Leanpub Header

Skip to main content

Filters

Category: "Computer Security"

Computer Security

  1. Infrastructure as Code for Security Engineers

    Your infrastructure isn't a place anymore, it's text in a repo. This book teaches security engineers to read, review, and audit Terraform like an auditor, not a builder, so you know exactly what to look for before someone else's code hits production.

  2. Detection as Code: The Architecture Blueprint
    Detection as Code: The Architecture Blueprint
    Architecting the Automated Defensive Lifecycle for the Modern Enterprise
    Tridib Mondal

    Stop clicking. Start engineering. In a world of cloud-native infrastructure and rapidly evolving threats, security shouldn't be a "configuration task" hidden inside a vendor’s UI. It should be first-class software. Detection-as-Code: The Architecture Blueprint is the definitive guide to removing the "Save" button from your security consoles and replacing it with a high-velocity, version-controlled, and AI-augmented defensive pipeline.

  3. How to Think Like a Security Researcher
    How to Think Like a Security Researcher
    A practical mindset guide for beginners in cybersecurity.
    Ilkay Adil
    No Description Available
  4. Ghost in the Wires: The Making of a Modern Hacker

    USE THE COMMUNITY EDITION TO GET WHOLE BOOK FOR FREE !!The internet is a battleground, and every system has a weakness—you just have to find it. This isn’t a kiddie hacker’s guide; it’s a war manual for those ready to break, exploit, and outsmart the system. By the time you’re done, you won’t just know how hackers operate—you’ll become one.

  5. Suricata: An Operator's Guide

    Hello! I'm Tony Robinson, a senior security analyst and rule writer on the Proofpoint Emerging Threats team. I write rules for the ETOPEN and ETPRO rulesets. My book will teach you about the ins and outs of Suricata, rules and rule writing in general, why the IDS software behaves a certain way, and how to get the most out of your Suricata deployments.

  6. Suricata: An Operator's Guide

    Hello! I'm Tony Robinson, a senior security analyst and rule writer on the Proofpoint Emerging Threats team. I write rules for the ETOPEN and ETPRO rulesets. My book will teach you about the ins and outs of Suricata, rules and rule writing in general, why the IDS software behaves a certain way, and how to get the most out of your Suricata deployments.

  7. Email security: attack and defence

    Learn how to attack and defend email infrastructures.

  8. Hacking Exposed : Web applications

    the international best-selling Internet security book that reached its fifth edition. 

  9. TLS Fingerprinting and HTTP Client Identification
    TLS Fingerprinting and HTTP Client Identification
    A Practitioner's Guide to Protocol Analysis, Implementation and Deployment
    Steve Publications

    See what your network traffic is really revealing. This practical guide breaks down TLS fingerprinting, JA3/JA4 and HTTP client identification, then shows you how to put them to work with Python, Go and Rust. From protocol internals to production pipelines, learn how to identify clients at scale without losing sight of privacy or operational reality.

  10. Mastering Frida
    Mastering Frida
    Dynamic Instrumentation, Reverse Engineering and Security Testing with frida.re
    Steve Publications

    Get inside running software and see what it’s really doing. Mastering Frida takes you from your first hook to building serious instrumentation tools for Windows, Linux, macOS, Android and iOS. Learn how Frida works under the hood, where platforms differ and how to use its power without getting burned.

  11. Die Ungeschönte Architektur
    Die Ungeschönte Architektur
    29 technische Leitplanken für das Entwickeln, Auditieren und Bewerten von Software im KI-Zeitalter
    Marcus Niermann

    Ein Playbook gegen die agentische Drift — 29 Leitplanken, um KI-generierten Code prüfbar, ehrlich und auditierbar zu halten, destilliert aus über 27 Jahren Projekt- und Programmleitung in regulierten Branchen.

  12. Engineering Secure Sandboxes for AI Coding Agents
    Engineering Secure Sandboxes for AI Coding Agents
    A Technical Guide to Containment, Isolation, and Safe Execution for Autonomous Code-Generating Systems
    Steve Publications

    AI coding agents can build, run and break things at machine speed. This book shows you how to contain them safely. From Linux isolation and microVMs to WebAssembly, threat modeling and incident response, you’ll learn how to design production-grade sandboxes that let autonomous agents execute code without putting your systems at risk.

  13. Vibe-Coded App Security
    Vibe-Coded App Security
    A Field Guide for Indie Founders Shipping AI-Generated Code
    NeuraGrowth

    The security failures specific to AI-generated code, each paired with its fix. Hardcoded secrets, broken RLS policies, hallucinated packages, prompt injection, plus a 25-point pre-launch audit.

  14. Implementing ISO/IEC 27001:2022
    Implementing ISO/IEC 27001:2022
    A Practical Implementation Manual for Information Security Management Systems
    Steve Publications

    Implementing ISO/IEC 27001:2022 is easier with the right guide. Packed with practical steps, ready-to-use templates and real-world examples, this book helps you build, manage and certify an effective Information Security Management System with confidence.

  15. Smart Card Application Development
    Smart Card Application Development
    Building Secure Applications for ISO/IEC 7816 and ISO/IEC 14443 Systems
    Steve Publications

    Smart cards power secure payments, digital identity and trusted authentication around the world. This book is a practical guide to building secure applications for ISO/IEC 7816 and ISO/IEC 14443 systems with real code, hands-on examples and proven development practices.