This book covers every topic in the latest CISM exam syllabus, approaching topics from the ISACA perspective. It's 325+ pages organized in a format that makes it easy to drill down on specific exam domains and concepts at-a-glance, making it an essential exam resource for anyone who aims to prepare for the CISM exam without wasting time or money.
This book covers every topic in the latest CISA exam syllabus, approaching topics from the ISACA perspective. It's 400+ pages, organized in a format following the syllabus that makes it easy to drill down on specific exam domains and concepts at-a-glance, making it an essential exam resource for anyone who aims to prepare for the CISA exam without wasting time or money.
Learn how to find interesting behaviour and flaws in JavaScript. Reading this book you will find the latest and greatest techniques for hacking JavaScript and generating XSS payloads. Includes ways to construct JavaScript using only +[]()! characters. Never heard of DOM Clobbering? This book has all the details.
The book covers every topic in the latest CISSP exam syllabus, organized in a format that makes it easy to drill down on specific exam domains and concepts at-a-glance, making it an essential exam resource for anyone who aims to prepare for the exam without wasting time or money.
Linux is one of the best decisions you can make for your computer — but knowing where to start is the hard part. This guide walks you through everything: choosing a distribution, installing it, and using it confidently every day. It was written by Jay LaCroix of Learn Linux TV, for complete beginners. No prior experience required.
You can read about Vault in an afternoon. You will still not be able to run it. Twenty-four chapters, each ending in a working lab on your own laptop — and five that ask you to break your setup on purpose, because nobody who has recovered a sealed cluster under pressure learned it from a reference manual.
Discover how software works beneath the surface with The Reverse Engineering Handbook. From assembly language and debugging to malware analysis, firmware, and AI-assisted techniques, this practical guide takes you from beginner to expert in understanding and deconstructing compiled software.
The book covers every topic in the latest CCSP exam syllabus, with more than 400 pages organized in a format that makes it easy to drill down on specific exam domains and concepts at-a-glance, making it an essential exam resource for anyone who aims to prepare for the exam without wasting time or money.
Official companion guide to the OWASP Juice Shop. Being a web application with a vast number of intended security vulnerabilities, the OWASP Juice Shop is supposed to be the opposite of a best practice or template application for web developers: It is an awareness, training, demonstration and exercise tool for security risks in modern web apps.
This book is designed for individuals who have already learned the basics of web security. It provides a systematic guide to acquiring the "practical bug hunting skills" necessary to achieve your first valid report (First Blood), earn your first bounty, and consistently deliver results in real-world bug bounty programs.
Smart cards power secure payments, digital identity and trusted authentication around the world. This book is a practical guide to building secure applications for ISO/IEC 7816 and ISO/IEC 14443 systems with real code, hands-on examples and proven development practices.
What actually happens after you click Login? Beyond the screen, beyond the redirects, beyond the success message, enterprise Single Sign-On reveals its true complexity. Beyond the Login Screen exposes the real mechanics of SSO—HTTP calls, cookies, tokens, and protocol exchanges—across Spring Boot, Keycloak, and Azure Entra ID. This book is for professionals who need more than configurations: it is for those who must understand identity deeply, troubleshoot decisively, and deliver reliable authentication experiences when it matters most.
Cryptography for Python Developer
AI evaluation agents crossed trust boundaries, reused credentials and coordinated through persistent shared state. This evidence-led reconstruction explains what happened, what remains unproven and how AgentSecOps can prevent the same architecture from failing again.
HashiCorp Vault is a popular secret management project used by small startups to the world's largest organizations. In this book, learn core Vault concepts and application patterns using a hands-on approach.