Skip to main content

Books in Social sciences

The Social Sciences collection forms a definitive resource for those entering, researching, or teaching in any of the many disciplines making up this interdisciplinary area of study. Written by experts and researchers from both Academic and Commercial domains, titles offer global scope and perspectives.

Key subject areas include: Library and Information Science; Transportation; Urban Studies; Geography, Planning, and Development; Security; Emergency Management.

  • Configuring Windows Vista Practice Exams: Exam 70-620

    Exam 70-620
    • 1st Edition
    • Anthony Piltzecker + 1 more
    • English
    Leave no doubt that you're ready for exam day by using these realistic practice exams closely matched to the Microsoft exam. This Practice Exam product includes practice tests with full explanations. Our diagnostic tool identifies strengths and weaknesses and tells you where to focus your preparation.
  • Configuring Server Roles in Windows 2008: Exam 70-649

    Exam 70-649
    • 1st Edition
    • Anthony Piltzecker
    • English
    This is a 1-hour short course from the complete self-paced online training course for 70-649. It provides a unique and intense test prep experience. Written and designed by leading experts and Microsoft MVPs, this short course delivers rich content, an interactive learning experience, and realistic practice questions.
  • Configuring the Active Directory Infrastructure: Exam 70-648

    Exam 70-648
    • 1st Edition
    • Anthony Piltzecker
    • English
    This is a 1-hour short course from the complete self-paced online training course for 70-648. It provides a unique and intense test prep experience. Written and designed by leading experts and Microsoft MVPs, this short course delivers rich content, an interactive learning experience, and realistic practice questions.
  • Configuring Web Application Services: Exam 70-648

    Exam 70-648
    • 1st Edition
    • Robert Shimonski
    • English
    This is a 1-hour short course from the complete self-paced online training course for 70-648. It provides a unique and intense test prep experience. Written and designed by leading experts and Microsoft MVPs, this short course delivers rich content, an interactive learning experience, and realistic practice questions.
  • Configuring Network Access: Exam 70-648

    Exam 70-648
    • 1st Edition
    • Robert Shimonski
    • English
    This is a 1-hour short course from the complete self-paced online training course for 70-648. It provides a unique and intense test prep experience. Written and designed by leading experts and Microsoft MVPs, this short course delivers rich content, an interactive learning experience, and realistic practice questions.
  • Introduction to Microsoft Certification and Study Skills: Exam 70-647

    Exam 70-647
    • 1st Edition
    • Robert Shimonski
    • English
    This is a 1-hour short course from the complete self-paced online training course for 70-647. It provides a unique and intense test prep experience. Written and designed by leading experts and Microsoft MVPs, this short course delivers rich content, an interactive learning experience, and realistic practice questions.
  • Configuring DNS: Exam 70-648

    Exam 70-648
    • 1st Edition
    • Robert Shimonski
    • English
    This is a 1-hour short course from the complete self-paced online training course for 70-648. It provides a unique and intense test prep experience. Written and designed by leading experts and Microsoft MVPs, this short course delivers rich content, an interactive learning experience, and realistic practice questions.
  • Configuring Windows Server 2008 Applications Infrastructure Practice Exams: Exam 70-643

    Exam 70-643
    • 1st Edition
    • Robert Shimonski + 1 more
    • English
    Leave no doubt that you're ready for exam day by using these realistic practice exams closely matched to the Microsoft exam. This Practice Exam product includes practice tests with full explanations. Our diagnostic tool identifies strengths and weaknesses and tells you where to focus your preparation.
  • Configuring and Managing the Terminal Services: Exam 70-649

    Exam 70-649
    • 1st Edition
    • Robert Shimonski
    • English
    This is a 1-hour short course from the complete self-paced online training course for 70-649. It provides a unique and intense test prep experience. Written and designed by leading experts and Microsoft MVPs, this short course delivers rich content, an interactive learning experience, and realistic practice questions.
  • Deploying the Terminal Services: Exam 70-649

    Exam 70-649
    • 1st Edition
    • Robert Shimonski
    • English
    This is a 1-hour short course from the complete self-paced online training course for 70-649. It provides a unique and intense test prep experience. Written and designed by leading experts and Microsoft MVPs, this short course delivers rich content, an interactive learning experience, and realistic practice questions.
  • Configuring Network Access: Exam 70-649

    Exam 70-649
    • 1st Edition
    • Robert Shimonski
    • English
    This is a 1-hour short course from the complete self-paced online training course for 70-649. It provides a unique and intense test prep experience. Written and designed by leading experts and Microsoft MVPs, this short course delivers rich content, an interactive learning experience, and realistic practice questions.
  • Configuring Certificate Services and PKI: Exam 70-648

    Exam 70-648
    • 1st Edition
    • Anthony Piltzecker
    • English
    This is a 1-hour short course from the complete self-paced online training course for 70-648. It provides a unique and intense test prep experience. Written and designed by leading experts and Microsoft MVPs, this short course delivers rich content, an interactive learning experience, and realistic practice questions.
  • Windows Server 2008, Server Administrator Practice Exams: Exam 70-646

    Exam 70-646
    • 1st Edition
    • Anthony Piltzecker + 1 more
    • English
    Leave no doubt that you're ready for exam day by using these realistic practice exams closely matched to the Microsoft exam. This Practice Exam product includes practice tests with full explanations. Our diagnostic tool identifies strengths and weaknesses and tells you where to focus your preparation.
  • Deploying Servers: Exam 70-648

    Exam 70-648
    • 1st Edition
    • Robert Shimonski
    • English
    This is a 1-hour short course from the complete self-paced online training course for 70-648. It provides a unique and intense test prep experience. Written and designed by leading experts and Microsoft MVPs, this short course delivers rich content, an interactive learning experience, and realistic practice questions.
  • Configuring Certificate Services and PKI: Exam 70-649

    Exam 70-649
    • 1st Edition
    • Anthony Piltzecker
    • English
    This is a 1-hour short course from the complete self-paced online training course for 70-649. It provides a unique and intense test prep experience. Written and designed by leading experts and Microsoft MVPs, this short course delivers rich content, an interactive learning experience, and realistic practice questions.
  • Configuring Windows Server 2008 Network Infrastructure Practice Exams: Exam 70-642

    Exam 70-642
    • 1st Edition
    • Robert Shimonski + 1 more
    • English
    Leave no doubt that you're ready for exam day by using these realistic practice exams closely matched to the Microsoft exam. This Practice Exam product includes practice tests with full explanations. Our diagnostic tool identifies strengths and weaknesses and tells you where to focus your preparation.
  • Configuring Web Infrastructure Services: Exam 70-649

    Exam 70-649
    • 1st Edition
    • Robert Shimonski
    • English
    This is a 1-hour short course from the complete self-paced online training course for 70-649. It provides a unique and intense test prep experience. Written and designed by leading experts and Microsoft MVPs, this short course delivers rich content, an interactive learning experience, and realistic practice questions.
  • Configuring Group Policy: Exam 70-648

    Exam 70-648
    • 1st Edition
    • Anthony Piltzecker
    • English
    This is a 1-hour short course from the complete self-paced online training course for 70-648. It provides a unique and intense test prep experience. Written and designed by leading experts and Microsoft MVPs, this short course delivers rich content, an interactive learning experience, and realistic practice questions.
  • Introduction to Microsoft Certification and Study Skills: Exam 70-643

    Exam 70-643
    • 1st Edition
    • Robert Shimonski
    • English
    This is a 1-hour short course from the complete self-paced online training course for 70-643. It provides a unique and intense test prep experience. Written and designed by leading experts and Microsoft MVPs, this short course delivers rich content, an interactive learning experience, and realistic practice questions.
  • Deploying Servers: Exam 70-649

    Exam 70-649
    • 1st Edition
    • Robert Shimonski
    • English
    This is a 1-hour short course from the complete self-paced online training course for 70-649. It provides a unique and intense test prep experience. Written and designed by leading experts and Microsoft MVPs, this short course delivers rich content, an interactive learning experience, and realistic practice questions.
  • Configuring Windows Server 2008 Network Infrastructure Online Course: Exam 70-642

    Exam 70-642
    • 1st Edition
    • Robert Shimonski + 1 more
    • English
    You will get a unique and intense test prep experience with this complete, self-paced. 100% online training course for 70-642. Written and designed by leading experts and Microsoft MVPs, this full training course delivers rich content, an interactive learning experience, and realistic practice questions.
  • High-Rise Security and Fire Life Safety

    • 3rd Edition
    • Geoff Craighead
    • English
    High-Rise Security and Fire Life Safety, 3e, is a comprehensive reference for managing security and fire life safety operations within high-rise buildings. It spells out the unique characteristics of skyscrapers from a security and fire life safety perspective, details the type of security and life safety systems commonly found in them, outlines how to conduct risk assessments, and explains security policies and procedures designed to protect life and property. Craighead also provides guidelines for managing security and life safety functions, including the development of response plans for building emergencies. This latest edition clearly separates out the different types of skyscrapers, from office buildings to hotels to condominiums to mixed-use buildings, and explains how different patterns of use and types of tenancy impact building security and life safety.
  • SQL Injection Attacks and Defense

    • 1st Edition
    • Justin Clarke-Salt
    • English
    Winner of the Best Book Bejtlich Read in 2009 award! "SQL injection is probably the number one problem for any server-side application, and this book is unequaled in its coverage." Richard Bejtlich, http://taosecurity.b... SQL injection represents one of the most dangerous and well-known, yet misunderstood, security vulnerabilities on the Internet, largely because there is no central repository of information to turn to for help. This is the only book devoted exclusively to this long-established but recently growing threat. It includes all the currently known information about these attacks and significant insight from its contributing team of SQL injection experts.
  • Cisco Router and Switch Forensics

    Investigating and Analyzing Malicious Network Activity
    • 1st Edition
    • Dale Liu
    • English
    Cisco IOS (the software that runs the vast majority of Cisco routers and all Cisco network switches) is the dominant routing platform on the Internet and corporate networks. This widespread distribution, as well as its architectural deficiencies, makes it a valuable target for hackers looking to attack a corporate or private network infrastructure. Compromised devices can disrupt stability, introduce malicious modification, and endanger all communication on the network. For security of the network and investigation of attacks, in-depth analysis and diagnostics are critical, but no book currently covers forensic analysis of Cisco network devices in any detail. Cisco Router and Switch Forensics is the first book devoted to criminal attacks, incident response, data collection, and legal testimony on the market leader in network devices, including routers, switches, and wireless access points. Why is this focus on network devices necessary? Because criminals are targeting networks, and network devices require a fundamentally different approach than the process taken with traditional forensics. By hacking a router, an attacker can bypass a network's firewalls, issue a denial of service (DoS) attack to disable the network, monitor and record all outgoing and incoming traffic, or redirect that communication anywhere they like. But capturing this criminal activity cannot be accomplished with the tools and techniques of traditional forensics. While forensic analysis of computers or other traditional media typically involves immediate shut-down of the target machine, creation of a duplicate, and analysis of static data, this process rarely recovers live system data. So, when an investigation focuses on live network activity, this traditional approach obviously fails. Investigators must recover data as it is transferred via the router or switch, because it is destroyed when the network device is powered down. In this case, following the traditional approach outlined in books on general computer forensics techniques is not only insufficient, but also essentially harmful to an investigation.Jargon buster: A network switch is a small hardware device that joins multiple computers together within one local area network (LAN). A router is a more sophisticated network device that joins multiple wired or wireless networks together.
  • Digital Library Economics

    An Academic Perspective
    • 1st Edition
    • Wendy Evans + 1 more
    • English
    Digital Library Economics covers key aspects of the management and development of the digital library from an economic viewpoint. The work is a collection of essays by leading international authorities and provides an overview of current and future positions with regard to the economics of digital library management and development. Key contextual aspects are described, providing a history of the growth of digital libraries, with special reference to financial issues, current and possible future economic models and costing methodologies and challenges, themes and issues in the field.
  • Introduction to Microsoft Certification and Study Skills: Exam 70-620

    Exam 70-620
    • 1st Edition
    • Robert Shimonski
    • English
    This is a 1-hour short course from the complete self-paced online training course for 70-620. It provides a unique and intense test prep experience. Written and designed by leading experts and Microsoft MVPs, this short course delivers rich content, an interactive learning experience, and realistic practice questions.
  • International Encyclopedia of Education

    • 3rd Edition
    • Penelope Peterson + 2 more
    • English
    The field of education has experienced extraordinary technological, societal, and institutional change in recent years, making it one of the most fascinating yet complex fields of study in social science. Unequalled in its combination of authoritative scholarship and comprehensive coverage, International Encyclopedia of Education, Third Edition succeeds two highly successful previous editions (1985, 1994) in aiming to encapsulate research in this vibrant field for the twenty-first century reader. Under development for five years, this work encompasses over 1,000 articles across 24 individual areas of coverage, and is expected to become the dominant resource in the field. Education is a multidisciplinary and international field drawing on a wide range of social sciences and humanities disciplines, and this new edition comprehensively matches this diversity. The diverse background and multidisciplinary subject coverage of the Editorial Board ensure a balanced and objective academic framework, with 1,500 contributors representing over 100 countries, capturing a complete portrait of this evolving field.
  • The Real Citrix CCA Exam Preparation Kit

    Prepare for XenApp 5.0
    • 1st Edition
    • Shawn Tooley
    • English
    The Citrix Certified Administrator (CCA) credential is the first tier of Citrix certification. The CCA is most often sought out by IT professionals whose networks employ Citrix virtualization technology, and for those IT professionals who are seeking a broad base of general network expertise. The number of CCAs is estimated at between 65 and 70K, up from 45,000 in 2003. Citrix recently released a new version of its most popular product, XenApp (formerly Presentation Server). This new version is fully compatible with Windows Server 2008. To retain their CCA credential, all current CCAs will need to upgrade to the new software. This will be particularly important to those companies enrolled in Citrix partner programs, as current certification is a requirement of the program. When packaged with practice exams, this prep kit will offer an affordable, effective solution for CCA certification and re-certification.
  • The Real MCTS SQL Server 2008 Exam 70-432 Prep Kit

    Database Implementation and Maintenance
    • 1st Edition
    • English
    SQL Server 2008 is the latest update to Microsoft's flagship database management system. This is the largest update since SQL Server 2005. SQL Server 2008 is a much more significant update than SQL Server 2005, because it brings increased ability to deliver data across more platforms, and thus many different types of devices. New functionality also allows for easy storage and retrieval of digitized images and video. These attributes address the recent explosion in the popularity of web-based video and server and desktop virtualization.The Real MCTS SQL Server 2008 Exam 70-432 Prep Kit prepares readers for the Microsoft Certified Technology Specialist exam: SQL Server 2008, Implementation and Maintenance.
  • Handbook of Crime Correlates

    • 1st Edition
    • Lee Ellis + 2 more
    • English
    Over the past two centuries, many aspects of criminal behavior have been investigated. Finding this information and making sense of it all is difficult when many studies would appear to offer contradictory findings. The Handbook of Crime Correlates collects in one source the summary analysis of crime research worldwide. It provides over 400 tables that divide crime research into nine broad categories: Pervasiveness and intra-offending relationships Demographic factors Ecological and macroeconomic factors Family and peer factors Institutional factors Behavioral and personality factors Cognitive factors Biological factors Crime victimization and fear of crime Within these broad categories, tables identify regions of the world and how separate variables are or are not positively or negatively associated with criminal behavior. Criminal behavior is broken down into separate offending categories of violent crime, property crime, drug offenses, sex offenses, delinquency, general and adult offenses, and recidivism. Accompanying each table is a description of what each table indicates in terms of the positive or negative association of specific variables with specific types of crime by region. This book should serve as a valuable resource for criminal justice personnel and academics in the social and life sciences interested in criminal behavior.
  • More Than a Thank You Note

    Academic Library Fundraising for the Dean or Director
    • 1st Edition
    • Kimberly Thompson + 1 more
    • English
    This book provides a friendly, lively discussion of the role of academic library fund-raising written by two experienced library fund-raisers.
  • Electronic Portfolios

    Personal information, Personal Development and Personal Values
    • 1st Edition
    • Simon Grant
    • English
    This book explains the motivations for building and using portfolio tools, and clarifies the principles and practice of using and developing them for assessment, recording personal information, self-presentation, personal and professional development, and for subtler and deeper aims of encouraging a reflective approach to learning, practice and life, developing personal identity, and ethical development towards moral agency. The book also offers a stimulating future vision to orient those with a longer-term perspective on the directions in which portfolio tools and related technology are advancing.
  • Meals in Science and Practice

    Interdisciplinary Research and Business Applications
    • 1st Edition
    • H L Meiselman
    • English
    The meal is the key eating occasion, yet professionals and researchers frequently focus on single food products, rather than the combinations of foods and the context in which they are consumed. Research on meals is also carried out in a wide range of fields and the different disciplines do not always benefit from each others’ expertise. This important collection presents contributions on meals from many perspectives, using different methods, and focusing on the different elements involved.Two introductory chapters in part one summarise the key findings in Dimensions of the Meal, the first book to bring an interdisciplinary perspective to meals, and introduce the current publication by reviewing the key topics discussed in the following chapters. Parts two to four then consider how meals are defined, studied and taught. Major considerations include eating socially and eating alone, the influence of gender, and the different situations of home, restaurant and institutional settings. Part five reviews meals worldwide, with chapters on Brazilian, Indian, Chinese and Thai meals, among others. The final parts discuss meals from further perspectives, including those of the chef, product developer and meal setting designer.With its distinguished editor and international team of contributors, Meals in science and practice is an informative and diverse reference for both professionals and academic researchers interested in food from disciplines such as food product development, food service, nutrition, dietetics, sociology, anthropology, psychology, public health, medicine and marketing.
  • Keeping the User in Mind

    Instructional Design and the Modern Library
    • 1st Edition
    • Valeda Dent Goodman
    • English
    Keeping the User in Mind provides a practical down-to-earth look at instructional design and its uses in the academic library. Focus is given to teaching and measuring information literacy skills, and chapters also review the history of the field, providing an overview of some relevant technological innovations that might be a part of any library’s instructional design mosaic. Fuelled by the need for asynchronous learning, the availability of the Web, and the need to evaluate learning outcomes, instructional design covers a wide range of approaches and models. How do libraries build environments that support learning, encourage the infusion of technology and be nimble enough to adjust to changing user needs? Instructional design is an area that may provide some insight. This book will provide a down-to-earth look at instructional design and its uses in the academic library, with a particular look at teaching and measuring information literacy skills. Chapters also review the history of the field, and provide an overview of some current relevant technological innovations that might be a part of any library’s instructional design mosaic.
  • Surviving the Future

    Academic Libraries, Quality and Assessment
    • 1st Edition
    • Gail Munde + 1 more
    • English
    Every academic library strives to make improvements - in its services, its effectiveness, and its contributions to overall university success. Every librarian wants to improve library quality, but few are knowledgeable or enthusiastic about the means and mechanisms of quality improvement. This book assists librarians to make sense of data collection, assessment, and comparative evaluation as stepping stones to transformative quality improvement. Creating value lies in a library’s ability to understand, communicate and measure what matters to users, and what can be measured can be managed to successful outcomes.
  • Information Obesity

    • 1st Edition
    • Andrew Whitworth
    • English
    An exploration of information literacy and ICT skills education from the point of view of social and political theory. The author incorporates theories to argue why the idea of information literacy is so important in the 21st century, and also to develop teaching strategies to this end. The book argues that only through expanding the range of information literacy education taking it beyond just formal school and university education and into homes, friendship networks and workplaces can we construct an effective educational response to information technology in the 21st century. Information literacy includes, but transcends, ICT skills and ultimately is about being politically, socially and communicatively competent in an information society.
  • The Internet and Higher Education

    Achieving Global Reach
    • 1st Edition
    • Alfred Rovai
    • English
    The purpose of this book is to increase understanding of the major theories, issues, challenges, and solutions related to online distance education. It balances practical advice with a description of the theoretical and research-based underpinnings for the culturally-responsiv... strategies presented. An important integrating theme is the impact of globalization and internationalization on all aspects of distance education. Consequently, the book examines the implications of global reach and cross-border education and promotes the integration of global learning in academic programs.
  • Cruise to Success

    How to Steer Your Way through the Murky Waters of Marketing Your Library
    • 1st Edition
    • Loreen Phillips
    • English
    Cruise to Success is a hands-on guide and handbook to create a library marketing campaign. Examples and step-by-step instructions assist both the novice and expert in presenting a campaign to attract the campus community to the library’s resources.
  • Emerging Technologies for Academic Libraries in the Digital Age

    • 1st Edition
    • LiLi Li
    • English
    This book is written to promote academic strategic management and envision future innovations for academic library resources, services and instructions in the digital age. It provides academic executives, consultants, instructors, IT specialists, librarians, LIS students, managers, trainers and other professionals with the latest information for developing trends of emerging technologies applied to student-centred and service-oriented academic learning environments. This book explores various fields where key emerging technologies may have great implications on academic library information technologies, academic library management, academic library information services, and academic library internal operations.
  • China-Asean Relations and International Law

    • 1st Edition
    • Zou Keyuan
    • English
    Our contemporary era has witnessed the remarkable development of China-ASEAN relations. Both sides have pledged to establish and develop a comprehensive cooperation. However, any development of international relations is governed by international legal principles, norms and rules, such as the Charter of the United Nations and general international law. There is no exception for China-ASEAN relations. The book discusses and explains China-ASEAN relations from an international law perspective and covers a wide range of legal topics and legal issues.
  • Librarians of Babel

    A Toolkit for Effective Communication
    • 1st Edition
    • Paola de Castro
    • English
    A librarian’s main task is to acquire, organize, process, retrieve and disseminate information to all possible users, but also to communicate and develop professional skills in this field. This collection offers an introduction to the different challenges that librarians and information specialists are called upon to carry out in order to achieve effective communication through different media. The main elements of professional writing, conference or workshop organization power point presentations are outlined.
  • Introduction to Criminalistics

    The Foundation of Forensic Science
    • 1st Edition
    • Barry A.J. Fisher + 2 more
    • English
    Introduction to Criminalistics covers the basics of Criminalistics in a textbook for a one or two semester course, with the intention of preparing the student for a future in forensic science. The role of the Criminalist is to analyze, compare, identify, and interpret physical evidence in the crime lab. These crime labs, or forensic labs, have two primary functions: identifying evidence and linking the suspect, victim, and crime scene through physical evidence. This new primer introduces the learner to the structure and organization of the crime lab and to the role of the Criminalist. It features real cases – recent and historic – to illustrate concepts. Colorful pedagogy clearly defines chapter elements and sets this text apart from next best. Topics covered include how to process a crime scene and preserve evidence, the basic principles of firearm examination, latent fingerprints, and rudimentary toxicology, or how to determine the presence or absence of drugs and poisons. Well organized and methodical, this textbook has the potential to become the standard text for applying techniques of the physical and natural sciences to examining physical evidence.
  • Mac OS X, iPod, and iPhone Forensic Analysis DVD Toolkit

    • 1st Edition
    • Jesse Varsalone
    • English
    This book provides digital forensic investigators, security professionals, and law enforcement with all of the information, tools, and utilities required to conduct forensic investigations of computers running any variant of the Macintosh OS X operating system, as well as the almost ubiquitous iPod and iPhone. Digital forensic investigators and security professionals subsequently can use data gathered from these devices to aid in the prosecution of criminal cases, litigate civil cases, audit adherence to federal regulatory compliance issues, and identify breech of corporate and government usage policies on networks. MAC Disks, Partitioning, and HFS+ File System Manage multiple partitions on a disk, and understand how the operating system stores data.FileVault and Time Machine Decrypt locked FileVault files and restore files backed up with Leopard's Time Machine.Recovering Browser History Uncover traces of Web-surfing activity in Safari with Web cache and .plist filesRecovering Email Artifacts, iChat, and Other Chat Logs Expose communications data in iChat, Address Book, Apple's Mail, MobileMe, and Web-based email.Locating and Recovering Photos Use iPhoto, Spotlight, and shadow files to find artifacts pof photos (e.g., thumbnails) when the originals no longer exist.Finding and Recovering QuickTime Movies and Other Video Understand video file formats--created with iSight, iMovie, or another application--and how to find them.PDF, Word, and Other Document Recovery Recover text documents and metadata with Microsoft Office, OpenOffice, Entourage, Adobe PDF, or other formats.Forensic Acquisition and Analysis of an iPod Documentseizure of an iPod model and analyze the iPod image file and artifacts on a Mac.Forensic Acquisition and Analysis of an iPhone Acquire a physical image of an iPhone or iPod Touch and safely analyze without jailbreaking.
  • Disappearing Cryptography

    Information Hiding: Steganography and Watermarking
    • 3rd Edition
    • Peter Wayner
    • English
    Cryptology is the practice of hiding digital information by means of various obfuscatory and steganographic techniques. The application of said techniques facilitates message confidentiality and sender/receiver identity authentication, and helps to ensure the integrity and security of computer passwords, ATM card information, digital signatures, DVD and HDDVD content, and electronic commerce. Cryptography is also central to digital rights management (DRM), a group of techniques for technologically controlling the use of copyrighted material that is being widely implemented and deployed at the behest of corporations that own and create revenue from the hundreds of thousands of mini-transactions that take place daily on programs like iTunes. This new edition of our best-selling book on cryptography and information hiding delineates a number of different methods to hide information in all types of digital media files. These methods include encryption, compression, data embedding and watermarking, data mimicry, and scrambling. During the last 5 years, the continued advancement and exponential increase of computer processing power have enhanced the efficacy and scope of electronic espionage and content appropriation. Therefore, this edition has amended and expanded outdated sections in accordance with new dangers, and includes 5 completely new chapters that introduce newer more sophisticated and refined cryptographic algorithms and techniques (such as fingerprinting, synchronization, and quantization) capable of withstanding the evolved forms of attack. Each chapter is divided into sections, first providing an introduction and high-level summary for those who wish to understand the concepts without wading through technical explanations, and then presenting concrete examples and greater detail for those who want to write their own programs. This combination of practicality and theory allows programmers and system designers to not only implement tried and true encryption procedures, but also consider probable future developments in their designs, thus fulfilling the need for preemptive caution that is becoming ever more explicit as the transference of digital media escalates.
  • Securing Intellectual Property

    Protecting Trade Secrets and Other Information Assets
    • 1st Edition
    • Information Information Security
    • English
    Most employeers are astounded at how easily and quickly their proprietary information can get out of their control. In a large number of cases, theft of trade secrets often involves employees leaving a company to start their own business or work for a direct competitor.Nearly all books that address the topic of trade secrets have the “spy vs. spy” perspective. The author approaches the topic from a practical business perspective and not simply creating “paranoia” for paranoia’s sake. The material for this book comes from the author’s extensive work experience as a computer forensics consultant and manager on numerous theft of trade secrets cases.
  • Virtualization for Security

    Including Sandboxing, Disaster Recovery, High Availability, Forensic Analysis, and Honeypotting
    • 1st Edition
    • John Hoopes
    • English
    One of the biggest buzzwords in the IT industry for the past few years, virtualization has matured into a practical requirement for many best-practice business scenarios, becoming an invaluable tool for security professionals at companies of every size. In addition to saving time and other resources, virtualization affords unprecedented means for intrusion and malware detection, prevention, recovery, and analysis. Taking a practical approach in a growing market underserved by books, this hands-on title is the first to combine in one place the most important and sought-after uses of virtualization for enhanced security, including sandboxing, disaster recovery and high availability, forensic analysis, and honeypotting.Already gaining buzz and traction in actual usage at an impressive rate, Gartner research indicates that virtualization will be the most significant trend in IT infrastructure and operations over the next four years. A recent report by IT research firm IDC predicts the virtualization services market will grow from $5.5 billion in 2006 to $11.7 billion in 2011. With this growth in adoption, becoming increasingly common even for small and midsize businesses, security is becoming a much more serious concern, both in terms of how to secure virtualization and how virtualization can serve critical security objectives. Titles exist and are on the way to fill the need for securing virtualization, but security professionals do not yet have a book outlining the many security applications of virtualization that will become increasingly important in their job requirements. This book is the first to fill that need, covering tactics such as isolating a virtual environment on the desktop for application testing, creating virtualized storage solutions for immediate disaster recovery and high availability across a network, migrating physical systems to virtual systems for analysis, and creating complete virtual systems to entice hackers and expose potential threats to actual production systems.About the TechnologiesA sandbox is an isolated environment created to run and test applications that might be a security risk. Recovering a compromised system is as easy as restarting the virtual machine to revert to the point before failure. Employing virtualization on actual production systems, rather than just test environments, yields similar benefits for disaster recovery and high availability. While traditional disaster recovery methods require time-consuming reinstallation of the operating system and applications before restoring data, backing up to a virtual machine makes the recovery process much easier, faster, and efficient. The virtual machine can be restored to same physical machine or an entirely different machine if the original machine has experienced irreparable hardware failure. Decreased downtime translates into higher availability of the system and increased productivity in the enterprise.Virtualiz... has been used for years in the field of forensic analysis, but new tools, techniques, and automation capabilities are making it an increasingly important tool. By means of virtualization, an investigator can create an exact working copy of a physical computer on another machine, including hidden or encrypted partitions, without altering any data, allowing complete access for analysis. The investigator can also take a live ?snapshot? to review or freeze the target computer at any point in time, before an attacker has a chance to cover his tracks or inflict further damage.A honeypot is a system that looks and acts like a production environment but is actually a monitored trap, deployed in a network with enough interesting data to attract hackers, but created to log their activity and keep them from causing damage to the actual production environment. A honeypot exposes new threats, tools, and techniques used by hackers before they can attack the real systems, which security managers patch based on the information gathered. Before virtualization became mainstream, setting up a machine or a whole network (a honeynet) for research purposes only was prohibitive in both cost and time management. Virtualization makes this technique more viable as a realistic approach for companies large and small.
  • Practical Aviation Security

    Predicting and Preventing Future Threats
    • 1st Edition
    • Jeffrey C. Price + 1 more
    • English
    Practical Aviation Security is a complete guide to the aviation security system, from crucial historical events, to the policies and policy makers and the major terrorist and criminal acts that have shaped the procedures in use today, to the tip-of-the-spear technologies that are shaping the future. This text enables the reader to enter airport security or other aviation management roles with the proper knowledge to immediately implement the necessary security programs, to meet international guidelines and to responsibly protect their facility or organization, no matter how large or small. Using case studies and practical security measures in use at airports all over the world, readers learn the effective methods and the fundamental principles involved in designing and implementing a security system. This text covers commercial airport security, general aviation and cargo operations, threats and threat detection and response systems as well as international security issues. While not perfect, the aviation security system is comprehensive and requires continual focus and attention to be able to stay a step ahead of the next attack. This text provides the tools necessary to prepare practitioners to enter the industry, and if they are already in the industry to better understand it so they can prevent the next tragedy.
  • Nokia Firewall, VPN, and IPSO Configuration Guide

    • 1st Edition
    • Andrew Hay + 2 more
    • English
    "While Nokia is perhaps most recognized for its leadership in the mobile phone market, they have successfully demonstrated their knowledge of the Internet security appliance market and its customers requirements."--Chri... Christiansen, Vice President, Internet Infrastructure and Security Software, IDC.Syngress has a long history of publishing market-leading books for system administrators and security professionals on commercial security products, particularly Firewall and Virtual Private Network (VPN) appliances from Cisco, Check Point, Juniper, SonicWall, and Nokia (see related titles for sales histories). The Nokia Firewall, VPN, and IPSO Configuration Guide will be the only book on the market covering the all-new Nokia Firewall/VPN Appliance suite. Nokia Firewall/VPN appliances are designed to protect and extend the network perimeter.According to IDC research, Nokia Firewall/VPN Appliances hold the #3 worldwide market-share position in this space behind Cisco and Juniper/NetScreen. IDC estimated the total Firewall/VPN market at $6 billion in 2007, and Nokia owns 6.6% of this market. Nokia's primary customers for security appliances are Mid-size to Large enterprises who need site-to-site connectivity and Mid-size to Large enterprises who need remote access connectivity through enterprise-deployed mobile devices. Nokia appliances for this market are priced form $1,000 for the simplest devices (Nokia IP60) up to $60,0000 for large enterprise- and service-provider class devices (like the Nokia IP2450 released in Q4 2007). While the feature set of such a broad product range obviously varies greatly, all of the appliances run on the same operating system: Nokia IPSO (IPSO refers to Ipsilon Networks, a company specializing in IP switching acquired by Nokia in 1997. The definition of the acronym has little to no meaning for customers.) As a result of this common operating system across the product line, The Nokia Firewall, VPN, and IPSO Configuration Guide will be an essential reference to users of any of these products. Users manage the Nokia IPSO (which is a Linux variant, specifically designed for these appliances) through a Web interface called Nokia Network Voyager or via a powerful Command Line Interface (CLI). Coverage within the book becomes increasingly complex relative to the product line.The Nokia Firewall, VPN, and IPSO Configuration Guide and companion Web site will provide seasoned network administrators and security professionals with the in-depth coverage and step-by-step walkthroughs they require to properly secure their network perimeters and ensure safe connectivity for remote users. The book contains special chapters devoted to mastering the complex Nokia IPSO command line, as well as tips and tricks for taking advantage of the new "ease of use" features in the Nokia Network Voyager Web interface. In addition, the companion Web site offers downloadable video walkthroughs on various installation and troubleshooting tips from the authors.
  • Next Generation SSH2 Implementation

    Securing Data in Motion
    • 1st Edition
    • Dale Liu
    • English
    New security risks, continuously evolving regulation and increasing security standards have created new and growing needs for secure internal information transfers, which SSH provides. This book addresses these new trends in depth, offering the most up-to-date information on the integration of SSH into a security environment. It covers the newest features and applications of SSH-2 (which received Proposed Standard status from the IETF in 2006). SSH2 is more secure than previous versions and has many expanded uses on a wider variety of computing platforms. Another particular note driving new SSH2 adoption are the requirements of recent legislation (PCI/HIPAA/SOX/FISMA... SSH 2 has become an even more valuable tool, as it provides communications security compliance with the latest standards.This book offers the most up-to-date information on SSH2 in a practical, hands-on, tutorial-style reference that goes well beyond UNIX implementation. It concentrates on the latest version of SSH 2 with all new information.
  • SAP Security Configuration and Deployment

    The IT Administrator's Guide to Best Practices
    • 1st Edition
    • Joey Hirao
    • English
    Throughout the world, high-profile large organizations (aerospace and defense, automotive, banking, chemicals, financial service providers, healthcare, high tech, insurance, oil and gas, pharmaceuticals, retail, telecommunications, and utilities) and governments are using SAP software to process their most mission-critical, highly sensitive data. With more than 100,000 installations, SAP is the world's largest enterprise software company and the world's third largest independent software supplier overall. Despite this widespread use, there have been very few books written on SAP implementation and security, despite a great deal of interest. (There are 220,000 members in an on-line SAP 'community' seeking information, ideas and tools on the IT Toolbox Website alone.) Managing SAP user authentication and authorizations is becoming more complex than ever, as there are more and more SAP products involved that have very different access issues. It's a complex area that requires focused expertise.This book is designed for these network and systems administrator who deal with the complexity of having to make judgmental decisions regarding enormously complicated and technical data in the SAP landscape, as well as pay attention to new compliance rules and security regulations.Most SAP users experience significant challenges when trying to manage and mitigate the risks in existing or new security solutions and usually end up facing repetitive, expensive re-work and perpetuated compliance challenges. This book is designed to help them properly and efficiently manage these challenges on an ongoing basis. It aims to remove the 'Black Box' mystique that surrounds SAP security.