Android Forensik
This blog post is kind of special since I am writing about book that I actually read in German and not in its original language. Andrew Hoog wrote his book “Android Forensik - Datenrecherche, Analyse und mobile Sicherheit bei...
This blog post is kind of special since I am writing about book that I actually read in German and not in its original language. Andrew Hoog wrote his book “Android Forensik - Datenrecherche, Analyse und mobile Sicherheit bei...
Tangled Web: A Guide to Securing Modern Web Applications by Michal Zalewski is a comprehensive review of the security of web applications. In comparison with other works on this topic the author dives in deeper and focusses on the http...
Sketch Noting has been trending for quite a while - but what is it actually? Mike Rohde defines it in his book as an illustrated way of note taking. He thereby combines drawings, typography and structuring items like lines,...
Getting Past No was written by William Ury and Roger Fisher. They created the manual for negotiations. And as most of the time - great wisdom are the simple things. That is what it boils down to in this...
Christopher Hadnagy’s book “Unmasking the social engineer” appeared in 2014. It covers the main aspects of non verbal communications. Starting with the first chapters on hands, arms, torso and legs - the table of content looks like an ordinary...
Evan Wheelers book “Risk Management” is organised in three parts. The first one introduces the reader to risk management as a discipline. Followed by the second part providing the reader with various approaches to assess and analyse risk. The...
Information Security Analytics by Mark Talabis takes various approaches how to do analytics with a low budget. The author describes ways from managing huge amounts of log files with hadoop and map reduce to text mining based on the...
Beautiful Security is a very interesting book. It is way more than just a collection of essays about information security. Besides the success story of OWASP - the Open Web Application Security Project - it tells various other stories...
The Gray Hat Hackers Handbook, as published in January 2011, claims to summarize the knowledge a Gray Hat should have. Well, I am not so happy with it. It covers a lot of material: starting from USB stick based attacks...
The web applications hackers handbook has been written by Dafydd Stuttard and Marcus Pinto. You can get it here. Interestingly enough it has been published in two editions. First in 2007 and then again in 2011. However both editions...
This book is written in German - so rather unusual for my book reviews. Sebastian Klipper summarizes various practices and explanations on how to handle, avoid and manage conflict situations in his 193 pages long book. It focusses on...
Phishing is a problem everybody is confronted with every day. It is not only limited to email also telephone calls, SMS or even DNS-Changes fall into this category. But let us focus on emails as the authors did. The border...
Jarquith’s Book, also published in 2007, is still a valid resource once you are concerned with IT-Security Metrics. Within the first chapter the author argues why metrics are important and what makes a good metric. Thereby he extends far beyond...
Charlie Millers Book “The iOS Hackers Handbook” contains what you expect it to. It is a very rigorous guide on how to look for security flaws and vulnerabilities within the iOS 1.4 at time I was reading it.
However...