Armando 156 Report post Posted December 18, 2010 List of books recommended by our students Please let us know (reply to this thread) if any of these books are not worth the money, are out of date or if you want to add new books to it. Social Books Review Here you can post book titles that you have read and recommend to other students. When you do, please provide an exhaustive review, or at least WHY this particular book benefited your education and WHAT you learned from it. When you add the book please find the ASIN/ISBN-10 code into the Amazon book page. Once done, please insert this text in your post: [amazon] where 123456 is the ASIN/ISBN. This will ensure that the information about the book title (including image and link) is inserted into your post. In the book page on Amazon you will find the ISBN-10/ASIN code by scrolling down: Why taking part to this initiative By adding the [amazon] tag and buying books through clicking on the links to books on this page, eLearnSecurity will get credited of 15% on the book price. The money collected will be re-used to buy Amazon gift card to be awarded to the forum members that will help the other students or the eLearnSecurity staff the most. This initiative is in Beta and might be moved to a whole new forum as soon as your feedback is received on the subject. ---------------------------------------------------------------- Hacking General ---------------------------------------------------------------- Network Scanning ---------------------------------------------------------------- Web Applications A very complete book, as you may see by the table of contents. The final chapter is a checklist covering all attacks described in the previous chapters. Complete book that brings you from the basics of web app security to the most advanced exploitation scenarios specific to XSS vulnerability ---------------------------------------------------------------- Programming Books "One of a kind book to get you started into building your tools. Assumes basic C language knowledge. Not for absolute beginners to programming. Building you own tools also makes it easier for you to understand other wonderful tools out there." Quote from Equix3n "I've read only the first 4-5 chapters of this book and I already feel so much smarter. Lives up to its name. Some of the examples won't work on new distros, better load you Red hat Linux 8." Quote from Equix3n "It starts with a review of programing concepts ,which that knowledge starts to use it in chapter 2 to show how various explotation techniques are perfomed and explain step by step with a debugger (gdb,yes linux explotation),then it moves into networking,teaches you how to code a sniffer from scratch,how TCP hijacking works,denial fo service,ssh mitm... Then on next chapter it gets into shellcode and how to code you own,best of all is you can follow along ALL exercises with the live CD included,there is all the source code and everything compiles just fine,and finally all the tools that is uses through the book is,get ready: gcc (c compiler) and gdb (debugger)" Quote from matugm This book has been out for no longer then a week or so and its all I have been reading about online. I read the first chapter on Amazon and instantly wanted to go to the local boarders(a bookstore) to pick it up, because I do not want to wait for shipping. Christoper has such a unique point of view and knowledge on the subject its truly an amazing read and that's judging from reading only one chapter. This is a must have book for our community. Quote from Bluntlee Share this post Link to post
Armando 156 Report post Posted December 24, 2010 Bluntlee has bought the book Social Engineering from this page. Many thanks for joining this initiative! Share this post Link to post
Methodikal 1 Report post Posted December 24, 2010 Armando, I was thinking of purchasing this book to supplement the Web App module. I'd like to go deeper because I really enjoyed this module. Do you think this is a good book, and can it help in passing the exam? Thanks and happy holidays! Methodikal Share this post Link to post
Armando 156 Report post Posted December 26, 2010 Web App Hackers Handbook is a great book and I can really recommend it. Share this post Link to post
robertray 41 Report post Posted January 7, 2011 Anyone got any books they would recommend for metasploit? Share this post Link to post
MindOverMatter 0 Report post Posted January 8, 2011 Anyone got any books they would recommend for metasploit? I don't have a specific all metasploit book to recommend, or how much you've used it yet, but for a free chapter check out: http://www.logicalsecurity.com/education/education_books.html Here you can get a "complimentary" chapter from Gray Hat Hacking, which chances are you may have read already, but it has a small chapter on metasploit.. Just thought I'd throw something out there though. I know there's not much officially published out there, but an official bible must soon be on its way. Hope I was a tad helpful. Share this post Link to post
Methodikal 1 Report post Posted January 8, 2011 Got that book for Xmas ;-) Small, yet decent, chapter on MSF. Takes you through the basic procedure. Lays a good foundation for ELS's msf payload tut :-) Share this post Link to post
Equix3n 1 Report post Posted January 8, 2011 You can look at the metasploit unleashed course fromm Offsec http://www.offensive-security.com/metasploit-unleashed/Metasploit_Unleashed_Information_Security_Training There's also a video tutorial series by SecurityTube called Metasploit Megaprimer http://www.securitytube.net/Metasploit-Megaprimer-%28Exploitation-Basics-and-need-for-Metasploit%29-Part-1-video.aspx 1 Share this post Link to post
robertray 41 Report post Posted May 4, 2011 Just finished reading social engineering (see above for link) I enjoyed this book and would recommend it. Plan to write up further comments on my blog asap. Will update this post once I've done a write up. If your considering it, I don't think you will be disapointed. Share this post Link to post
Bluntlee 1 Report post Posted May 4, 2011 Just finished reading social engineering (see above for link) I enjoyed this book and would recommend it. Plan to write up further comments on my blog asap. Will update this post once I've done a write up. If your considering it, I don't think you will be disapointed. loved that book, even got my non-computer friends to read it Share this post Link to post
robertray 41 Report post Posted May 4, 2011 http://rabray.wordpress.com/2011/05/04/social-engineering-the-art-of-human-hacking-review/ Share this post Link to post
robertray 41 Report post Posted May 15, 2011 Anyone read Johnny long's Google hacking? Share this post Link to post
typeOne 1 Report post Posted June 14, 2011 Anyone got any books they would recommend for metasploit? this is out at the end of July, looking at the authors I would wait for this ... https://www.amazon.co.uk/Metasploit-Penetration-Tester%2527s-Guide-Testers/dp/159327288X/ref=sr_1_1?ie=UTF8&qid=1308034194&sr=8-1 1 Share this post Link to post
matugm 65 Report post Posted June 14, 2011 Yeah im looking forward to it,The problem with msf books is that they get outdated so fast since it is in constant development. Share this post Link to post
typeOne 1 Report post Posted June 15, 2011 hopefully its written for the communtiy version aswell Share this post Link to post
wes_phily 1 Report post Posted July 17, 2011 My office is trying to get into the VoIP game. My concern is that I hear all the time how unsecure it is. Anybody know of a book for testing VoIP security? ie using vip-scan, voiper, ect... Share this post Link to post
tekwizz123 0 Report post Posted July 17, 2011 My office is trying to get into the VoIP game. My concern is that I hear all the time how unsecure it is. Anybody know of a book for testing VoIP security? ie using vip-scan, voiper, ect... Hacking Exposed VoIP: Voice Over IP Security Secrets & Solutions There you go Share this post Link to post
wes_phily 1 Report post Posted August 17, 2011 Just bought all three web app books through the forum here. Make sure it goes through like it should for you guys! Share this post Link to post
cubodebits 0 Report post Posted September 1, 2011 Hi everybody. I'm a new student enrolled in Pro Course. I started taking a look the enviroment of eLearnSec . Here you are my 2 cents (first post) I've just purchased : I'll give you a review soon. Share this post Link to post
robertray 41 Report post Posted November 7, 2011 Just finished reading Kevin Mitnick's Ghost in the Wire: http://rabray.wordpress.com/2011/11/07/ghost-in-the-wires-kevin-mitnick-book-review/ Share this post Link to post
TheMenace 0 Report post Posted November 10, 2011 Thanks Robertray, Nice write up - looks like another one added to my reading list Thanks Share this post Link to post
robertray 41 Report post Posted November 10, 2011 The video by 2600 was worth a watch. Share this post Link to post
Jamie 12 Report post Posted November 11, 2011 Really enjoyed the book, I recommend it to anyone. I even got my GF to read it and she enjoyed it even though shes not into computers/security. Share this post Link to post
kelby 2 Report post Posted January 13, 2012 ---------------------------------------------------------------- Web Applications A very complete book, as you may see by the table of contents. The final chapter is a checklist covering all attacks described in the previous chapters. ---------------------------------------------------------------- I see they came out with a second edition. Have any of you all read this yet? Share this post Link to post