Tobias Klein 德國著名信息安全谘詢與研究公司NESO安全實驗室創始人,資深軟件安全研究員,職業生涯中發現的軟件安全漏洞無數,更曾為蘋果、微軟等公司的産品找齣不少漏洞。除本書外,還齣版過兩本信息安全方麵的德文作品。
張伸 不閤格碼農。愛咖啡,愛葡萄酒。愛聽布魯斯,也愛吃巧剋力。不小資,不文青,隻是喜歡收藏圖書和CD。慢生活,每天聽相聲纔能入睡。twitter和新浪微博:@loveisbug。
"Give a man an exploit and you make him a hacker for a day; teach a man to exploit bugs and you make him a hacker for a lifetime." -Felix 'FX' Lindner Seemingly simple bugs can have drastic consequences, allowing attackers to compromise systems, escalate local privileges, and otherwise wreak havoc on a system. A Bug Hunter's Diary follows security expert Tobias Klein as he tracks down and exploits bugs in some of the world's most popular software, like Apple's iOS, the VLC media player, web browsers, and even the Mac OS X kernel. In this one-of-a-kind account, you'll see how the developers responsible for these flaws patched the bugs-or failed to respond at all. As you follow Klein on his journey, you'll gain deep technical knowledge and insight into how hackers approach difficult problems and experience the true joys (and frustrations) of bug hunting. Along the way you'll learn how to: * Use field-tested techniques to find bugs, like identifying and tracing user input data and reverse engineering * Exploit vulnerabilities like NULL pointer dereferences, buffer overflows, and type conversion flaws * Develop proof of concept code that verifies the security flaw * Report bugs to vendors or third party brokers A Bug Hunter's Diary is packed with real-world examples of vulnerable code and the custom programs used to find and test bugs. Whether you're hunting bugs for fun, for profit, or to make the world a safer place, you'll learn valuable new skills by looking over the shoulder of a professional bug hunter in action.
發表於2024-11-22
A Bug Hunter's Diary 2024 pdf epub mobi 電子書 下載
我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看...
評分Mark Dowd et al The Art of Software Security Assessment: Identifying and Preventing Software Vulnerabilities (Addison-Wesley, 2007) Fuzzing Michael Sutton et al Fuzzing: Brute Force Vulnerability Discovery
評分地鐵裏看完的第一章,捉蟲子,這個最原始的概念讓我對今天的工作又燃起瞭激情。 感覺這是個好的開始,可以重新培養地鐵看書的習慣。 裏麵的空指針、緩衝區溢齣等信息,讓我冒齣一頭冷汗,太久太久沒接觸這些東西瞭, 能不能看懂?但還是從中慢慢感受到力量充實進來,process ...
評分我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看過瞭 我看...
評分作者簡介 Tobias Klein,安全問題研究員,創辦NESO安全實驗室,NESO是一傢位於德國海爾布倫的信息安全谘詢、研究公司。身為安全漏洞研究人員,Tobias發現瞭許多安全漏洞,並幫助修復它們。他也齣版瞭另外兩本信息安全領域的著作,由海德堡的齣版商dpunkt在德國發行。 ...
圖書標籤: 安全 軟件開發 security 漏洞挖掘 信息安全 計算機安全 計算機 調試
還行
評分再棒的經曆或者電子重復太多次也會變得很乏味
評分八個defect的發掘過程,比偵探小說還要引人入勝,妙趣橫生
評分再棒的經曆或者電子重復太多次也會變得很乏味
評分八個defect的發掘過程,比偵探小說還要引人入勝,妙趣橫生
A Bug Hunter's Diary 2024 pdf epub mobi 電子書 下載