Γενική βιβλιογραφία
Η παρακάτω γενική βιβλιογραφία σε θέματα ασφάλειας βασίζεται στο
RFC 2196 Site Security Handbook September 1997
- Appelman, Heller, Ehrman, White, and McAuliffe, The Law and The Internet, USENIX 1995 Technical Conference on UNIX and Advanced Computing, New Orleans, LA, January 16-20, 1995.
- American Bar Association, Section of Science and Technology, Guide to the Prosecution of Telecommunication Fraud by the Use of Computer Crime Statutes, American Bar Association, 1989.
- R. Aucoin, Computer Viruses: Checklist for Recovery, Computers in Libraries, Vol. 9, No. 2, Pg. 4, February 1989.
- D. Barrett, Bandits on the Information Superhighway, O'Reilly & Associates, Sebastopol, CA, 1996.
- R. Bates, Disaster Recovery Planning: Networks, Telecommunications and Data Communications, McGraw-Hill, 1992.
- S. Bellovin, Security Problems in the TCP/IP Protocol Suite, Computer Communication Review, Vol 19, 2, pp. 32-48, April 1989.Fraser, Ed. Informational
- S. Bellovin, and M. Merritt, Limitations of the Kerberos Authentication System, Computer Communications Review, October 1990.
- S. Bellovin, There Be Dragon, USENIX: Proceedings of the Third Usenix Security Symposium, Baltimore, MD. September, 1992.
- D. Bender, Computer Law: Evidence and Procedure, M. Bender, New York, NY, 1978-present.
- B. Bloombecker, Spectacular Computer Crimes, Dow Jones- Irwin, Homewood, IL. 1990.
- R. Brand, Coping with the Threat of Computer Security Incidents: A Primer from Prevention through Recovery, R. Brand, 8 June 1990.
- J. Brock, November 1988 Internet Computer Virus and the Vulnerability of National Telecommunications Networks to Computer Viruses, GAO/T-IMTEC-89-10, Washington, DC, 20 July 1989.
- British Standard, BS Tech Cttee BSFD/12, Info. Sec. Mgmt, BS 7799 : 1995 Code of Practice for Information Security Management, British Standards Institution, London, 54, Effective 15 February 1995.
- W. Caelli, Editor, Computer Security in the Age of Information, Proceedings of the Fifth IFIP International Conference on Computer Security, IFIP/Sec '88.
- J. Carroll, Computer Security, 2nd Edition, Butterworth Publishers, Stoneham, MA, 1987.
- E. Cavazos and G. Morin, Cyber-Space and The Law, MIT Press, Cambridge, MA, 1995.
- Commerce Clearing House, Guide to Computer Law, (Topical Law Reports), Chicago, IL., 1989.
- B. Chapman, Network(In) Security Through IP Packet Filtering, USENIX: Proceedings of the Third UNIX Security Symposium, Baltimore, MD, September 1992.
- B. Chapman and E. Zwicky, Building Internet Firewalls, O'Reilly and Associates, Sebastopol, CA, 1995.Fraser, Ed. Informational
- B. Cheswick, The Design of a Secure Internet Gateway, Proceedings of the Summer Usenix Conference, Anaheim, CA, June 1990.
- W. Cheswick, An Evening with Berferd In Which a Cracker is Lured, Endured, and Studied, AT&T Bell Laboratories.
- W. Cheswick and S. Bellovin, Firewalls and Internet Security: Repelling the Wily Hacker, Addison-Wesley, Reading, MA, 1994.
- C. Conly, Organizing for Computer Crime Investigation and Prosecution, U.S. Dept. of Justice, Office of Justice Programs, Under Contract Number OJP-86-C-002, National Institute of Justice, Washington, DC, July 1989.
- J. Cooper, Computer and Communications Security: Strategies for the 1990s, McGraw-Hill, 1989.
- Computer Professionals for Social Responsibility, CPSR Statement on the Computer Virus, CPSR, Communications of the ACM, Vol. 32, No. 6, Pg. 699, June 1989.
- Department of Defense, Password Management Guideline, CSC-STD-002-85, 12 April 1985, 31 pages.
- D. Curry, Improving the Security of Your UNIX System, SRI International Report ITSTD-721-FR-90-21, April 1990.
- D. Curry, UNIX System Security: A Guide for Users and Systems Administrators, Addision-Wesley, Reading, MA, 1992.
- Defense Data Network, BSD 4.2 and 4.3 Software Problem Resolution, DDN MGT Bulletin #43, DDN Network Information Center, 3 November 1988.
- DCA DDN Defense Communications System, DDN Security Bulletin 03, DDN Security Coordination Center, 17 October 1989.
- P. Denning, Editor, Computers Under Attack: Intruders, Worms, and Viruses, ACM Press, 1990.
- M. Eichin, and J. Rochlis, With Microscope and Tweezers: An Analysis of the Internet Virus of November 1988, Massachusetts Institute of Technology, February 1989.Fraser, Ed. Informational
- T. Eisenberg, D. Gries, J. Hartmanis, D. Holcomb, M. Lynn, and T. Santoro, The Computer Worm, Cornell University, 6 February 1989.
- D. Ermann, M. Williams, and C. Gutierrez, Editors, Computers, Ethics, and Society, Oxford University Press, NY, 1990. (376 pages, includes bibliographical references).
- D. Farmer and E. Spafford, The COPS Security Checker System, Proceedings of the Summer 1990 USENIX Conference, Anaheim, CA, Pgs. 165-170, June 1990.
- Rik Farrow, UNIX Systems Security, Addison-Wesley, Reading, MA, 1991.
- W. Fenwick, Chair, Computer Litigation, 1985: Trial Tactics and Techniques, Litigation Course Handbook Series No. 280, Prepared for distribution at the Computer Litigation, 1985: Trial Tactics and Techniques Program, February-March 1985.
- M. Fites, P. Kratz, and A. Brebner, Control and Security of Computer Information Systems, Computer Science Press, 1989.
- Fites, Johnson, and Kratz, The Computer Virus Crisis, Van Hostrand Reinhold, 2nd edition, 1992.
- T. Forester, and P. Morrison, Computer Ethics: Tales and Ethical Dilemmas in Computing, MIT Press, Cambridge, MA, 1990.
- T. Forester, and P. Morrison, Computer Ethics: Tales and Ethical Dilemmas in Computing, MIT Press, Cambridge, MA, 1990. (192 pages including index.)
- U.S. General Accounting Office, Computer Security - Virus Highlights Need for Improved Internet Management, United States General Accounting Office, Washington, DC, 1989.
- S. Garfinkel, and E. Spafford, Practical Unix Security, O'Reilly & Associates, ISBN 0-937175-72-2, May 1991.
- S. Garfinkel, PGP:Pretty Good Privacy, O'Reilly & Associates, Sebastopol, CA, 1996.Fraser, Ed. Informational
- S. Garfinkel and E. Spafford, Practical UNIX and Internet Security, O'Reilly & Associates, Sebastopol, CA, 1996.
- M. Gemignani, Viruses and Criminal Law, Communications of the ACM, Vol. 32, No. 6, Pgs. 669-671, June 1989.
- J. Goodell, The Cyberthief and the Samurai: The True Story of Kevin Mitnick-And The Man Who Hunted Him Down, Dell Publishing, 1996.
- C. Gould, Editor, The Information Web: Ethical and Social Implications of Computer Networking, Westview Press, Boulder, CO, 1989.
- M. Greenia, Computer Security Information Sourcebook, Lexikon Services, Sacramento, CA, 1989.
- K. Hafner and J. Markoff, Cyberpunk: Outlaws and Hackers on the Computer Frontier, Touchstone, Simon & Schuster, 1991.
- D. Hess, D. Safford, and U. Pooch, A Unix Network Protocol Security Study: Network Information Service, Texas A&M University.
- L. Hoffman, Rogue Programs: Viruses, Worms, and Trojan Horses, Van Nostrand Reinhold, NY, 1990. (384 pages, includes bibliographical references and index.)
- G. Howard, Introduction to Internet Security: From Basics to Beyond, Prima Publishing, Rocklin, CA, 1995.
- F. Huband, and R. Shelton, Editors, Protection of Computer Systems and Software: New Approaches for Combating Theft of Software and Unauthorized Intrusion, Papers presented at a workshop sponsored by the National Science Foundation, 1986.
- L. Hughes Jr., Actually Useful Internet Security Techniques, New Riders Publishing, Indianapolis, IN, 1995.
- Internet Activities Board, Ethics and the Internet, RFC 1087, IAB, January 1989. Also appears in the Communications of the ACM, Vol. 32, No. 6, Pg. 710, June 1989.Fraser, Ed. Informational
- D. Icove, K. Seger, and W. VonStorch, Computer Crime: A Crimefighter's Handbook, O'Reilly & Associates, Sebastopol, CA, 1995.
- IVPC, International Virus Prevention Conference '96 Proceedings, NCSA, 1996.
- D. Johnson, and J. Podesta, Formulating A Company Policy on Access to and Use and Disclosure of Electronic Mail on Company Computer Systems.
- P. Kane, PC Security and Virus Protection Handbook: The Ongoing War Against Information Sabotage, M&T Books, 1994.
- C. Kaufman, R. Perlman, and M. Speciner, Network Security: PRIVATE Communication in a PUBLIC World, Prentice Hall, Englewood Cliffs, NJ, 1995.
- S. Kent, E-Mail Privacy for the Internet: New Software and Strict Registration Procedures will be Implemented this Year, Business Communications Review, Vol. 20, No. 1, Pg. 55, 1 January 1990.
- S. Levy, Hacker: Heroes of the Computer Revolution, Delta, 1984.
- S. Lewis, Disaster Recovery Yellow Pages, The Systems Audit Group, 1996.
- J. Littleman, The Fugitive Game: Online with Kevin Mitnick, Little, Brown, Boston, MA., 1996.
- W. Lu and M. Sundareshan, Secure Communication in Internet Environments: A Hierarchical Key Management Scheme for End-to-End Encryption, IEEE Transactions on Communications, Vol. 37, No. 10, Pg. 1014, 1 October 1989.
- W. Lu and M. Sundareshan, A Model for Multilevel Security in Computer Networks, IEEE Transactions on Software Engineering, Vol. 16, No. 6, Page 647, 1 June 1990.
- M. Martin, and R. Schinzinger, Ethics in Engineering, McGraw Hill, 2nd Edition, 1989.
- R. Merkle, A Fast Software One Way Hash Function, Journal of Cryptology, Vol. 3, No. 1.Fraser, Ed. Informational
- J. McEwen, Dedicated Computer Crime Units, Report Contributors: D. Fester and H. Nugent, Prepared for the National Institute of Justice, U.S. Department of Justice, by Institute for Law and Justice, Inc., under contract number OJP-85-C-006, Washington, DC, 1989.
- Massachusetts Institute of Technology, Teaching Students About Responsible Use of Computers, MIT, 1985-1986. Also reprinted in the Communications of the ACM, Vol. 32, No. 6, Pg. 704, Athena Project, MIT, June 1989.
- Mogul, J., Simple and Flexible Datagram Access Controls for UNIX-based Gateways, Digital Western Research Laboratory Research Report 89/4, March 1989.
- A. Muffett, Crack Version 4.1: A Sensible Password Checker for Unix
- NCSA, NCSA Firewall Policy Guide, 1995.
- NCSA, NCSA's Corporate Computer Virus Prevention Policy Model, NCSA, 1995.
- NCSA, Firewalls & Internet Security Conference '96 Proceedings, 1996.
- National Computer Security Center, Guidelines for Formal Verification Systems, Shipping list no.: 89-660-P, The Center, Fort George G. Meade, MD, 1 April 1990.
- National Computer Security Center, Glossary of Computer Security Terms, Shipping list no.: 89-254-P, The Center, Fort George G. Meade, MD, 21 October 1988.
- Tinto, M., Computer Viruses: Prevention, Detection, and Treatment, National Computer Security Center C1 Technical Report C1-001-89, June 1989.
- National Computer Security Conference, 12th National Computer Security Conference: Baltimore Convention Center, Baltimore, MD, 10-13 October, 1989: Information Systems Security, Solutions for Today - Concepts for Tomorrow, National Institute of Standards and National Computer Security Center, 1989.
- National Computer Security Center, Guidance for Applying the Department of Defense Trusted Computer System Evaluation Criteria in Specific Environments, CSC-STD-003-85, NCSC, 25 June 1985.Fraser, Ed. Informational
- National Computer Security Center, Technical Rationale Behind CSC-STD-003-85: Computer Security Requirements, CSC-STD-004-85, NCSC, 25 June 1985.
- National Computer Security Center, Magnetic Remanence Security Guideline, CSC-STD-005-85, NCSC, 15 November 1985.
- National Computer Security Center, Trusted Computer System Evaluation Criteria, DoD 5200.28-STD, CSC-STD-001- 83, NCSC, December 1985.
- NCSC, A Guide to Understanding DISCRETIONARY ACCESS CONTROL in Trusted Systems, NCSC-TG-003, Version-1, 30 September 1987, 29 pages.
- NCSC, A Guide to Understanding AUDIT in Trusted Systems, NCSC-TG-001, Version-2, 1 June 1988, 25 pages.
- National Computer Security Center, Glossary of Computer Security Terms, NCSC-TG-004, NCSC, 21 October 1988.
- National Computer Security Center, Trusted Network Interpretation, NCSC-TG-005, NCSC, 31 July 1987.
- NCSC, A Guide to Understanding CONFIGURATION MANAGEMENT in Trusted Systems, NCSC-TG-006, Version-1, 28 March 1988, 31 pages.
- National Computer Security Center, Trusted UNIX Working Group (TRUSIX) rationale for selecting access control list features for the UNIX system, Shipping list no.: 90-076-P, The Center, Fort George G. Meade, MD, 1990.
- National Research Council, Computers at Risk: Safe Computing in the Information Age, National Academy Press, 1991.
- E. Nemeth, G. Snyder, S. Seebass, and T. Hein, UNIX Systems Administration Handbook, Prentice Hall PTR, Englewood Cliffs, NJ, 2nd ed. 1995.
- National Institute of Standards and Technology, Computer Viruses and Related Threats: A Management Guide, NIST Special Publication 500-166, August 1989.
- National Security Agency, Information Systems Security Products and Services Catalog, NSA, Quarterly Publication.Fraser, Ed. Informational
- National Science Foundation, NSF Poses Code of Networking Ethics, Communications of the ACM, Vol. 32, No. 6, Pg. 688, June 1989. Also appears in the minutes of the regular meeting of the Division Advisory Panel for Networking and Communications Research and Infrastructure, Dave Farber, Chair, November 29-30, 1988.
- NTISS, Advisory Memorandum on Office Automation Security Guideline, NTISSAM COMPUSEC/1-87, 16 January 1987, 58 pages.
- United States Congress, Office of Technology Assessment, Defending Secrets, Sharing Data: New Locks and Keys for Electronic Information, OTA-CIT-310, October 1987.
- Congress of the United States, Office of Technology Assessment, Information Security and Privacy in Network Environments, OTA-TCT-606, September 1994.
- I. Palmer, and G. Potter, Computer Security Risk Management, Van Nostrand Reinhold, NY, 1989.
- D. Parker, Computer Crime: Criminal Justice Resource Manual, U.S. Dept. of Justice, National Institute of Justice, Office of Justice Programs, Under Contract Number OJP-86-C-002, Washington, D.C., August 1989.
- D. Parker, S. Swope, and B. Baker, Ethical Conflicts: Information and Computer Science, Technology and Business, QED Information Sciences, Inc., Wellesley, MA. (245 pages).
- C. Pfleeger, Security in Computing, Prentice-Hall, Englewood Cliffs, NJ, 1989.
- J. Quarterman, J., The Matrix: Computer Networks and Conferencing Systems Worldwide, Digital Press, Bedford, MA, 1990.
- M. Ranum, An Internet Firewall, Proceedings of World Conference on Systems Management and Security, 1992.
- M. Ranum, A Network Firewall, Digital Equipment Corporation Washington Open Systems Resource Center, June 12, 1992.
- M. Ranum, Thinking About Firewalls, 1993.Fraser, Ed. Informational
- M. Ranum and F. Avolio, A Toolkit and Methods for Internet Firewalls, Trustest Information Systems, 1994.
- R. Reinhardt, An Architectural Overview of UNIX Network Security
- R. Reinhardt, An Architectural Overview of UNIX Network Security, ARINC Research Corporation, February 18, 1993.
- The Helminthiasis of the Internet, RFC 1135, USC/Information Sciences Institute, Marina del Rey, CA, December 1989.
- D. Russell and G. Gangemi, Computer Security Basics O'Reilly & Associates, Sebastopol, CA, 1991.
- B. Schneier, Applied Cryptography: Protocols, Algorithms, and Source Code in C, John Wiley & Sons, New York, second edition, 1996.
- D. Seeley, A Tour of the Worm, Proceedings of 1989 Winter USENIX Conference, Usenix Association, San Diego, CA, February 1989.
- E. Shaw Jr., Computer Fraud and Abuse Act of 1986, Congressional Record (3 June 1986), Washington, D.C., 3 June 1986.
- T. Shimomura with J. Markoff, Takedown:The Pursuit and Capture of Kevin Mitnick, America's Most Wanted Computer Outlaw- by the Man Who Did It, Hyperion, 1996.
- R. Shirey, Defense Data Network Security Architecture, Computer Communication Review, Vol. 20, No. 2, Page 66, 1 April 1990.
- M. Slatalla and J. Quittner, Masters of Deception: The Gang that Ruled Cyberspace, Harper Collins Publishers, 1995.
- M. Smith, Commonsense Computer Security: Your Practical Guide to Preventing Accidental and Deliberate Electronic Data Loss, McGraw-Hill, New York, NY, 1989.
- D. Smith, Forming an Incident Response Team, Sixth Annual Computer Security Incident Handling Workshop, Boston, MA, July 25-29, 1995.Fraser, Ed. Informational
- E. Spafford, The Internet Worm Program: An Analysis, Computer Communication Review, Vol. 19, No. 1, ACM SIGCOM, January 1989. Also issued as Purdue CS Technical Report CSD-TR-823, 28 November 1988.
- G. Spafford, An Analysis of the Internet Worm, Proceedings of the European Software Engineering Conference 1989, Warwick England, September 1989. Proceedings published by Springer- Verlag as: Lecture Notes in Computer Science #387. Also issued as Purdue Technical Report #CSD-TR-933.
- E. Spafford, K. Heaphy, and D. Ferbrache, Computer Viruses: Dealing with Electronic Vandalism and Programmed Threats, ADAPSO, 1989. (109 pages.)
- W. Stallings, Internet Security Handbook, IDG Books, Foster City CA, 1995.
- W. Stallings, Network and InterNetwork Security, Prentice Hall, , 1995.
- W. Stallings, Protect Your Privacy: A Guide for PGP Users PTR Prentice Hall, 1995.
- C. Stoll, Stalking the Wily Hacker, Communications of the ACM, Vol. 31, No. 5, Pgs. 484-497, ACM, New York, NY, May 1988.
- C. Stoll, The Cuckoo's Egg, ISBN 00385-24946-2, Doubleday, 1989.
- G. Treese and A. Wolman, X Through the Firewall, and Other Applications Relays, Digital Equipment Corporation, Cambridge Research Laboratory, CRL 93/10, May 3, 1993.
- P. Trible, The Computer Fraud and Abuse Act of 1986, U.S. Senate Committee on the Judiciary, 1986.
- W. Venema, TCP WRAPPER: Network monitoring, access control, and booby traps, Mathematics and Computing Science, Eindhoven University of Technology, The Netherlands.
- USENIX Association, USENIX Proceedings: UNIX Security Workshop, Portland, OR, August 29-30, 1988.
- USENIX Association, USENIX Proceedings: UNIX Security II Workshop, Portland, OR, August 27-28, 1990.Fraser, Ed. Informational
- USENIX Association, USENIX Symposium Proceedings: UNIX Security III, Baltimore, MD, September 14-16, 1992.
- USENIX Association, USENIX Symposium Proceedings: UNIX Security IV, Santa Clara, CA, October 4-6, 1993.
- USENIX Association, The Fifth USENIX UNIX Security Symposium, Salt Lake City, UT, June 5-7, 1995.
- C. Wood, W. Banks, S. Guarro, A. Garcia, V. Hampel, and H. Sartorio, Computer Security: A Comprehensive Controls Checklist, John Wiley and Sons, Interscience Publication, 1987.
- L. Wrobel, Writing Disaster Recovery Plans for Telecommunications Networks and LANS, Artech House, 1993.
- S. Vallabhaneni, Auditing Computer Security: A Manual with Case Studies, Wiley, New York, NY, 1989.