Writing a Book: OSSEC Host-based Intrusion Detection

ossecWell I’ve eluded to it over the past couple of months and everything is now final. I will be co-authoring the Syngress book “OSSEC Host-based Intrusion Detection” with Daniel Cid and Rory Bray. Look for it in stores in February 2008 and buy as many copies as you can 🙂

About the book:

Since it’s launch in October of 2003, OSSEC has gained momentum to the tune of 10,000 downloads per month from every part of the globe. Commercial host-based intrusion detection solutions range from $60 to as high as thousands of dollars. As there is no free host-based intrusion detection solution that can match the functionality, scalability, and ease of use of OSSEC it stands in a class by itself.

This book is the definitive guide on the OSSEC Host-based Intrusion Detection system. Documentation has been available since the start of the OSSEC project but, due to time constraints, no formal book has been created to outline the various features and functions of the OSSEC product. This has left very important and powerful features of the product undocumented…until now! This book will show you how to install and configure OSSEC on the operating system of your choosing and provide detailed examples to help you prevent and mitigate attacks on your systems.

Included with the book is a DVD containing the latest OSSEC software for Windows and Linux/Unix, a pre-configured VMWare image with OSSEC already installed, and a step-by-step video detailing how to get OSSEC up-and-running on your own system.

3 comments

  1. LonerVamp says:

    OSSEC has been on my radar for a while now, and I think this book will definitely be a great guide to get my rear in gear, if I've not started playing with ossec by Feb! Either way, I'll definitely pick this up!

  2. OneEyedCarmen says:

    Congrats! I've been following your blog since you first posted about the idea of the book on EH|Net. Great stuff!

  3. MiBan says:

    Hi Andrew,
    I'd love to get a book on using OSSEC. What would make it even better if you could add a chapter or two on how to use OSSEC as a SEM (refer to http://blog.vorant.com/2007/04/log-management-sum… for an example). Thanks a lot 🙂

Leave a Reply to OneEyedCarmen Cancel reply

Your email address will not be published. Required fields are marked *

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Scroll to top