Network Security Through Data Analysis - Michael Collins

Network Security Through Data Analysis

Michael Collins

出版时间

2014-02-23

ISBN

9781449357900

评分

★★★★★
书籍介绍

System and network administrators have traditionally monitored their systems through general tools such as intrusion detection and logfile analysis. But modern, complex networks, suffering from more and more sophisticated attacks, deserve more analytical tools. Michael Collins, a leading researcher in security, introduces the techniques needed in this book and highlights some of the computing tools that will help catch problems. The book is divided into three large sections: data collection, analysis, and taking action. These can be iterative, as each discovery alerts the administrator to data that should be collected. Several forms of analysis and visualization are covered. Topics include: What data to capture on your systems Data fusion Structures and storage systems for data Using R, SiLK, and Python for analysis Visualization and exploratory data analysis Graph analysis Network mapping Address forensics: determining where traffic originates Handling malware

用户评论
2016-1:3 购买的影印版,打算作为实训课程的讲解内容来介绍。其中介绍的方法还是很有用的,也期望能激发大家的学习乐趣。
有些细节以后再认真看
很多方法现在看还是太传统了
1. 更多的是工具和工程上的介绍, 安全方面的思路并不多, 或者说新的思路不多; 2. 这本书的英文不好读; 3. 总体而言翻过一遍没有什么收获.
收藏