Master the art of binary analysis with Practical Binary Analysis with Capstone & Keystone. Learn how to disassemble, assemble, analyze, and rewrite machine code while building real-world tools for reverse engineering, security research, and automation.
Real attacks don't live in slide decks. They live in the stack, the heap, the kernel. This code-first guide takes practitioners who already know C straight into how modern exploits and malware actually work, pairing every offensive technique with the defense built to stop it. Rigorous, hands-on, and strictly for isolated, legal, ethical lab use.
Endpoint Detection and Response is at the core of modern cybersecurity. This book explores the technologies behind EDR, from kernel-level telemetry to threat hunting and zero-trust architectures, providing practical guidance for deploying and operating EDR at scale.
Master cloud security with confidence using this comprehensive CCSP study guide. Covering all six CCSP domains, it combines clear explanations, real-world examples, and exam-focused practice to help you succeed on the certification exam while building practical cloud security skills for your career.
The CIS Controls are one of the most trusted cybersecurity frameworks, but turning them into a real security program isn't always straightforward. This book walks through all 18 controls and 153 safeguards with clear explanations, practical guidance, and real-world context to help you implement the framework with confidence, whether you're starting from scratch or improving an existing program.
Application sandboxing is the foundation of secure modern computing. This book explores the principles, architectures, and technologies behind containers, virtual machines, browser sandboxes, WebAssembly, and more, explaining how they isolate untrusted code, where their security boundaries break down, and how to choose the right approach for real-world systems.
Discover how Windows software really works with a practical guide to modern x64 assembly. From core concepts to advanced optimization, reverse engineering, and low-level systems programming, this book equips you with the knowledge to write fast, secure, and efficient code.
Master IDA Pro 9.x with a practical, comprehensive guide to modern reverse engineering. From disassembly and decompilation to debugging, IDAPython, automation, malware analysis, and binary patching, this book equips you with the skills and workflows needed to analyze real-world binaries with confidence.
Master advanced web application security testing with Advanced Web Application Penetration Testing Strategies with Burp Suite. Learn practical techniques to find complex vulnerabilities, improve your workflow and deliver more effective security assessments.
Modern cybersecurity needs tools that are fast, reliable and close to the hardware. BlackHat Zig shows how Zig's performance, memory control and compile-time features make it a powerful language for building security tools. Through practical examples, you'll learn Zig while exploring reverse engineering, exploit development, malware analysis, network security and defensive engineering.
Secrets are one of the most overlooked risks in modern infrastructure. Secrets at Scale is a practical guide to managing credentials, API keys, certificates and other sensitive data across modern software environments. It gives engineers, DevOps teams, platform teams and security professionals the tools to build secure, scalable secrets management.
AI is changing exploit development. Learn how to use large language models with tools like IDA Pro, Ghidra and Binary Ninja to speed up vulnerability research, reverse engineering and proof-of-concept exploit development while understanding where human expertise still matters.
Modern web security goes far beyond the basics. This book covers advanced web attacks including injection flaws, SSRF, API abuse, request smuggling and exploit chaining, plus 2026 topics like React2Shell, HTTP/3, AI-driven attacks, WebAssembly and supply chain compromises. Built for penetration testers, application security engineers and experienced developers.
AI writes code faster than you can review it. This book gives you the gates: automated guardrails that catch bugs, enforce standards, and verify behavior before bad code reaches production. Stop being the last line of defense. Build the gates that catch the slop first, so you design and verify instead of proofread.
This book presents an architecture-first approach to designing trustworthy GenAI applications. Using Digital Forensics and Incident Response (DFIR) as a continuous case study, you will progressively build an AI-assisted investigation system. If you want to move beyond building AI applications that simply work, and start architecting AI systems that professionals can trust, this book is for you.