Review of The Cuckoo's Egg Posted
Amazon.com just posted my five star review of The Cuckoo's Egg by Cliff Stoll. From the review:
Cliff Stoll's "The Cuckoo's Egg" (TCE) is the best real-life digital incident detection and response book ever written. I know something about this topic; I've written books on the subject and have taught thousands of students since 2000. I've done detection and IR since 1998, starting in the military, then as a consultant and defense contractor, and now as director of IR for a Fortune 5 company. If you're not an incident detector/responder, you're probably going to read TCE as a general enthusiast or maybe an IT professional. You'll like the book. If you're a security professional, you'll love it.
Cliff Stoll's "The Cuckoo's Egg" (TCE) is the best real-life digital incident detection and response book ever written. I know something about this topic; I've written books on the subject and have taught thousands of students since 2000. I've done detection and IR since 1998, starting in the military, then as a consultant and defense contractor, and now as director of IR for a Fortune 5 company. If you're not an incident detector/responder, you're probably going to read TCE as a general enthusiast or maybe an IT professional. You'll like the book. If you're a security professional, you'll love it.
Comments
This is probably the best book to give you insight into the security mindset required to do intrusion detection and incident response.
I still have this book on my desk as a reminder of the lessons in it. (The old cover looks cooler too!)
As you say, the main lesson for me from this book: You have to care as much (or more) than your adversary does.
Wyman