical references. 
590 |a O'Reilly  |b O'Reilly Online Learning: Academic/Public Library Edition 
650 0 |a Information technology  |x Security measures. 
650 0 |a Computer security  |x Management. 
650 0 |a Computer networks  |x Security measures. 
650 0 |a Data protection. 
650 0 |a Computer networks  |x Access control. 
650 6 |a Technologie de l'information  |x Sécurité  |x Mesures. 
650 6 |a Sécurité informatique  |x Gestion. 
650 6 |a Réseaux d'ordinateurs  |x Sécurité  |x Mesures. 
650 6 |a Protection de l'information (Informatique) 
650 7 |a Computer networks  |x Access control  |2 fast 
650 7 |a Computer networks  |x Security measures  |2 fast 
650 7 |a Computer security  |x Management  |2 fast 
650 7 |a Data protection  |2 fast 
650 7 |a Information technology  |x Security measures  |2 fast 
776 0 8 |i Print version:  |a HABER, MOREY J.  |t PRIVILEGED ATTACK VECTORS.  |d [Place of publication not identified] APRESS, 2020  |z 1484259130  |w (OCoLC)1145622041 
856 4 0 |u https://learning.oreilly.com/library/view/~/9781484259146/?ar  |z Texto completo (Requiere registro previo con correo institucional) 
938 |a Askews and Holts Library Services  |b ASKH  |n AH37788741 
938 |a ProQuest Ebook Central  |b EBLB  |n EBL6227929 
938 |a ProQuest Ebook Central  |b EBLB  |n EBL6227984 
938 |a EBSCOhost  |b EBSC  |n 2499447 
938 |a YBP Library Services  |b YANK  |n 301335720 
994 |a 92  |b IZTAP