Red Teaming and Penetration Testing : An end-to-end guide to modern adversary simulation, cloud attacks, and defense
Description: Modern cyberattacks no longer rely on noisy exploits or obvious malware. Today's adversaries abuse identity systems, cloud APIs, misconfigurations, CI/CD pipelines, and trusted infrastructure to move laterally, persist, and quietly exfiltrate data. Red Teaming has evolved from pene...
Đã lưu trong:
| Tác giả chính: | |
|---|---|
| Định dạng: | Livre numérique |
| Ngôn ngữ: | Anglais |
| Được phát hành: |
New Delhi :
BPB Publications
2026.
Paris : Cyberlibris |
| Truy cập trực tuyến: | Accès Université d'Orléans et IFPM |
| Chú thích: |
Couverture. https://static2.cyberlibris.com/books_upload/300pix/9789365894165.jpg Cyberlibris (ScholarVox) corpus Informatique |
| Autres localisations: | Voir dans le Sudoc |
| Edition sous un autre format: | • Red Teaming and Penetration Testing, An end-to-end guide to modern adversary simulation, cloud attacks, and defense, Konstantin Degtiarev, New Delhi, BPB Publications, 2026, 1 vol. (444 p.), 978-93-6589-416-5 |
| Tóm tắt: | Description: Modern cyberattacks no longer rely on noisy exploits or obvious malware. Today's adversaries abuse identity systems, cloud APIs, misconfigurations, CI/CD pipelines, and trusted infrastructure to move laterally, persist, and quietly exfiltrate data. Red Teaming has evolved from penetration testing into full adversary simulation, testing not just vulnerabilities but real organizational resilience. This book provides a practical guide to modern red team operations. It covers reconnaissance, initial access, privilege escalation, lateral movement, command-and-control, persistence, cloud and Kubernetes attacks, CI/CD and supply-chain abuse, and real-world post-exploitation techniques. Defensive strategies are tightly integrated, including identity hardening, admission controls, policy as code, detection engineering, and incident response, with real case studies demonstrating how attacks succeed and how they are stopped. After reading this book, readers will be able to model real attacker behavior, execute or defend against realistic red team engagements, and translate offensive findings into concrete security controls, detections, and operational improvements. What you will learn: Model real-world attacker behavior using modern red team techniques; Exploit identity, cloud, and CI/CD trust relationships safely; Perform post-exploitation, persistence, and covert data exfiltration; Simulate adversary tactics across enterprise and cloud environments; Detect and contain attacks using outcome-focused telemetry; Translate red team findings into defensive engineering controls. Who this book is for: This book is for red team operators, penetration testers, and blue team engineers. SOC analysts, DevSecOps engineers, and security architects will also benefit. Readers should possess basic networking knowledge and Linux command-line familiarity to master real-world offensive and defensive strategies |
|---|---|
| Mô tả sách: | Couverture. https://static2.cyberlibris.com/books_upload/300pix/9789365894165.jpg Cyberlibris (ScholarVox) corpus Informatique |
| Truy cập: | L'accès en ligne est réservé aux établissements ou bibliothèques ayant souscrit l'abonnement. Cyberlibris |