Leanpub Header

Skip to main content

Filters

Category: "Cyber Security"

Books

  1. Reverse Engineering with Claude Code
    Reverse Engineering with Claude Code
    AI-Assisted Analysis, Understanding, and Reconstruction of Software Systems
    Steve Publications

    Reverse engineering gets a powerful upgrade with Claude Code. Learn how to investigate, understand and reconstruct software you’re authorized to analyze, while keeping evidence, accuracy and reproducibility at the center. From legacy systems to modern codebases, this book turns AI into a practical partner for serious software analysis.

  2. The Definitive Guide to SOC 2
    The Definitive Guide to SOC 2
    A Complete Guide to Designing, Implementing, and Auditing a SOC 2 Compliance Program
    Steve Publications

    SOC 2 doesn’t have to be confusing. This practical handbook walks you through building, documenting and auditing a compliance program from the ground up. Packed with real-world examples, templates and checklists, it gives founders, security teams, engineers and auditors a clear path from first steps to continuous compliance.

  3. Hardening MCP Servers
    Hardening MCP Servers
    Hands-on recipes to secure MCP Servers from code injection, rug pulls, OAuth flaws, and prompt attacks
    GitforGits | Asian Publishing House

    This book is a workshop where things go wrong on the page, in front of you, and then get fixed in code, with the output that proves the fix worked. There's no need to be a security expert to follow along. We'll be moving from the interpreter to the supply chain, from the token to the human clicking Allow, and from a single tool to a whole host of untrusting servers.

  4. Local-First AI Engineering
    Local-First AI Engineering
    Running Agents Without the Cloud
    Steve Publications

    Build AI that keeps working when the cloud doesn't. Local-First AI Engineering shows you how to run capable, private AI systems on infrastructure you control. From hardware and inference to RAG, agents, security and production ops, you'll learn how to build local AI that is fast, reliable and truly yours.

  5. The ISO/IEC 42001 Implementation Guide
    The ISO/IEC 42001 Implementation Guide
    A Practical Guide to Building an Artificial Intelligence Management System from Foundation to Certification
    Steve Publications

    AI governance is moving from principle to practice. This hands-on guide shows you how to build, implement and certify an ISO/IEC 42001 AI management system with confidence. From clause-by-clause guidance to practical templates, integration strategies and real-world scenarios, it turns a complex standard into a clear path from foundation to certification.

  6. Implementing ISO/IEC 27001:2022
    Implementing ISO/IEC 27001:2022
    A Practical Implementation Manual for Information Security Management Systems
    Steve Publications

    Implementing ISO/IEC 27001:2022 is easier with the right guide. Packed with practical steps, ready-to-use templates and real-world examples, this book helps you build, manage and certify an effective Information Security Management System with confidence.

  7. Application Sandboxing
    Application Sandboxing
    Principles, Technologies, and Secure Isolation
    Steve Publications

    Application sandboxing is the foundation of secure modern computing. This book explores the principles, architectures, and technologies behind containers, virtual machines, browser sandboxes, WebAssembly, and more, explaining how they isolate untrusted code, where their security boundaries break down, and how to choose the right approach for real-world systems.

  8. Secrets at Scale
    Secrets at Scale
    A Practitioner's Guide to Managing Secrets Across the Full Software Delivery Lifecycle
    Steve Publications

    Secrets are one of the most overlooked risks in modern infrastructure. Secrets at Scale is a practical guide to managing credentials, API keys, certificates and other sensitive data across modern software environments. It gives engineers, DevOps teams, platform teams and security professionals the tools to build secure, scalable secrets management.

  9. Security Engineering Masterclass

    Security engineering is about building systems that stay secure when things go wrong. This book covers the fundamentals of secure applications, infrastructure and operations through practical examples, real breaches and proven security practices.

  10. Web Application Attack Vectors 2026
    Web Application Attack Vectors 2026
    An Advanced Guide for Security Professionals and Developers (Updated Edition)
    Steve Publications

    Modern web security goes far beyond the basics. This book covers advanced web attacks including injection flaws, SSRF, API abuse, request smuggling and exploit chaining, plus 2026 topics like React2Shell, HTTP/3, AI-driven attacks, WebAssembly and supply chain compromises. Built for penetration testers, application security engineers and experienced developers.

  11. Secure Software Supply Chains
    Secure Software Supply Chains
    End-to-End Security for Modern Software Delivery
    Steve Publications

    Your software is only as secure as the path it takes to production. This book walks you through protecting every stage of the software supply chain, from dependencies and builds to deployment and runtime. Learn practical techniques, proven tools and the mindset needed to stop modern supply chain attacks before they spread.

  12. Building GenAI Systems for DFIR
    Building GenAI Systems for DFIR
    Designing Trustwothy GenAI Applications for Digital Forensics & Incident Responders
    Jonathan Pan

    This book presents an architecture-first approach to designing trustworthy GenAI applications. Using Digital Forensics and Incident Response (DFIR) as a continuous case study, you will progressively build an AI-assisted investigation system. If you want to move beyond building AI applications that simply work, and start architecting AI systems that professionals can trust, this book is for you.

  13. IT & AI Digest
    IT & AI Digest
    Briefings on Technology, Artificial Intelligence & the Digital World
    Mohammad Kamrul Hassan

    Stay informed about the technology that matters.IT & AI Digest brings together concise analysis and insights on artificial intelligence, software, cybersecurity, cloud computing, robotics, digital business, and emerging technologies.No endless scrolling. No unnecessary noise.Just important ideas, explained clearly.Read less. Understand more.

  14. Practical Metasploit
    Practical Metasploit
    Mastering the Metasploit Framework from First Exploit to Advanced Post-Exploitation
    Ground Truth Books

    Go beyond clicking through msfconsole. A progressive, hands-on course that takes you from your first canned exploit to writing custom Ruby modules, pivoting through compromised networks, and extending the Metasploit Framework itself.

  15. BGP Security for Software Engineers and Network Operators
    BGP Security for Software Engineers and Network Operators
    Architecture, Implementation, and Operations at Production Scale
    Steve Publications

    BGP security is more than a set of filters and policies. This book takes a practical, systems-level look at securing routing infrastructure, from RPKI and route filtering to monitoring, automation and incident response, with real configurations, code examples and lessons from incidents that have shaped how the Internet is secured.