2008年(3010)
分类:
2008-06-13 22:41:41
Installing a honeypot inside your network as an early warning system can significantly improve your security. Currently, almost every book and resource about honeypots comes from a Unix background, which leaves Windows administrators still grasping for help. But Honeypots for Windows is a forensic journey--helping you set up the physical layer, design your honeypot, and perform malware code analysis.
You'll discover which Windows ports need to be open on your honeypot to fool those malicious hackers, and you'll learn about numerous open source tools imported from the Unix world. Install a honeypot on your DMZ or at home and watch the exploits roll in! Your honeypot will capture waves of automated exploits, and you'll learn how to defend the computer assets under your control.
Foreword.- Introduction.- Why Honeypots.- Honeypot Deployment Methodology.- Installation.- Configuration.- Monitoring, Logging, and Reporting.- Service Scripts.- Analyzing Honeypot Data.- Special Considerations of Using Honeypots on Windows.- Using with Snort.- Advanced Topics.- Overview of Other Windows-based Honeypots.- Appendix: Honeypot Resources.