#cybercanon โ Public Fediverse posts
Live and recent posts from across the Fediverse tagged #cybercanon, aggregated by home.social.
-
๐๏ธ ๐น๐๐๐๐๐๐๐๐๐ ๐ด๐๐๐๐๐๐๐ ๐๏ธ
Be sure to subscribe to the #CyberCanon #Newsletter to be informed of our latest reviews, Hall of Fame book highlights, and more. In this edition, we give a special shout-out to our friends at #TheCyberNest.๐ชน
https://cybercanon.substack.com/p/cybercanon-april-2026-part-2
-
๐ก๏ธ ๐ง๐ผ๐ฑ๐ฎ๐'๐ ๐ฅ๐ฒ๐๐ถ๐ฒ๐! ๐งฑ
This week, our #CyberCanon Committee provides you with Debra Baker's ๐ผ ๐พ๐๐๐ ๐๐ช๐๐๐ ๐ฉ๐ค ๐พ๐ฎ๐๐๐ง ๐๐๐จ๐๐ก๐๐๐ฃ๐๐.
Read Jack Freund, Ph.D.'s assessment ๐ https://cybercanon.org/a-ciso-guide-to-cyber-resilience/
-
โ๏ธ ๐ฅ๐ฒ๐๐ถ๐ฒ๐ ๐๐ฟ๐ผ๐ฝ๐ฝ๐ฒ๐ฑ ๐ช
We have back-to-back reviews from Larry Pesce. Today, Larry offers his insights on Chris Miller's widely well-regarded book, ๐พ๐๐๐ฅ ๐๐๐ง, from a cyber pro's perspective:
๐ You'll want to read this review https://cybercanon.org/chip-war-the-quest-to-dominate-the-worlds-most-critical-technology/
๐๏ธ Reminder: Our review pages contain links to purchase via Amazon or your local bookstore via Bookshop(dot)org. Doing so supports the #CyberCanon, a 100% volunteer-run nonprofit. ๐
-
Heads up - only a few days remain for this fantastic Wiley #CybersecurityBooks Humble Bundle.
๐https://www.humblebundle.com/books/cybersecurity-wiley-books-2025
Five are in the #CyberCanon library:
๐๐๐๐ช๐ง๐๐ฉ๐ฎ ๐๐ฃ๐๐๐ฃ๐๐๐ง๐๐ฃ๐: https://cybercanon.org/security-engineering/
๐๐๐๐ง๐๐ฉ๐จ ๐๐ฃ๐ ๐๐๐๐จ: https://cybercanon.org/secrets-and-lies-digital-security-in-a-networked-world/
๐๐ง๐๐๐ ๐ค๐ ๐๐๐๐ ๐๐ง๐จ: https://cybercanon.org/tribe-of-hackers/
๐๐ค๐ฌ ๐ ๐๐ค๐ ๐ฝ๐๐ฃ๐ ๐จ: https://cybercanon.org/how-i-rob-banks-and-other-such-places/
๐๐๐ ๐๐๐ฃ๐๐ช๐๐๐ ๐ค๐ ๐ฟ๐๐๐๐ฅ๐ฉ๐๐ค๐ฃ: https://cybercanon.org/the-language-of-deception-weaponizing-next-generation-ai/ -
๐ฏ๐ง๐ผ๐ฑ๐ฎ๐ ๐ถ๐ป ๐๐๐ฏ๐ฒ๐ฟ๐๐ฒ๐ฐ๐๐ฟ๐ถ๐๐ ๐๐ถ๐๐๐ผ๐ฟ๐: ๐ง๐ต๐ฒ ๐ง๐ฎ๐ฟ๐ด๐ฒ๐ ๐๐ฎ๐๐ฎ ๐๐ฟ๐ฒ๐ฎ๐ฐ๐ต, ๐๐ฒ๐ฐ๐ฒ๐บ๐ฏ๐ฒ๐ฟ ๐ญ๐ต, ๐ฎ๐ฌ๐ญ๐ฏ
It started quietly, days before the holiday rush. Shoppers were filling stores, credit cards were swiping nonstop, and behind the scenes, a small foothold inside Targetโs network was about to become one of the most infamous breaches in retail history.
๐ Attackers slipped in through a third-party HVAC vendor
๐ชฒ Malware moved silently across point-of-sale systems
๐ณ 40 million payment cards skimmed
๐ 70 million customers' data exposedWhile many are (sadly) becoming numb to breach news nowadays, this disclosure, announced 12 years ago today, shook the industry. Boardrooms across the globe were confronted with the fact that cybersecurity wasnโt just an IT problem, but a critical business-wide issue.
The incident is covered very nicely in this Huntress article: https://www.huntress.com/threat-library/data-breach/target-data-breach
Many books in the #CyberCanon address themes related to the breach. Here are two recos to get you started:
๐๐๐ซ๐๐๐๐ฉ๐๐ฃ๐ ๐ฉ๐๐ ๐ฟ๐๐๐๐ฉ๐๐ก ๐ผ๐๐ discusses cyber risk at the board/executive level and uses high-profile cases to illustrate governance, risk oversight, and leadership implications. Our review๐: https://cybercanon.org/navigating-the-digital-age-the-definitive-cybersecurity-guide-for-directors-and-officers/
๐๐๐ ๐พ๐๐๐ ๐๐ก๐๐ฎ๐๐ค๐ค๐ is your go-to for structured guidance on integrating 3rd party risk into enterprise security strategy. Our review๐: https://cybercanon.org/the-ciso-playbook/
-
๐๏ธ๐ก๐ผ๐๐ฒ๐บ๐ฏ๐ฒ๐ฟ ๐๐ผ๐ผ๐ธ ๐ฅ๐ฒ๐๐ถ๐ฒ๐ ๐ฅ๐ฒ๐ฐ๐ฎ๐ฝ!๐
It's already a couple of weeks into December, but we'd be remiss not to share our monthly review recap for November...
๐ง ๐๐ฃ๐๐๐ง๐จ๐ฉ๐๐ฃ๐ ๐ฉ๐๐ ๐พ๐ฎ๐๐๐ง ๐ผ๐ฉ๐ฉ๐๐๐ ๐๐ง ๐๐๐ฃ๐๐จ๐๐ฉ: https://cybercanon.org/understand-the-cyber-attacker-mindset-build-a-strategic-security-programme-to-counteract-threats/
๐ ๐พ๐ง๐ฎ๐ฅ๐ฉ๐ค ๐ฟ๐๐๐ฉ๐๐ค๐ฃ๐๐ง๐ฎ: https://cybercanon.org/crypto-dictionary-500-tasty-tidbits-for-the-curious-cryptographer/
๐ ๐๐๐จ๐ฉ๐๐ฃ๐๐ฃ๐ ๐๐ฃ: https://cybercanon.org/listening-in-cybersecurity-in-an-insecure-age/
๐ต๏ธโโ๏ธ ๐๐๐ฏ๐๐ง๐ช๐จ ๐๐๐๐จ๐ฉ: https://cybercanon.org/the-lazarus-heist-from-hollywood-to-high-finance-inside-north-koreas-global-cyber-war/
Each review page on our site now includes affiliate links to purchase the books (and other Amazon purchases), which provides a small portion of the proceeds to the Canon. ๐
Authors: Sarah Armstrong-Smith, Jean-Philippe (JP) Aumasson (@veorq), Susan Landau, and Geoff White
Reviewers: Kevin Magee, Sandip Dholakia (@iSandipD), Jeny Teheran, and Jeff Schiemann
-
๐๏ธ #CyberMonday is in full swing. Here is a reminder on how you can contribute to the Canon. We have something special for you: the #CyberCanon is now an Amazon affiliate!
Hereโs what that means:
1. Every book review on https://CyberCanon.org contains a link that takes you directly to Amazon to purchase the book of your choice.
2. Each time you use one of these links, a % of your purchase will be contributed back to the CyberCanon.
3. This benefit applies to anything you buy on Amazon within the following 24 hours, not just books.๐ Books make fantastic gifts for family, friends, colleagues, and teammates, really, everyone. Support us by beginning your Amazon shopping on https://CyberCanon.org and help continue our mission to curate cybersecurity content for the greater good of the cyber community.
-
๐๏ธ๐ข๐ฐ๐๐ผ๐ฏ๐ฒ๐ฟ ๐๐ผ๐ผ๐ธ ๐ฅ๐ฒ๐๐ถ๐ฒ๐ ๐ฅ๐ฒ๐ฐ๐ฎ๐ฝ!๐
In case you missed any of our reviews for the month of October, we are here for you...
๐งโ๐ผ ๐๐๐ ๐๐ง๐๐ฃ๐จ๐๐ค๐ง๐ข๐๐ฉ๐๐ค๐ฃ๐๐ก ๐๐๐๐๐๐ง: https://tinyurl.com/94z7ujsu
๐ ๐ฟ๐๐๐๐๐ง๐๐ฃ๐ฉ๐๐๐ก ๐๐ง๐๐ซ๐๐๐ฎ: https://tinyurl.com/2s3jk4cn
๐ค ๐ผ๐-๐ฟ๐ง๐๐ซ๐๐ฃ ๐พ๐ฎ๐๐๐ง๐จ๐๐๐ช๐ง๐๐ฉ๐ฎ ๐๐ฃ๐ ๐๐๐ง๐๐๐ฉ ๐๐ฃ๐ฉ๐๐ก๐ก๐๐๐๐ฃ๐๐: https://tinyurl.com/4k263a9c
๐ง ๐๐ฃ๐ ๐ฃ๐ค๐ฌ๐๐๐ก๐ ๐๐๐ฃ๐๐จ: https://tinyurl.com/yc4r5r4r
-
๐ ๐ง๐ผ๐ฑ๐ฎ๐ ๐ถ๐ป ๐๐๐ฏ๐ฒ๐ฟ๐๐ฒ๐ฐ๐๐ฟ๐ถ๐๐ ๐๐ถ๐๐๐ผ๐ฟ๐!
On November 2, 1988, the Morris Worm became the first major computer virus to spread across the Internet. What began as a graduate studentโs โexperimentโ quickly spiraled out of control, taking down much of the early Internet and costing millions in cleanup. It also gave rise to one of cybersecurityโs most important realizations: even well-intentioned code can cause catastrophic damage in a connected world.
To learn more, ๐๐๐ฃ๐๐ฎ ๐ฝ๐๐๐ง ๐๐ค๐๐จ ๐๐๐๐จ๐๐๐ฃ๐ by Scott Shapiro, a #CyberCanonHoFCandidate, covers the #MorrisWorm as one of its five infamous hacks. See our review โก๏ธ https://tinyurl.com/r2b3zc2u
๐ฅAnd as a bonus, many may not be aware that ๐๐๐ ๐พ๐ช๐๐ ๐ค๐ค'๐จ ๐๐๐ also contains an interesting perspective on the Morris Worm. A year after astronomer Cliff Stoll's spy tracking journey, he was one of many admins around the country who were investigating the Morris Worm live as it was spreading through the night. Cliff writes about this experience in the book's epilogue, where he discovers that the author of the worm was actually the son of NSA's Chief Scientist, Robert Morris, whom Cliff worked with in relation to his international hacker sleuthing a year earlier.
#CyberCanonHoF review โก๏ธ https://tinyurl.com/3rywf7zw
-
๐It's Halloween. But forget ghost stories, the scariest stories are true.
In ๐๐๐ฃ๐๐ฌ๐ค๐ง๐ข, @agreenberg unravels a real-life cyber-thriller. A Russian hacking unit unleashes chaos around the world, turning code into a weapon and critical infrastructure into targets. No jump scares. Just power grids going dark, global companies paralyzed, and governments scrambling in the shadows.
At #CyberCanon, we honor books that reveal how close the digital and physical worlds really are and how fragile our sense of safety can be when the next exploit lurks unseen.
๐ https://tinyurl.com/mu9aht95
#Cybersecurity #CybersecurityBooks #CyberCanonHoF #Halloween
-
๐ข ๐ง๐ต๐ฒ ๐๐๐ฏ๐ฒ๐ฟ๐ก๐ฒ๐๐ ๐ ๐๐๐ฏ๐ฒ๐ฟ๐๐ฎ๐ป๐ผ๐ป ๐ฃ๐ฎ๐ฟ๐๐ป๐ฒ๐ฟ๐๐ต๐ถ๐ฝ ๐ค
#Cybersecurity has no shortage of noise. What professionals need is ๐๐ถ๐ด๐ป๐ฎ๐น.
Thatโs why weโre excited to announce a new #partnership:
๐ #CyberCanon curates timeless, peer-reviewed cybersecurity books every professional should know.
๐ชบ#TheCyberNest empowers security #leaders with trusted peer insights and paid opportunities to share their #expertise through research and advisory engagements.
Together, we bring forward the most trusted, peer-validated #knowledge to guide todayโs most important security decisions.
Follow along as we roll out initiatives designed to give practitioners the clarity and confidence they need in an ever-changing landscape.
-
๐๏ธREMINDER๐๏ธ
Thursday, 9/25, our very own Rick Howard will be presenting at
Bitwarden's #OpenSourceSecuritySummit along side Rinki Sethi and Andy Greenberg.It's free, it's virtual, and it's only 2 hours, so no excuses. โบ๏ธ
๐ https://bitwarden.com/open-source-security-summit/
Andy is a rare 2X #CyberCanon Hall of Fame winner for his books Sandworm and Tracers in the Dark.
๐๐๐ฃ๐๐ฌ๐ค๐ง๐ข review: tinyurl.com/mu9aht95
๐๐ง๐๐๐๐ง๐จ ๐๐ฃ ๐ฉ๐๐ ๐ฟ๐๐ง๐ review: tinyurl.com/3xw76xxp
@bitwarden
@agreenberg
#CyberCanonHoF #Cybersecurity #CybersecurityBooks -
Have you heard about this new thing called #AI?!
(Yes, fairly weak attempt at humor, but give us a break, we're busy over reading and writing over here!)
This week's book may not be well known (yet), but Andrew Chrostowski thinks that needs to change and is recommending it for the #CyberCanon Hall of Fame ๐ฆ.
Read why ๐ผ๐ง๐ฉ๐๐๐๐๐๐๐ก ๐๐ฃ๐ฉ๐๐ก๐ก๐๐๐๐ฃ๐๐ ๐๐ฃ๐ ๐๐๐๐๐๐ฃ๐ ๐๐๐๐ง๐ฃ๐๐ฃ๐ ๐๐ค๐ช๐ฃ๐๐๐ฉ๐๐ค๐ฃ๐จ: ๐๐๐๐ง๐ฃ๐๐ฃ๐ ๐๐ง๐ค๐ข ๐๐ญ๐ฅ๐๐ง๐๐๐ฃ๐๐ by Andrew Lowe and Steve Lawless is a #CyberCanonHoF candidate ๐ tinyurl.com/326sztx9
Publisher: BCS, The Chartered Institute for IT
-
๐ ๐ก๐ฒ๐ ๐๐ผ๐ผ๐ธ ๐ฅ๐ฒ๐๐ถ๐ฒ๐(๐)! ๐
This week, not 1, but 2๏ธโฃ #CyberCanon Committee Members review ๐๐๐ ๐พ๐ค๐ข๐๐ฃ๐ ๐๐๐ซ๐ by Mustafa Suleyman with Michael Bhaskar.
This book is widely known, but to what extent does it offer meaningful value to cybersecurity professionals? ๐ค
This is exactly what Jessica Buerger and Susan Hansche help determine in their insightful reviews ๐ https://tinyurl.com/49x3aetp
๐ If our efforts assist in your decision to purchase, please use our affiliate link to support the Canon ๐ https://amzn.to/45SrpL9
-
๐จ๐ ๐ก๐ฒ๐ ๐๐ผ๐ผ๐ธ ๐ฅ๐ฒ๐๐ถ๐ฒ๐ ๐๐ฟ๐ผ๐ฝ! ๐๐จ
This week Joanna Grama submits her review of Jessica Barkerโs ๐๐๐๐ ๐๐: ๐๐๐ ๐๐๐๐ง๐๐ฉ๐จ ๐ฝ๐๐๐๐ฃ๐ ๐พ๐ฎ๐๐๐ง ๐ผ๐ฉ๐ฉ๐๐๐ ๐จ.
"๐๐ข๐ค๐ฌ๐ฆ๐ฅ ๐ฐ๐ง๐ง๐ฆ๐ณ๐ด ๐ข ๐ด๐ต๐ฐ๐ณ๐บ๐ต๐ฆ๐ญ๐ญ๐ช๐ฏ๐จ ๐ต๐ฐ๐ฑ๐ช๐ค-๐ฃ๐ข๐ด๐ฆ๐ฅ ๐ต๐ฐ๐ถ๐ณ ๐ต๐ฉ๐ณ๐ฐ๐ถ๐จ๐ฉ ๐ต๐ฉ๐ฆ ๐ธ๐ฐ๐ณ๐ญ๐ฅ ๐ฐ๐ง ๐ฉ๐ข๐ค๐ฌ๐ช๐ฏ๐จ. ๐๐ฉ๐ฆ ๐ฃ๐ฐ๐ฐ๐ฌโ๐ด ๐จ๐ณ๐ฆ๐ข๐ต๐ฆ๐ด๐ต ๐ด๐ต๐ณ๐ฆ๐ฏ๐จ๐ต๐ฉ ๐ญ๐ช๐ฆ๐ด ๐ช๐ฏ ๐ช๐ต๐ด ๐ข๐ค๐ค๐ฆ๐ด๐ด๐ช๐ฃ๐ช๐ญ๐ช๐ต๐บ. ๐๐ข๐ณ๐ฌ๐ฆ๐ณ ๐ฅ๐ฐ๐ฆ๐ด ๐ข ๐ด๐ฐ๐ญ๐ช๐ฅ ๐ซ๐ฐ๐ฃ ๐ฐ๐ง ๐ฆ๐น๐ฑ๐ญ๐ข๐ช๐ฏ๐ช๐ฏ๐จ ๐ค๐ฐ๐ฎ๐ฑ๐ญ๐ฆ๐น ๐ค๐บ๐ฃ๐ฆ๐ณ๐ด๐ฆ๐ค๐ถ๐ณ๐ช๐ต๐บ ๐ช๐ฏ๐ค๐ช๐ฅ๐ฆ๐ฏ๐ต๐ด ๐ช๐ฏ ๐ฑ๐ญ๐ข๐ช๐ฏ ๐ญ๐ข๐ฏ๐จ๐ถ๐ข๐จ๐ฆ, ๐ฎ๐ข๐ฌ๐ช๐ฏ๐จ ๐ต๐ฉ๐ช๐ด ๐ข ๐ธ๐ฐ๐ณ๐ต๐ฉ๐ธ๐ฉ๐ช๐ญ๐ฆ ๐ณ๐ฆ๐ข๐ฅ ๐ง๐ฐ๐ณ ๐จ๐ฆ๐ฏ๐ฆ๐ณ๐ข๐ญ ๐ข๐ถ๐ฅ๐ช๐ฆ๐ฏ๐ค๐ฆ๐ด ๐ฐ๐ณ ๐ค๐บ๐ฃ๐ฆ๐ณ๐ด๐ฆ๐ค๐ถ๐ณ๐ช๐ต๐บ ๐ฏ๐ฆ๐ธ๐ค๐ฐ๐ฎ๐ฆ๐ณ๐ด ๐ธ๐ช๐ด๐ฉ๐ช๐ฏ๐จ ๐ต๐ฐ ๐ญ๐ฆ๐ข๐ณ๐ฏ ๐ฎ๐ฐ๐ณ๐ฆ ๐ข๐ฃ๐ฐ๐ถ๐ต ๐ต๐ฉ๐ฆ ๐ฉ๐ช๐ด๐ต๐ฐ๐ณ๐บ ๐ฐ๐ง ๐ฉ๐ข๐ค๐ฌ๐ช๐ฏ๐จ."
๐ Be sure to read the full review ๐ https://tinyurl.com/mryyszv5
๐ If Jessica's book interests you, consider purchasing here for under $11! ๐ https://amzn.to/4n5W6DC
-
๐ฅ๐ ๐๐ผ๐ผ๐ธ ๐ฅ๐ฒ๐๐ถ๐ฒ๐ ๐๐ฎ๐!
This week, Stephanie Pirman provides a Hall of Fame recommendation for Matt Hand's ๐๐ซ๐๐๐๐ฃ๐ ๐๐ฟ๐: ๐๐๐ ๐ฟ๐๐๐๐ฃ๐๐ฉ๐๐ซ๐ ๐๐ช๐๐๐ ๐ฉ๐ค ๐ฟ๐๐๐๐๐ฉ๐๐ฃ๐ ๐๐ฃ๐๐ฅ๐ค๐๐ฃ๐ฉ ๐ฟ๐๐ฉ๐๐๐ฉ๐๐ค๐ฃ ๐๐ฎ๐จ๐ฉ๐๐ข๐จ from @nostarch.
Evading EDR provides "๐ข ๐ค๐ฐ๐ฎ๐ฑ๐ณ๐ฆ๐ฉ๐ฆ๐ฏ๐ด๐ช๐ท๐ฆ ๐ฐ๐ท๐ฆ๐ณ๐ท๐ช๐ฆ๐ธ ๐ฐ๐ง ๐๐๐๐ด ๐ง๐ณ๐ฐ๐ฎ ๐ต๐ฉ๐ณ๐ฆ๐ฆ ๐ค๐ฐ๐ณ๐ฆ ๐ฑ๐ฆ๐ณ๐ด๐ฑ๐ฆ๐ค๐ต๐ช๐ท๐ฆ๐ด: ๐ฉ๐ฐ๐ธ ๐๐๐ ๐ธ๐ฐ๐ณ๐ฌ๐ด, ๐ฉ๐ฐ๐ธ ๐ข๐ฏ ๐ข๐ต๐ต๐ข๐ค๐ฌ๐ฆ๐ณ ๐ค๐ข๐ฏ ๐ฆ๐ท๐ข๐ฅ๐ฆ ๐๐๐, ๐ข๐ฏ๐ฅ ๐ธ๐ฉ๐ข๐ต ๐ฅ๐ฆ๐ง๐ฆ๐ฏ๐ฅ๐ฆ๐ณ๐ด ๐ค๐ข๐ฏ ๐ฅ๐ฐ ๐ข๐ฃ๐ฐ๐ถ๐ต ๐ช๐ต. ๐๐๐ ๐ช๐ต๐ด๐ฆ๐ญ๐ง ๐ช๐ด ๐ฆ๐น๐ต๐ณ๐ฆ๐ฎ๐ฆ๐ญ๐บ ๐ต๐ฆ๐ค๐ฉ๐ฏ๐ช๐ค๐ข๐ญ; ๐ต๐ฉ๐ถ๐ด, ๐ต๐ฉ๐ช๐ด ๐ฃ๐ฐ๐ฐ๐ฌ ๐ช๐ด ๐ข๐ญ๐ด๐ฐ ๐ฆ๐น๐ต๐ณ๐ฆ๐ฎ๐ฆ๐ญ๐บ ๐ต๐ฆ๐ค๐ฉ๐ฏ๐ช๐ค๐ข๐ญ[...] ๐๐ฏ๐ฆ ๐ฐ๐ง ๐ต๐ฉ๐ฆ ๐ด๐ต๐ณ๐ฐ๐ฏ๐จ๐ฆ๐ด๐ต ๐ฑ๐ฐ๐ช๐ฏ๐ต๐ด ๐ฐ๐ง โ๐๐ท๐ข๐ฅ๐ช๐ฏ๐จ ๐๐๐โ ๐ช๐ด ๐ฉ๐ฐ๐ธ ๐๐ข๐ต๐ต ๐๐ข๐ฏ๐ฅ ๐ฅ๐ช๐ด๐ต๐ช๐ญ๐ญ๐ด ๐ต๐ฉ๐ฆ๐ด๐ฆ ๐ค๐ฐ๐ฎ๐ฑ๐ญ๐ฆ๐น ๐ต๐ฆ๐ค๐ฉ๐ฏ๐ช๐ค๐ข๐ญ ๐ต๐ฐ๐ฑ๐ช๐ค๐ด ๐ช๐ฏ๐ต๐ฐ ๐ฅ๐ช๐จ๐ฆ๐ด๐ต๐ช๐ฃ๐ญ๐ฆ ๐ฑ๐ณ๐ฐ๐ด๐ฆ."
Full review ๐https://tinyurl.com/2xrx9vtj
---
๐จ If Matt's book interests you, please consider purchasing here ๐ https://amzn.to/4m1vLpCFor the first time, the #CyberCanon has Amazon Affiliate links to purchase titles in the Canon library! Same cost to you, but a few ๐ต goes to the Canon to help keep us up and running. ๐
#CyberCanonHoFCandidate #Cybersecurity #CybersecurityBooks #EDR
-
At #DEFCON, we spent time talking with Kurtis Minder and Jon DiMaggio, industry leaders in cyber threat intelligence. Both are authors of books on the Canon's list to review. We came away quite impressed, especially by their immense passion for fighting cyber crime.
Jon also led a boisterous session with John Fokker in front of a packed crowd of hundreds just moments after Jon released Volume 7 of Analyst1's Ransomware Diaries. Definitely a highlight of the week!
Read more about this story and others from #HackerSummerCamp in our August Newsletter ๐ https://tinyurl.com/canon-aug25-nl
-
Our August Newsletter ๐๏ธ is now live featuring #CyberCanon Hall of Fame winners, candidates, and cyber author-focused recaps from #BlackHat and #defcon.
Definitely worth taking a peek ๐ https://tinyurl.com/canon-aug25-nl
-
๐จ๐ ๐๐ผ๐ผ๐ธ ๐ฅ๐ฒ๐๐ถ๐ฒ๐ ๐๐ฎ๐! ๐๐จ
This week, Edwin Shuttleworth provides a review for Michal Zalewski's ๐๐๐ก๐๐ฃ๐๐ ๐ค๐ฃ ๐ฉ๐๐ ๐๐๐ง๐: ๐ผ ๐๐๐๐ก๐ ๐๐ช๐๐๐ ๐ฉ๐ค ๐๐๐จ๐จ๐๐ซ๐ ๐๐๐๐ค๐ฃ๐ฃ๐๐๐จ๐จ๐๐ฃ๐๐ ๐๐ฃ๐ ๐๐ฃ๐๐๐ง๐๐๐ฉ ๐ผ๐ฉ๐ฉ๐๐๐ ๐จ. This 2005 book from @nostarch is still well worth the read today.
From Edwin's review: "[I] highly recommend it to practitioners who have an appreciation for historical context, those looking for inspiration from the past, and anyone working with embedded devices where some of these problems are occasionally still present."
Full review ๐https://tinyurl.com/323ytuwk
-
๐ ๐๐๐ด๐๐๐ ๐ฅ๐ฒ๐๐ถ๐ฒ๐ ๐๐ผ๐บ๐บ๐ถ๐๐๐ฒ๐ฒ ๐ ๐ฒ๐ฒ๐๐ถ๐ป๐ด ๐๐ถ๐ด๐ต๐น๐ถ๐ด๐ต๐๐ ๐
We had our monthly review committee meeting this week and the Canon keeps getting better! Here are some quick highlights:
๐ Stephanie Pirman and Joanna Grama led very engaged discussions of their detailed reviews.
๐ Trying out new Hall of Fame scoring criteria
๐ Welcomed 4 new committee members
๐ 50 new reviews are currently staged with more arriving weekly!#CyberCanon #CyberCanonHoF #CybersecurityBooks #EDR #cyberespionage
-
๐ ๐ ๐ก๐ฒ๐ ๐๐ผ๐ผ๐ธ ๐ฅ๐ฒ๐๐ถ๐ฒ๐! ๐ ๐
โ๐๐ค๐ฌ ๐ ๐๐ค๐ ๐ฝ๐๐ฃ๐ ๐จ is an engaging, fast-paced read that offers a firsthand look into the world of physical penetration testing. Equal parts storytelling, security insight and personal reflection, the book aims to inform and entertain.โ
- - Walt Powell, #CyberCanon Committee Member, in this weekโs book review
โThe man laid in a ditch all night just to time the rotation of a high-tech door. Who does that? Each chapter is a new entry in the โyouโve got to be kidding meโ genre of security testing.โ
See much more of Waltโs review of ๐คก FC aka Freakyclown (@_freakyclown_ ) very fun and thought provoking book ๐ https://tinyurl.com/58m6becn
-
๐จ๐ ๐ก๐ฒ๐ ๐๐ผ๐ผ๐ธ ๐ฅ๐ฒ๐๐ถ๐ฒ๐ ๐๐ฟ๐ผ๐ฝ! ๐๐จ
This week, Steve Winterfeld provides us with some great insights on โ๐ฟ๐๐ง๐ ๐๐๐ง๐: ๐๐๐ ๐๐ฃ๐๐ง๐๐๐๐๐ก๐ ๐๐ง๐ช๐ ๐๐ฉ๐ค๐ง๐ฎ ๐ค๐ ๐ฉ๐๐ ๐๐๐ง๐๐๐จ๐ฉ ๐๐ฉ๐๐ฃ๐ ๐๐ฅ๐๐ง๐๐ฉ๐๐ค๐ฃ ๐๐ซ๐๐งโ
by Joseph Cox ( @josephcox )In Steve's words, the book is "a true crime thriller that tells the story of the FBIโs Operation Trojan Shield from 2018 to 2021. As cybersecurity professionals study the cyber criminal ecosystem, there are times we need to take a look at the broader criminal economy. The use of cellphones to facilitate secure criminal operations is a great example. Studying this activity allows us to see where it can intersect with protecting our own organizations. I strongly recommend this niche book to provide a more well-rounded understanding of hackers and criminals in general."
Full review ๐ https://tinyurl.com/48r3nzek
-
๐ฒ ๐ ๐๐'๐ ๐๐ผ๐ผ๐ธ ๐ฅ๐ฒ๐๐ถ๐ฒ๐ ๐๐ฎ๐! ๐๐ฒ
"Chris Hughes and Nikki Robinson provide a valuable contribution to our profession with ๐๐ง๐ง๐ฆ๐ค๐ต๐ช๐ท๐ฆ ๐๐ถ๐ญ๐ฏ๐ฆ๐ณ๐ข๐ฃ๐ช๐ญ๐ช๐ต๐บ ๐๐ข๐ฏ๐ข๐จ๐ฆ๐ฎ๐ฆ๐ฏ๐ต: ๐๐ข๐ฏ๐ข๐จ๐ช๐ฏ๐จ ๐๐ช๐ด๐ฌ ๐ช๐ฏ ๐ต๐ฉ๐ฆ ๐๐ถ๐ญ๐ฏ๐ฆ๐ณ๐ข๐ฃ๐ญ๐ฆ ๐๐ช๐จ๐ช๐ต๐ข๐ญ ๐๐ค๐ฐ๐ด๐บ๐ด๐ต๐ฆ๐ฎ. The book offers an approachable overview of one of our industryโs most challenging domains โ vulnerability management."
-- #CyberCanon Review Committee Member Matt Stamper
Full Review ๐ https://tinyurl.com/36dw34an
-
๐ ๐ Book Review Day!
You're likely consumed with the AI hype train ๐ค ๐, but do know the history of what led to today's world of AI bots and agents?
University of Oxford's Ashall Professor of the Foundations of Artificial Intelligence, Michael Wooldridge, certainly does! He has written over 500 papers and 9 books on the topic.
๐Check out Rick Howard's review of ๐ ๐๐ณ๐ช๐ฆ๐ง ๐๐ช๐ด๐ต๐ฐ๐ณ๐บ ๐ฐ๐ง ๐๐ณ๐ต๐ช๐ง๐ช๐ค๐ช๐ข๐ญ ๐๐ฏ๐ต๐ฆ๐ญ๐ญ๐ช๐จ๐ฆ๐ฏ๐ค๐ฆ: ๐๐ฉ๐ข๐ต ๐๐ต ๐๐ด, ๐๐ฉ๐ฆ๐ณ๐ฆ ๐๐ฆ ๐๐ณ๐ฆ, ๐ข๐ฏ๐ฅ ๐๐ฉ๐ฆ๐ณ๐ฆ ๐๐ฆ ๐๐ณ๐ฆ ๐๐ฐ๐ช๐ฏ๐จ.
tinyurl.com/2dkzax3z
@raceBannon99 | #CyberCanon #Cybersecurity #CybersecurityBooks #AI #History
-
Kim Zetter's (@kimzetter) 2014 book ๐๐ฐ๐ถ๐ฏ๐ต๐ฅ๐ฐ๐ธ๐ฏ ๐ต๐ฐ ๐ก๐ฆ๐ณ๐ฐ ๐๐ข๐บ was one of the first inducted into the Cybersecurity Canon Hall of Fame ๐. The book unpacks the story of #Stuxnet and was a first of its kind to turn a real-world cyber espionage operation ๐ตโโ๏ธ into a gripping thriller of a book.
Last week, Kim joined #CyberCanon President Rick Howard at the ๐๐ฆ๐ฅ๐ฏ๐ฆ๐ด๐ฅ๐ข๐บ ๐๐ฆ๐ฆ ๐๐ณ๐ข๐ฎ gathering for a candid discussion and Q&A with an eager group of about 40 cybersecurity leaders.
This event was coordinated before the recent Operation Midnight Hammer attack, which made the timing for this Stuxnet conversation impeccable. Many members attributed this to the uncanny foresight of Wee Dram host J. Carlos Vega, CISSP. ๐
Book review ๐ https://tinyurl.com/mubj2z4n
#CyberCanonHoF #Cybersecurity #CybersecurityBooks #CyberEspionage
-
"If thereโs one book Iโve consistently recommended to those peering into the cybersecurity industry from the outside, itโs Jessica Barker's 'Confident Cyber Security.' I do so not just because it simplifies the complex but because it respects the readerโs intelligence while dismantling the harmful myths that gatekeep our field."
-- Kevin Magee, Cybersecurity Canon Review Committee MemberNew week, new book review to check out. And this one is getting a Hall of Fame nomination...
#CybersecurityBooks #SecuirtyAwareness #CyberCanon #CyberCanonHoFCandidate
-
๐จ๐ New Book Review Drop! ๐๐จ
Investments Unlimited: A Novel About DevOps, Security, Audit Compliance, and Thriving in the Digital Age
https://tinyurl.com/cybercanon252406
โThroughout the book, the authors successfully model real-world challenges in ways that resonate. Whether itโs resistance from entrenched managers, knowledge silos, or the stress of an audit gone wrong, readers will find themselves nodding along with the scenarios.โ - Matthew Sharp, #CyberCanon Review Committee member
Investments Unlimited is authored by a team of 9 leaders in the industry:
Helen Beal, Bill Bensing, Jason Cox, Michael Edenzon, Tapabrata "Topo" Pal, Caleb Queern, John Rzeszotarski, Andrรฉs Vega, and John Willis. Whether you're in Cybersecurity, Governance, or DevOps, this @itrevolution book is worth your time.๐ Check out Matthew's review and let us know your thoughts. Have you read it? Are you going to check it out? Tag someone who think may appreciate it.
#CyberCanon #Cybersecurity #Books #DevOps #Compliance #BookReview
-
๐ The #CyberCanon Newsletter Has Landed! ๐๏ธ
Weโre excited to announce the launch of our #Substack newsletter. It's your front-row seat to the best writing in #cybersecurity.
Subscribe if you want:
โข Fresh reviews of must-read cybersecurity books
โข Updates to our Hall of Fame collection (yes, books have an HoF - ours)
โข Curated insights from our Committee that represents leaders across industry, academia, and governmentWhether youโre building a security program, mentoring the next generation, or just love a good bookโฆ weโve got something for you.
-
"I experienced tremendous technical and cultural challenges during our implementation and only wish that we had a book like this to navigate us."
๐ฅIt's Tuesday-review-day here at the #CyberCanon.๐ฅ
A new review by committee member @iSandipD Dholakia has been added to the Canon library. This is one you may not have heard of, but you definitely should consider adding it to your bookshelves as Sandip is recommending it for the Hall of Fame!
"Cybersecurity Readiness: A Holistic and High-Performance Approach" by Dr. Dave Chatterjee, Ph.D. is a must-read book to combat modern-day cyber threats. The Duke Professor and podcast host has written a comprehensive guide to understanding and implementing effective cybersecurity measures to detect, protect and respond to cyberattacks in organizations. See the review link in the comments.
Check out the full review here: https://cybercanon.org/cybersecurity-readiness-a-holistic-and-high-performance-approach/
-
๐ Books: The Original OSINT ๐
Over the weekend, a member of our team attended the Layer 8 Conference, an OSINT and Social Engineering focused event.
Dr. Brian Nussbaumโs interesting talk was right up our alley regarding OSINT National History referencing various books from the Canon review library such as "Spies, Lies, and Algorithms" and "Tracers in the Dark". We learned after his talk that the University at Albany professor is a big fan of ours and provides #CyberCanon as a resource for his students. ๐
There were also sessions by well respected #OSINT industry experts and authors Rae Baker and Cynthia Hetherington. Rae even had a book signing for her book "Deep Dive", which is an upcoming addition to the Canon library.
The main take-away of the day is the OSINT/SE community is incredibly strong with a heightened focus on ethics and helping others. This vibe was lead by organizer, Patrick Laverty, and clearly evident through the great group of presenters including Alethe Denis, Ritu Gill, Micah Hoffman, Griffin Glynn, Josh Hoff, Becky Gaylord, Rebecca Markwick, and many more. Great day and strongly recommend joining the 2026 edition.