Description
Book SynopsisSecure your applications with help from your favorite Jedi masters In Threats: What Every Engineer Should Learn From Star Wars, accomplished security expert and educator Adam Shostack delivers an easy-to-read and engaging discussion of security threats and how to develop secure systems. The book will prepare you to take on the Dark Side as you learnin a structured and memorable wayabout the threats to your systems. You'll move from thinking of security issues as clever one-offs and learn to see the patterns they follow. This book brings to light the burning questions software developers should be asking about securing systems, and answers them in a fun and entertaining way, incorporating cybersecurity lessons from the much-loved Star Wars series. You don't need to be fluent in over 6 million forms of exploitation to face these threats with the steely calm of a Jedi master. You'll also find: Understandable and memorable introductions to the most important threats that every engineer should knowStraightforward software security frameworks that will help engineers bake security directly into their systemsStrategies to align large teams to achieve application security in today's fast-moving and agile worldStrategies attackers use, like tampering, to interfere with the integrity of applications and systems, and the kill chains that combine these threats into fully executed campaignsAn indispensable resource for software developers and security engineers, Threats: What Every Engineer Should Learn From Star Wars belongs on the bookshelves of everyone delivering or operating technology: from engineers to executives responsible for shipping secure code.
Table of ContentsPreface xi
Introduction xv
1 Spoofing and Authenticity 1
2 Tampering and Integrity 41
3 Repudiation and Proof 63
4 Information Disclosure and Confidentiality 95
5 Denial of Service and Availability 131
6 Expansion of Authority and Isolation 151
7 Predictability and Randomness 187
8 Parsing and Corruption 211
9 Kill Chains 249
Epilogue 291
Glossary 295
Bibliography 303
Story Index 317
Index 323