Valle | Practical Hardware Pentesting | E-Book | www.sack.de
E-Book

E-Book, Englisch, 382 Seiten

Valle Practical Hardware Pentesting

A guide to attacking embedded systems and protecting them against the most common hardware attacks
1. Auflage 2024
ISBN: 978-1-78961-419-0
Verlag: De Gruyter
Format: EPUB
Kopierschutz: 0 - No protection

A guide to attacking embedded systems and protecting them against the most common hardware attacks

E-Book, Englisch, 382 Seiten

ISBN: 978-1-78961-419-0
Verlag: De Gruyter
Format: EPUB
Kopierschutz: 0 - No protection



Learn how to pentest your hardware with the most common attract techniques and patternsKey Features - Explore various pentesting tools and techniques to secure your hardware infrastructure
- Protect your hardware by finding potential entry points like glitches
- Find the best practices for securely designing your products
Book DescriptionIf you’re looking for hands-on introduction to pentesting that delivers, then Practical Hardware Pentesting is for you. This book will help you plan attacks, hack your embedded devices, and secure the hardware infrastructure. Throughout the book, you will see how a specific device works, explore the functional and security aspects, and learn how a system senses and communicates with the outside world. You’ll set up a lab from scratch and then gradually work towards an advanced hardware lab—but you’ll still be able to follow along with a basic setup. As you progress, you’ll get to grips with the global architecture of an embedded system and sniff on-board traffic, learn how to identify and formalize threats to the embedded system, and understand its relationship with its ecosystem. You’ll discover how to analyze your hardware and locate its possible system vulnerabilities before going on to explore firmware dumping, analysis, and exploitation. The reverse engineering chapter will get you thinking from an attacker point of view; you’ll understand how devices are attacked, how they are compromised, and how you can harden a device against the most common hardware attack vectors. By the end of this book, you will be well-versed with security best practices and understand how they can be implemented to secure your hardware.What you will learn - Perform an embedded system test and identify security critical functionalities
- Locate critical security components and buses and learn how to attack them Discover how to dump and modify stored information
- Understand and exploit the relationship between the firmware and hardware
- Identify and attack the security functions supported by the functional blocks of the device
- Develop an attack lab to support advanced device analysis and attacks
Who this book is forIf you’re a researcher or a security professional who wants a comprehensive introduction into hardware security assessment, then this book is for you. Electrical engineers who want to understand the vulnerabilities of their devices and design them with security in mind will also find this book useful. You won’t need any prior knowledge with hardware pentensting before you get started; everything you need is in the chapters.

Valle Practical Hardware Pentesting jetzt bestellen!

Autoren/Hrsg.


Weitere Infos & Material


Table of Contents - Setting Up Your Pentesting Lab and Ensuring Lab Safety
- Understanding Your Target
- Identifying the Components of Your Target
- Approaching and Planning the Test
- Our Main Attack Platform
- Sniffing and Attacking the Most Common Protocols
- Extracting and Manipulating Onboard Storage
- Attacking Wi-Fi, Bluetooth, and BLE
- Software-Defined Radio Attacks
- Accessing the Debug Interfaces
- Static Reverse Engineering and Analysis
- Dynamic Reverse Engineering
- Scoring and Reporting Your Vulnerabilities
- Wrapping It Up – Mitigations and Good Practices


Valle Jean-Georges :

Jean-Georges Valle is a hardware penetration tester based in Belgium. His background was in software security, with hardware being a hobby, and he then started to look into the security aspects of hardware. He has spent the last decade testing various systems, from industrial logic controllers to city-scale IoT, and from media distribution to power metering. He has learned to attack embedded systems and to leverage them against cloudscale infrastructure. He is the lead hardware technical expert in an offensive security team for a leader company in the security and incident response sector. Jean-Georges holds a master's degree in information security and focuses on security at the point of intersection with hardware and software, hardware and software interaction, exploit development in embedded systems, and open source hardware.



Ihre Fragen, Wünsche oder Anmerkungen
Vorname*
Nachname*
Ihre E-Mail-Adresse*
Kundennr.
Ihre Nachricht*
Lediglich mit * gekennzeichnete Felder sind Pflichtfelder.
Wenn Sie die im Kontaktformular eingegebenen Daten durch Klick auf den nachfolgenden Button übersenden, erklären Sie sich damit einverstanden, dass wir Ihr Angaben für die Beantwortung Ihrer Anfrage verwenden. Selbstverständlich werden Ihre Daten vertraulich behandelt und nicht an Dritte weitergegeben. Sie können der Verwendung Ihrer Daten jederzeit widersprechen. Das Datenhandling bei Sack Fachmedien erklären wir Ihnen in unserer Datenschutzerklärung.