Interesting Books
Last updated
Was this helpful?
Last updated
Was this helpful?
Here are some of the best books to learn, deepen or structure your skills in penetration testing, red teaming, and offensive security.
Disclaimer: As an Amazon Associate, I earn from qualifying purchases. This helps support this GitBook project at no extra cost to you.
The go-to manual for web app pentesters. Covers XSS, SQLi, logic flaws, and more.
Real-world offensive security tactics for red teamers and internal pentesters.
Great intro with labs, tools, and step-by-step walkthroughs.
Focused on real-world enterprise simulations and stealth attacks.
A crash course in web API security testing that will prepare you to penetration-test APIs, reap high rewards on bug bounty programs, and make your own APIs more secure.
This hands-on book teaches penetration testers how to identify vulnerabilities in apps that use GraphQL, a data query and manipulation language for APIs adopted by major companies like Facebook and GitHub.
Learn how to perform reconnaissance on a target, how to identify vulnerabilities, and how to exploit them
Learn about the most common types of bugs like cross-site scripting, insecure direct object references, and server-side request forgery.
Compact reference packed with useful commands and tactics.
Learn how to gather data using OSINT tools and strategies.
Psychological aspects of hacking, pretexting, and phishing.
In-depth on SMB, RPC, and lower-level protocol exploitation.
For advanced post-exploitation and forensic analysis on Windows systems.
A comprehensive guide to penetration testing cloud services deployed in Microsoft Azure, the popular cloud computing service provider used by numerous companies large and small.
Get to grips with cloud exploits, learn the fundamentals of cloud security, and secure your organization's network by pentesting AWS, Azure, and GCP effectively