Leanpub Header

Skip to main content

Filters

Category: "Cyber Security"

Books

  1. Cloud Forensics for Microsoft Azure

    Azure investigations don't start with a disk image, they start with the control plane. This field guide walks incident responders through Azure's logging architecture, identity attack chains, VM and container forensics, and evidence acquisition at cloud scale, with three full attack scenarios worked end to end.

  2. The Reverse Engineering Handbook: From Beginner to Expert
    The Reverse Engineering Handbook: From Beginner to Expert
    A Complete Guide to Binary Analysis, Debugging, and Software Deconstruction
    Steve Publications

    Discover how software works beneath the surface with The Reverse Engineering Handbook. From assembly language and debugging to malware analysis, firmware, and AI-assisted techniques, this practical guide takes you from beginner to expert in understanding and deconstructing compiled software.

  3. Modern Cloud Security Engineering
    Modern Cloud Security Engineering
    A Practical Guide to Securing AWS, Azure, and Google Cloud
    Steve Publications

    Cloud security is built, not bought. This practical guide goes beyond checklists and compliance to teach the engineering principles behind secure cloud environments. Learn how to design resilient identity systems, protect workloads, secure data, detect threats, and respond to incidents across AWS, Microsoft Azure, and Google Cloud using production-tested techniques and real-world architectures.

  4. Red Team Operations
    Red Team Operations
    SouthStone Publications

    Master the complete lifecycle of authorized adversary emulation, from threat modeling and initial access through objective completion. Every offensive technique paired with detection and remediation, complete with ready-to-use templates for rules of engagement, ATT&CK mapping, and findings reports.

  5. Cloud Security Engineering
    Cloud Security Engineering
    SouthStone Publications

    A practical, multi-cloud guide to securing AWS, Azure, and GCP workloads. Twelve chapters cover IAM hardening, CSPM/CWPP, IaC scanning, Kubernetes defense, and cloud incident response, each paired with runnable policies, scan configs, and detection rules you can put to work immediately.

  6. The Threat Hunter's Playbook
    The Threat Hunter's Playbook
    SouthStone Publications

    A field-tested, platform-agnostic methodology for proactive threat hunting, from hypothesis formation and data foundations to a full scenario library organized by MITRE ATT&CK tactic. Every technique ships as portable Sigma YAML or pseudocode, built to outlast whichever SIEM or EDR you run today.

  7. Digital Forensics
    Digital Forensics
    SouthStone Publications

    Learn to investigate Windows, Linux, macOS, memory, network, and cloud evidence with the rigor courts and regulators expect. Packed with runnable tool examples (Volatility 3, Plaso, KAPE, The Sleuth Kit) and a full worked case study, this book turns forensic theory into repeatable, defensible practice.

  8. Threat Hunting
    Threat Hunting
    SouthStone Publications

    A vendor-neutral, hands-on guide to proactive threat hunting: the assume-breach mindset, MITRE ATT&CK, core telemetry, and techniques like baselining, beaconing, and LOLBin detection, all backed by Sigma-rule pseudocode and four full scenario hunts from phishing to command-and-control exfiltration.

  9. Threat Intelligence
    Threat Intelligence
    SouthStone Publications

    A practical guide to cyber threat intelligence, from raw indicators to strategic decisions. Learn the intelligence lifecycle, MITRE ATT&CK, STIX/TAXII/MISP, and intelligence-driven threat hunting, all traced through one real phishing campaign from first alert to CISO briefing.

  10. Vulnerability Management
    Vulnerability Management
    SouthStone Publications

    Tens of thousands of vulnerabilities. A handful that actually matter. This book shows you how to build a risk-based vulnerability management program, from asset discovery and scanning to CVSS/EPSS/KEV prioritization, remediation workflows, cloud and container security, and zero-day response, complete with SLA matrices, scoring formulas, and a full Log4Shell case study.

  11. Malware Analysis
    Malware Analysis
    SouthStone Publications

    A practical, hands on guide that walks SOC analysts, incident responders, and aspiring reverse engineers from a suspicious file to a defensible detection, covering static, dynamic, code, and memory analysis, unpacking, YARA, and real world reporting.

  12. CSIRT Operations
    CSIRT Operations
    SouthStone Publications

    Running incidents is a technical problem under time pressure. Running the team that handles them is an organizational design problem, and most CSIRTs fail at exactly that gap. This handbook gives security leaders the charters, catalogs, playbooks, RACIs, and war room templates to build a CSIRT that survives its first real crisis, and the next one.

  13. SOC Operations
    SOC Operations
    SouthStone Publications

    A practitioner's guide to running a modern SOC, from alert triage and detection engineering to SOAR automation and metrics that actually mean something. Includes real Sigma and KQL rules, a triage checklist, an escalation matrix, and a full worked phishing case from alert to closure.

  14. Cyber Threat Intelligence: From Foundational Principles to Advanced Operational Practice
    Cyber Threat Intelligence: From Foundational Principles to Advanced Operational Practice
    A Comprehensive Guide to the Intelligence Lifecycle, Adversary Analysis, and Proactive Defense
    Steve Publications

    Cyber threats evolve constantly, and effective defense starts with actionable intelligence. This book guides you from the fundamentals of cyber threat intelligence to advanced operational practices, providing practical frameworks, real-world examples, and proven techniques to help you turn threat data into stronger security decisions.

  15. Honeypots: The Art and Science of Cyber Deception
    Honeypots: The Art and Science of Cyber Deception
    A Comprehensive Guide to Designing, Deploying, and Operating Security Honeypots
    Steve Publications

    Cyber deception gives defenders a powerful way to detect threats and gather valuable intelligence. Honeypots: The Art and Science of Cyber Deception is a practical guide to designing, deploying, and operating security honeypots, covering everything from core concepts to modern frameworks and real-world operations.