THINK LIKE the ADVERSARY: Understanding Attacker's Kill Chain to Build a Stronger Defence

Prijzen vanaf
17,00

Uitgelicht

VERGELIJK ALLE AANBIEDERS (3)

Beschrijving

Bol Most security writing describes defence from the defender's chair: the control that should have been in place, the patch that should have shipped, the alert that should have fired. That framing is necessary, but it is incomplete. A control exists because someone, at some point, worked out what an attacker would try against it. Understanding that reasoning - not the tooling, not the exploit code, but the decision-making underneath it - is what separates a defender who follows a checklist from one who can anticipate the next move.This book reconstructs that reasoning. Each chapter in Parts One through Four is narrated from the perspective of an intruder working through a stage of an intrusion: choosing a target, gaining a foothold, moving through a network, extracting what they came for. The narration is not speculative. Every technique, sequence, and decision described here is drawn from a publicly documented source - a CVE writeup, a vendor or independent threat-intelligence publication, a court filing, or established press reporting on a disclosed breach. Sources are indexed at the back of the book so that any claim can be traced to its origin.This is deliberately not a how-to guide. No code, command, or configuration sample in this book will execute as written. Exploit development, tool configuration, and operational tradecraft are out of scope; what is in scope is the logic an attacker applies at each stage, described at the same level of abstraction used in established threat-modelling frameworks - what was attempted, in what order, and why it made sense from the attacker's position. Readers looking for attack tooling will not find it here. Readers looking to understand why a given control matters, and where in a real intrusion it would have mattered, will.Each attacker-perspective chapter closes with a short defender's-view section, translating the preceding narrative into what a defender in that position could plausibly have seen, and where the chain could have been broken. Parts Five extends this further, addressing how to build detection logic around attacker reasoning rather than around a fixed list of indicators, and how that reasoning shifts as attackers adapt to the defences built against them.The intended reader already knows networks, systems, and core security concepts. This is not an introduction to cybersecurity. It is a way of thinking about the adversary that, once acquired, does not go away.

Vergelijk aanbieders (3)

Sorteren op:

€ 17,00 € 2,99 verzendkosten Totaal € 19,99

€ 18,50 Gratis verzending

€ 18,50 Gratis verzending

Beschrijving (1)

Most security writing describes defence from the defender's chair: the control that should have been in place, the patch that should have shipped, the alert that should have fired. That framing is necessary, but it is incomplete. A control exists because someone, at some point, worked out what an attacker would try against it. Understanding that reasoning - not the tooling, not the exploit code, but the decision-making underneath it - is what separates a defender who follows a checklist from one who can anticipate the next move.This book reconstructs that reasoning. Each chapter in Parts One through Four is narrated from the perspective of an intruder working through a stage of an intrusion: choosing a target, gaining a foothold, moving through a network, extracting what they came for. The narration is not speculative. Every technique, sequence, and decision described here is drawn from a publicly documented source - a CVE writeup, a vendor or independent threat-intelligence publication, a court filing, or established press reporting on a disclosed breach. Sources are indexed at the back of the book so that any claim can be traced to its origin.This is deliberately not a how-to guide. No code, command, or configuration sample in this book will execute as written. Exploit development, tool configuration, and operational tradecraft are out of scope; what is in scope is the logic an attacker applies at each stage, described at the same level of abstraction used in established threat-modelling frameworks - what was attempted, in what order, and why it made sense from the attacker's position. Readers looking for attack tooling will not find it here. Readers looking to understand why a given control matters, and where in a real intrusion it would have mattered, will.Each attacker-perspective chapter closes with a short defender's-view section, translating the preceding narrative into what a defender in that position could plausibly have seen, and where the chain could have been broken. Parts Five extends this further, addressing how to build detection logic around attacker reasoning rather than around a fixed list of indicators, and how that reasoning shifts as attackers adapt to the defences built against them.The intended reader already knows networks, systems, and core security concepts. This is not an introduction to cybersecurity. It is a way of thinking about the adversary that, once acquired, does not go away.


Productspecificaties

Merk Independently Published
EAN
  • 9798175391177
Maat


Prijshistorie

* Prijshistorie bevat geen data van Amazon, Amazon Marketplace.

Prijzen voor het laatst bijgewerkt op:

Uitgelichte Keuze
17,00
Naar shop