Leanpub Header

Skip to main content

Filters

Category: "Cyber Security"

Books

  1. Practical Binary Analysis with Capstone & Keystone
    Practical Binary Analysis with Capstone & Keystone
    The Complete Guide to Binary Analysis, Disassembly, and Assembly
    Steve Publications

    Master the art of binary analysis with Practical Binary Analysis with Capstone & Keystone. Learn how to disassemble, assemble, analyze, and rewrite machine code while building real-world tools for reverse engineering, security research, and automation.

  2. Black Hat C
    Black Hat C
    Low-Level Exploitation and Malware Engineering
    Steve Publications

    Real attacks don't live in slide decks. They live in the stack, the heap, the kernel. This code-first guide takes practitioners who already know C straight into how modern exploits and malware actually work, pairing every offensive technique with the defense built to stop it. Rigorous, hands-on, and strictly for isolated, legal, ethical lab use.

  3. The Anatomy of Modern Endpoint Detection and Response
    The Anatomy of Modern Endpoint Detection and Response
    From Kernel Hooks to Zero Trust — A Security Professional's Guide
    Steve Publications

    Endpoint Detection and Response is at the core of modern cybersecurity. This book explores the technologies behind EDR, from kernel-level telemetry to threat hunting and zero-trust architectures, providing practical guidance for deploying and operating EDR at scale.

  4. CCSP - Certified Cloud Security Professional: The Complete Study Guide
    CCSP - Certified Cloud Security Professional: The Complete Study Guide
    Mastering Cloud Security Across All Six Domains
    Steve Publications

    Master cloud security with confidence using this comprehensive CCSP study guide. Covering all six CCSP domains, it combines clear explanations, real-world examples, and exam-focused practice to help you succeed on the certification exam while building practical cloud security skills for your career.

  5. CIS Controls v8.1: The Definitive Guide to Cybersecurity's Most Actionable Framework
    CIS Controls v8.1: The Definitive Guide to Cybersecurity's Most Actionable Framework
    A Complete Walkthrough of the 18 Controls, 153 Safeguards, and Implementation Groups for Modern Organizations
    Steve Publications

    The CIS Controls are one of the most trusted cybersecurity frameworks, but turning them into a real security program isn't always straightforward. This book walks through all 18 controls and 153 safeguards with clear explanations, practical guidance, and real-world context to help you implement the framework with confidence, whether you're starting from scratch or improving an existing program.

  6. Application Sandboxing
    Application Sandboxing
    Principles, Technologies, and Secure Isolation
    Steve Publications

    Application sandboxing is the foundation of secure modern computing. This book explores the principles, architectures, and technologies behind containers, virtual machines, browser sandboxes, WebAssembly, and more, explaining how they isolate untrusted code, where their security boundaries break down, and how to choose the right approach for real-world systems.

  7. Assembly Under the Hood: Modern x64 Programming for Windows
    Assembly Under the Hood: Modern x64 Programming for Windows
    From Fundamentals to Advanced Techniques
    Steve Publications

    Discover how Windows software really works with a practical guide to modern x64 assembly. From core concepts to advanced optimization, reverse engineering, and low-level systems programming, this book equips you with the knowledge to write fast, secure, and efficient code.

  8. The IDA Pro Handbook
    The IDA Pro Handbook
    Disassembly, Decompilation, Debugging, and Reverse Engineering at Scale with IDA 9.0+
    Steve Publications

    Master IDA Pro 9.x with a practical, comprehensive guide to modern reverse engineering. From disassembly and decompilation to debugging, IDAPython, automation, malware analysis, and binary patching, this book equips you with the skills and workflows needed to analyze real-world binaries with confidence.

  9. Advanced Web Application Penetration Testing Strategies with Burp Suite
    Advanced Web Application Penetration Testing Strategies with Burp Suite
    A Definitive Reference for Penetration Testers, Security Engineers, and Bug Bounty Hunters
    Steve Publications

    Master advanced web application security testing with Advanced Web Application Penetration Testing Strategies with Burp Suite. Learn practical techniques to find complex vulnerabilities, improve your workflow and deliver more effective security assessments.

  10. BlackHat Zig
    BlackHat Zig
    Offensive Security, Exploit Development, and Tooling with the Zig Programming Language
    Steve Publications

    Modern cybersecurity needs tools that are fast, reliable and close to the hardware. BlackHat Zig shows how Zig's performance, memory control and compile-time features make it a powerful language for building security tools. Through practical examples, you'll learn Zig while exploring reverse engineering, exploit development, malware analysis, network security and defensive engineering.

  11. Secrets at Scale
    Secrets at Scale
    A Practitioner's Guide to Managing Secrets Across the Full Software Delivery Lifecycle
    Steve Publications

    Secrets are one of the most overlooked risks in modern infrastructure. Secrets at Scale is a practical guide to managing credentials, API keys, certificates and other sensitive data across modern software environments. It gives engineers, DevOps teams, platform teams and security professionals the tools to build secure, scalable secrets management.

  12. AI-Assisted Exploit Development
    AI-Assisted Exploit Development
    Using Large Language Models to Accelerate Vulnerability Research, Reverse Engineering, and Offensive Security
    Steve Publications

    AI is changing exploit development. Learn how to use large language models with tools like IDA Pro, Ghidra and Binary Ninja to speed up vulnerability research, reverse engineering and proof-of-concept exploit development while understanding where human expertise still matters.

  13. Web Application Attack Vectors 2026
    Web Application Attack Vectors 2026
    An Advanced Guide for Security Professionals and Developers (Updated Edition)
    Steve Publications

    Modern web security goes far beyond the basics. This book covers advanced web attacks including injection flaws, SSRF, API abuse, request smuggling and exploit chaining, plus 2026 topics like React2Shell, HTTP/3, AI-driven attacks, WebAssembly and supply chain compromises. Built for penetration testers, application security engineers and experienced developers.

  14. AI: Programming Like a God
    AI: Programming Like a God
    The Heavenly Gates
    Tom Gilkison

    AI writes code faster than you can review it. This book gives you the gates: automated guardrails that catch bugs, enforce standards, and verify behavior before bad code reaches production. Stop being the last line of defense. Build the gates that catch the slop first, so you design and verify instead of proofread.

  15. Building GenAI Systems for DFIR
    Building GenAI Systems for DFIR
    Designing Trustwothy GenAI Applications for Digital Forensics & Incident Responders
    Jonathan Pan

    This book presents an architecture-first approach to designing trustworthy GenAI applications. Using Digital Forensics and Incident Response (DFIR) as a continuous case study, you will progressively build an AI-assisted investigation system. If you want to move beyond building AI applications that simply work, and start architecting AI systems that professionals can trust, this book is for you.