Hacker's Log: Linux and Unix Security Manual: Linux and Unix Security Manual

Author: Hacking with Hanaani
Publisher:
Publish Date: 2004-07-01
Features: This book will tell you how hackers think, enabling you to find ways to protect Unix and Linux systems from their attacks. This is the only way to know how to prevent systems from being compromised. To stop experienced hackers, we need to understand their thought processes, techniques, and strategies. The powerful nature of Unix and Linux operating systems is a double-edged sword. In most cases, the source code of the operating system kernel is freely available, and administrators can make significant modifications to the kernel to meet their needs. However, the powerful and flexible nature of Unix and Linux also includes a lot of complexity, increasing the likelihood of dangerous misconfigurations. We also need to consider the differences among the various available Unix and Linux release versions. Each version comes with its own set of security policies and configurations. For example, some release versions disable a set of remote services, while others enable all possible services with weak security policies. Hackers are aware of the complexity of managing Unix and Linux hosts and know exactly how to exploit them. The clever hacker strategies introduced in this book will surprise you, and the book will also teach you how to defend against these hacker attacks. Don’t worry about hackers mastering the information provided in this book, as they already know this material. The purpose of this book is to expose the attack strategies currently used by hackers, so you can learn how to counter them. Once you understand how hackers think and the various methods they use to infiltrate systems, the situation becomes favorable to us. This book will tell you how hackers think, enabling you to find ways to protect Unix and Linux systems from their attacks. This is the only way to know how to prevent systems from being compromised. To stop experienced hackers, we need to understand their thought processes, techniques, and strategies. The powerful nature of Unix and Linux operating systems is a double-edged sword. In most cases, the source code of the operating system kernel is freely available, and administrators can make significant modifications to the kernel to meet their needs. However, the powerful and flexible nature of Unix and Linux also includes a lot of complexity, increasing the likelihood of dangerous misconfigurations. We also need to consider the differences among the various available Unix and Linux release versions. Each version comes with its own set of security policies and configurations. For example, some release versions disable a set of remote services, while others enable all possible services with weak security policies. Hackers are aware of the complexity of managing Unix and Linux hosts and know exactly how to exploit them. The clever hacker strategies introduced in this book will surprise you, and the book will also teach you how to defend against these hacker attacks. Don’t worry about hackers mastering the information provided in this book, as they already know this material. The purpose of this book is to expose the attack strategies currently used by hackers, so you can learn how to counter them. Once you understand how hackers think and the various methods they use to infiltrate systems, the situation becomes favorable to us.
Organization of the Book This book is divided into four main parts: Part I: Hacker Intrusion Techniques and Defenses Part I of this book discusses the intrusion techniques currently widely used by hackers and introduces defense techniques for all the intrusion techniques described in these chapters. Chapter 1 We start by understanding the logical steps of intrusion techniques: tracking. This chapter will tell you how hackers obtain public information through search engines, registration records, DNS records, and more. Once they have gathered all available information from public resources, they begin the actual identification and scanning of networks and hosts. Chapter 2 This chapter tells you how to determine which hosts are running in a network and the ports they are open on. We will discuss different methods of port scanning, as well as operating system identification techniques and tools. Chapter 3 Learn how hackers identify applications and services running on remote hosts. This chapter will introduce various tools and methods used by potential intruders to enumerate usernames and remote services. Chapter 4 This chapter reveals the specific tools and strategies hackers use to gain access to vulnerable hosts. Learn the clever techniques used by hackers, such as brute force cracking, sniffing, man-in-the-middle attacks, password cracking, port redirection, and exploiting misconfigurations, buffer overflows, and other software system security vulnerabilities. Chapter 5 Exploiting specific vulnerabilities often allows hackers to gain privileges of an unprivileged user or system account. In these cases, the next step for hackers is to obtain superuser (root) privileges. This chapter demonstrates the various methods hackers use to try to gain higher-level privileges. Chapter 6 Once a host is compromised, hackers want to hide their presence and ensure continuous and privileged access to the host. This chapter will tell you how hackers hide their traces by clearing important logs and how they install trojan horses, backdoors, and rootkit attack tools on the compromised target host.
Part II: Host Security Enhancement Part II of this book focuses on the multiple steps system administrators can take to strengthen default system configurations and policies. Chapter 7 This chapter discusses important configuration issues related to strengthening default application and server configurations. We encourage all system administrators to consider the recommendations in this chapter to prevent intruders from attacking weak system policies and configurations. Chapter 8 Malicious users and hackers often exploit inappropriate user and file system permissions. This chapter will introduce UNIX and LINUX file permissions and describe the exact steps to defend against intrusions caused by poor user and file permissions. Chapter 9 Every system administrator should implement proper system event logging. This chapter will teach you how to enable and configure useful logging services and how to set permissions correctly on log files to prevent them from being tampered with. It is also important to download new security patches in a timely manner, and this chapter provides useful links to official websites where this information can be obtained.
Part III: Special Topics Part III of this book covers several exciting topics, including writing plugins for the Nessus scanner, wireless intrusion, and intrusion using the Zaurus PDA. Chapter 10 Nessus is a currently popular vulnerability scanning tool. It is free and designed to be modular. This chapter will teach you how to use NASL (Nessus Attack Script Language) to write custom security vulnerability check plugins for the Nessus scanner. Chapter 11 Learn how hackers infiltrate 802.11 wireless networks. This chapter discusses the weaknesses of the WEP protocol and introduces the tools used by hackers to infiltrate wireless networks. Additionally, this chapter offers some suggestions on how to better protect wireless networks. Chapter 12 The Sharp Zaurus PDA device runs an embedded Linux operating system. This chapter will show you the various security tools used for the Zaurus PDA and how they can be easily exploited by hackers to infiltrate wireless networks.
Reference Center This section is arranged at the end of the book for easy reference. When you need quick information about common commands, common ports, online resources, IP addresses, and useful Netcat commands, remember to flip to this section. Additionally, this section provides ASCII values and HTTP response tables.
Words for Readers The author has put a lot of effort into writing this book. It is hoped that readers will find valuable information in the book. Most importantly, it is hoped that readers will use the information provided in this book to protect their own systems and networks from experienced hackers.

📌 Related Posts