Shopping Cart

No products in the cart.

Practical IoT Hacking: The Definitive Guide to Attacking the Internet of Things (1 ed)

Original price was: $49.99.Current price is: $5.00.

  • Publisher: ‎No Starch Press
  • Publication date: ‎April 9, 2021
  • Author: Fotios Chantzis, Ioannis Stais, Paulino Calderon, Beau Woods, Evangelos Deirmentzoglou
  • Language: ‎English
  • File size: ‎23.9 MB
  • Format: ‎PDF
  • Pages: 464 pages
Brand Electro eBooks

Practical IoT Hacking: The Definitive Guide to Attacking the Internet of Things (1 ed) PDF

Written by all-star security experts, Practical IoT Hacking is a quick-start conceptual guide to testing and exploiting IoT systems and devices.

Drawing from the real-life exploits of five highly regarded IoT security researchers, Practical IoT Hacking teaches you how to test IoT systems, devices, and protocols to mitigate risk.

The book begins by walking you through common threats and a threat modeling framework. You’ll develop a security testing methodology, discover the art of passive reconnaissance, and assess security on all layers of an IoT system. Next, you’ll perform VLAN hopping, crack MQTT authentication, abuse UPnP, develop an mDNS poisoner, and craft WS-Discovery attacks.

You’ll tackle both hardware hacking and radio hacking, with in-depth coverage of attacks against embedded IoT devices and RFID systems.

You’ll also learn how to:

  • Write a DICOM service scanner as an NSE module.
  • Hack a microcontroller through the UART and SWD interfaces.
  • Reverse engineer firmware and analyze mobile companion apps.
  • Develop an NFC fuzzer using Proxmark 3.
  • Hack a smart home by jamming wireless alarms, playing back IP camera feeds, and controlling a smart treadmill.

The tools and devices you’ll use are affordable and readily available, so you can easily practice what you learn. Whether you’re a security researcher, IT team member, or hacking hobbyist, you’ll find Practical IoT Hacking indispensable in your efforts to hack all things.

REQUIREMENTS: Basic knowledge of Linux command lines, TCP/IP, and programming.

Practical IoT Hacking The Definitive Guide to Attacking the Internet of Things (1 ed) PDF 2

About the Authors

Fotios Fotis Chantzis (@ithilgore) is laying the foundation for a safe and secure artificial general intelligence (AGI) at OpenAI. Previously, he worked as a principal information security engineer at Mayo Clinic, where he managed and conducted technical security assessments on medical devices, clinical support systems, and critical healthcare infrastructure. He has been a member of the core Nmap development team since 2009, when he wrote Ncrack under the mentorship of Gordon “Fyodor” Lyon, the original author of Nmap, during the Google Summer of Code. He later worked as a mentor for the Nmap project during the Google Summer of Code 2016 and 2017 and has authored a video course about Nmap. His research on network security includes exploiting the TCP Persist Timer (you can find his paper on the topic published in Phrack #66) and inventing a stealthy port scanning attack by abusing XMPP. Fotis has presented at notable security conferences, including DEF CON. Highlights of his work can be found at his site, sock-raw.org.

Ioannis Stais (@Einstais) is a senior IT security researcher and head of red teaming at CENSUS S.A., a company that offers specialized cybersecurity services to customers worldwide. Ioannis has participated in more than 100 security assessment projects, including the assessment of communication protocols, web and mobile banking services, NFC payment systems, ATMs and point-of-sale systems, critical medical appliances, and MDM solutions. He holds a master’s degree in computer systems technology from the University of Athens. His research currently focuses on the development of machine learning algorithms for improving vulnerability research, the enhancement of fuzzing frameworks, and an exploration of the current threats in mobile and web applications. He has presented his research at security conferences such as Black Hat Europe, Troopers NGI, and Security BSides Athens.

Paulino Calderon (@calderpwn) is a published author and international speaker with over 12 years of experience in network and application security. When he isn’t traveling to security conferences or consulting for Fortune 500 companies with Websec, a company he co-founded in 2011, he spends peaceful days enjoying the beach in Cozumel, Mexico. He loves open-source software and has contributed to many projects, including Nmap, Metasploit, OWASP Mobile Security Testing Guide (MSTG), OWASP Juice Shop, and OWASP IoT Goat.

Evangelos Deirmentzoglou (@edeirme) is an information security professional interested in solving security problems at scale. He led and structured the cybersecurity capability of the financial tech startup Revolut. A member of the open-source community since 2015, he has made multiple contributions to Nmap and Ncrack. He is currently researching a cybersecurity PhD focusing on source code analysis, which he has previously applied for many major US technology vendors, Fortune 500 companies, and financial and medical institutions.

Beau Woods (@beauwoods) is a cyber safety innovation fellow with the Atlantic Council and a leader with the I Am The Cavalry grassroots initiative. He is also the founder and CEO of Stratigos Security and sits on the board of several nonprofits. In his work, which bridges the gap between security research and public policy communities, he ensures that any connected technology able to impact human safety is worthy of our trust. He formerly served as an entrepreneur in residence with the US FDA and a managing principal consultant at Dell SecureWorks. He has spent the past several years consulting with the energy, healthcare, automotive, aviation, rail, and IoT industries, as well as with cybersecurity researchers, US and international policymakers, and the White House. Beau is a published author and frequent public speaker.

Who Should Read This Book?

No two people share identical backgrounds and experiences. Yet analyzing IoT devices requires skills spanning nearly every domain of expertise because these devices combine computing power and connectivity into every facet of our world. We can’t predict which parts of this book each person will find the most compelling. But we believe that making this knowledge available to a broad population gives them the power to have greater control over their increasingly digitized world.

This book is initially for hackers (sometimes called security researchers), although we expect that it will be useful to others as well, such as the following individuals:

• A security researcher might use this book as a reference for experimenting with an IoT ecosystem’s unfamiliar protocols, data structures, components, and concepts.

• An enterprise system administrator or network engineer might learn how to better protect their environment and their organization’s assets.

• A product manager for an IoT device might discover new requirements their customers will assume are already present and build them in, reducing cost and the time it takes the product to reach the market.

• A security assessor might learn a new set of skills to better serve their clients.

• A curious student might find knowledge that will catapult them into a rewarding career of protecting people.

This book was written assuming the reader already has some familiarity with Linux command line basics, TCP/IP networking concepts, and coding.

Reviews

There are no reviews yet.

Be the first to review “Practical IoT Hacking: The Definitive Guide to Attacking the Internet of Things (1 ed)”

Your email address will not be published. Required fields are marked *

Secure Payments
Securing online payments is a shared responsibility, and everyone can contribute their share.
Free Shipping
You get unlimited free shipping on eligible items with Electro eBooks, with no minimum spend.
Gifts & Sales
Sales gifts are helpful tools that are often used to show appreciation to clients for purchasing a product.
24/7 Support
Our customer care service is offered in the form of 1st or 2nd level support.
Electro eBooks W 170

Important updates waiting for you!

Subscribe and grab 20% OFF!
Subscription Form

Practical IoT Hacking The Definitive Guide to Attacking the Internet of Things (1 ed) PDF
Practical IoT Hacking: The Definitive Guide to Attacking the Internet of Things (1 ed)

Original price was: $49.99.Current price is: $5.00.