Penetration Testing mailing list archives

RE: Penetration Testing Literature


From: "Boyd, Chad" <CBoyd () madden com>
Date: Fri, 9 Oct 2009 10:24:53 -0500

You seem to have a pretty good technical reading list.

Something that I recommend for everyone that asks though is "A Gift of Fire" by Sara Baase. 
http://www.amazon.com/Gift-Fire-Ethical-Computing-Internet/dp/0136008488/ref=sr_1_1?ie=UTF8&s=books&qid=1255101397&sr=8-1

Remember what Uncle Ben said. "...with great power. comes great responsibility." Sometimes learning the ethics of what 
you're doing, is just as important or even more so than knowing how to do it. If Pen Testing is your chosen track, then 
you're going to be put in some weird situations where the only thing that is going to save your butt at the end of the 
day are your ethics.



-----Original Message-----
From: listbounce () securityfocus com [mailto:listbounce () securityfocus com] On Behalf Of Sebastian Schlag
Sent: Thursday, October 08, 2009 4:02 AM
To: pen-test () securityfocus com
Subject: Penetration Testing Literature

Hi,
i'm a student of Applied Computer Science and currently preparing for a 
student research project on "Systematic Penetration Testing".
Right now i'm searching for literature.

Currently i plan to read the following books:

- Marc Ruef  - Die Kunst des Penetration Testing
- Thomas Wilhelm - Professional Penetration Testing: Creating and 
Operating a Formal Hacking Lab
- Peter B. Kraft - Network Hacking: Professionelle Angriffs- und 
Verteidigungstechniken
- Chris Hurley - Penetration Tester's Open Source Toolkit, Second Edition

What do you think? What books would you recommend to read?

Best Regards
Sebastian

------------------------------------------------------------------------
This list is sponsored by: Information Assurance Certification Review Board

Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT 
and CEPT certs require a full practical examination in order to become certified. 

http://www.iacertification.org
------------------------------------------------------------------------


------------------------------------------------------------------------
This list is sponsored by: Information Assurance Certification Review Board

Prove to peers and potential employers without a doubt that you can actually do a proper penetration test. IACRB CPT 
and CEPT certs require a full practical examination in order to become certified.

http://www.iacertification.org
------------------------------------------------------------------------


Current thread: