<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Cybersecurity on Notes from the Rabbit Hole</title><link>https://magnus919.com/tags/cybersecurity/</link><description>Recent content in Cybersecurity on Notes from the Rabbit Hole</description><generator>Hugo</generator><language>en</language><copyright>© [Magnus Hedemark](https://github.com/magnus919)</copyright><lastBuildDate>Tue, 06 May 2025 00:00:00 -0400</lastBuildDate><atom:link href="https://magnus919.com/tags/cybersecurity/index.xml" rel="self" type="application/rss+xml"/><item><title>Key Findings from the 2025 Verizon Data Breach Investigations Report</title><link>https://magnus919.com/2025/05/key-findings-from-the-2025-verizon-data-breach-investigations-report/</link><pubDate>Tue, 06 May 2025 00:00:00 -0400</pubDate><guid>https://magnus919.com/2025/05/key-findings-from-the-2025-verizon-data-breach-investigations-report/</guid><description>&lt;h1 id="is-your-business-prepared-for-todays-cybersecurity-threats">Is Your Business Prepared for Today&amp;rsquo;s Cybersecurity Threats?&lt;/h1>
&lt;p>Verizon has released its 18th annual Data Breach Investigations Report (DBIR), analyzing 22,052 security incidents, including 12,195 confirmed data breaches&lt;sup id="fnref:1">&lt;a href="#fn:1" class="footnote-ref" role="doc-noteref">1&lt;/a>&lt;/sup>. This comprehensive analysis reveals critical trends that every business should understand to better protect their data and operations.&lt;/p>
&lt;p>&lt;strong>What keeps other CEOs up at night? Read on to discover the most pressing cybersecurity threats of 2025.&lt;/strong>&lt;/p>
&lt;p>You can &lt;a href="https://www.verizon.com/business/resources/reports/dbir/">download the full 2025 DBIR report from Verizon&amp;rsquo;s website&lt;/a>.&lt;/p></description></item><item><title>Humble Book Bundle: Ultimate Cybersecurity Career by Packt</title><link>https://magnus919.com/notes/humble-book-bundles/ultimate-cybersecurity-career-packt/</link><pubDate>Sun, 09 Feb 2025 00:00:00 +0000</pubDate><guid>https://magnus919.com/notes/humble-book-bundles/ultimate-cybersecurity-career-packt/</guid><description>&lt;h2 id="about-the-bundle">About the Bundle&lt;/h2>
&lt;p>This bundle includes the following books:&lt;/p>
&lt;ul>
&lt;li>&lt;a href="#Microsoft-Defender-for-Identity-in-Depth:-An-exhaustive-guide-to-ITDR,-breach-prevention,-and-cyberattack-response">Microsoft Defender for Identity in Depth: An exhaustive guide to ITDR, breach prevention, and cyberattack response&lt;/a> by Pierre Thoor&lt;/li>
&lt;li>&lt;a href="#Ghidra-Software-Reverse-Engineering-for-Beginners:-Master-the-art-of-debugging,-from-understanding-code-to-mitigating-threats-,-Second-Edition">Ghidra Software Reverse-Engineering for Beginners: Master the art of debugging, from understanding code to mitigating threats , Second Edition&lt;/a> by David Álvarez Pérez, Ravikant Tiwari&lt;/li>
&lt;li>&lt;a href="#AWS-Certified-Security---Specialty-%28SCS-C02%29-Exam-Guide---Second-Edition">AWS Certified Security - Specialty (SCS-C02) Exam Guide - Second Edition&lt;/a> by Adam Book, Stuart Scott&lt;/li>
&lt;li>&lt;a href="#Practical-Cybersecurity-Architecture-:-A-guide-to-creating-and-implementing-robust-designs-for-cybersecurity-architects">Practical Cybersecurity Architecture : A guide to creating and implementing robust designs for cybersecurity architects&lt;/a> by Ed Moyle, Diana Kelley&lt;/li>
&lt;li>&lt;a href="#Effective-Threat-Investigation-for-SOC-Analysts:-The-ultimate-guide-to-examining-various-threats-and-attacker-techniques-using-security-logs">Effective Threat Investigation for SOC Analysts: The ultimate guide to examining various threats and attacker techniques using security logs&lt;/a> by Mostafa Yahia&lt;/li>
&lt;li>&lt;a href="#Enhancing-Your-Cloud-Security-with-a-CNAPP-Solution:-Unlock-the-full-potential-of-Microsoft-Defender-for-Cloud-to-fortify-your-cloud-security">Enhancing Your Cloud Security with a CNAPP Solution: Unlock the full potential of Microsoft Defender for Cloud to fortify your cloud security&lt;/a> by Yuri Diogenes&lt;/li>
&lt;li>&lt;a href="#The-OSINT-Handbook:-A-practical-guide-to-gathering-and-analyzing-online-information">The OSINT Handbook: A practical guide to gathering and analyzing online information&lt;/a> by Dale Meredith&lt;/li>
&lt;li>&lt;a href="#Zero-Trust-Overview-and-Playbook-Introduction:-Guidance-for-business,-security,-and-technology-leaders-and-practitioners">Zero Trust Overview and Playbook Introduction: Guidance for business, security, and technology leaders and practitioners&lt;/a> by Mark Simos, Nikhil Kumar&lt;/li>
&lt;li>&lt;a href="#Adversarial-AI-Attacks,-Mitigations,-and-Defense-Strategies:-A-cybersecurity-professional%27s-guide-to-AI-attacks,-threat-modeling,-and-securing-AI-with-MLSecOps">Adversarial AI Attacks, Mitigations, and Defense Strategies: A cybersecurity professional&amp;rsquo;s guide to AI attacks, threat modeling, and securing AI with MLSecOps&lt;/a> by John Sotiropoulos&lt;/li>
&lt;li>&lt;a href="#Incident-Response-for-Windows:-Adapt-effective-strategies-for-managing-sophisticated-cyberattacks-targeting-Windows-systems">Incident Response for Windows: Adapt effective strategies for managing sophisticated cyberattacks targeting Windows systems&lt;/a> by Tykushin, Ostrovskaya&lt;/li>
&lt;li>&lt;a href="#Hack-the-Cybersecurity-Interview:-A-complete-interview-preparation-guide-for-jumpstarting-your-cybersecurity-career">Hack the Cybersecurity Interview: A complete interview preparation guide for jumpstarting your cybersecurity career&lt;/a> by Kenneth Underhill, Christophe Foulon, Tia Hopkins&lt;/li>
&lt;li>&lt;a href="#Pentesting-Active-Directory-and-Windows-based-Infrastructure:-A-comprehensive-practical-guide-to-penetration-testing-Microsoft-infrastructure">Pentesting Active Directory and Windows-based Infrastructure: A comprehensive practical guide to penetration testing Microsoft infrastructure&lt;/a> by Denis Isakov&lt;/li>
&lt;li>&lt;a href="#Python-for-Security-and-Networking:-Leverage-Python-modules-and-tools-in-securing-your-network-and-applications-,-Third-Edition">Python for Security and Networking: Leverage Python modules and tools in securing your network and applications , Third Edition&lt;/a> by José Manuel Ortega&lt;/li>
&lt;li>&lt;a href="#CISA-%e2%80%93-Certified-Information-Systems-Auditor-Study-Guide:-Aligned-with-the-CISA-Review-Manual-2019-to-help-you-audit,-monitor,-and-assess-information-systems">CISA – Certified Information Systems Auditor Study Guide: Aligned with the CISA Review Manual 2019 to help you audit, monitor, and assess information systems&lt;/a> by Hemang Doshi&lt;/li>
&lt;li>&lt;a href="#Mastering-Microsoft-365-Defender:-Implement-Microsoft-Defender-for-Endpoint,-Identity,-Cloud-Apps,-and-Office-365-and-respond-to-threats">Mastering Microsoft 365 Defender: Implement Microsoft Defender for Endpoint, Identity, Cloud Apps, and Office 365 and respond to threats&lt;/a> by Ru Campbell, Hedberg&lt;/li>
&lt;li>&lt;a href="#Cryptography-Algorithms:-A-guide-to-algorithms-in-blockchain,-quantum-cryptography,-zero-knowledge-protocols,-and-homomorphic-encryption">Cryptography Algorithms: A guide to algorithms in blockchain, quantum cryptography, zero-knowledge protocols, and homomorphic encryption&lt;/a> by Massimo Bertaccini&lt;/li>
&lt;li>&lt;a href="#Automating-Security-Detection-Engineering:-A-hands-on-guide-to-implementing-Detection-as-Code">Automating Security Detection Engineering: A hands-on guide to implementing Detection as Code&lt;/a> by Dennis Chow&lt;/li>
&lt;li>&lt;a href="#PowerShell-Automation-and-Scripting-for-Cybersecurity:-Hacking-and-defense-for-red-and-blue-teamers">PowerShell Automation and Scripting for Cybersecurity: Hacking and defense for red and blue teamers&lt;/a> by Miriam C. Wiesner&lt;/li>
&lt;li>&lt;a href="#The-Ultimate-Kali-Linux-Book:-Perform-advanced-penetration-testing-using-Nmap,-Metasploit,-Aircrack-ng,-and-Empire-,-Second-Edition">The Ultimate Kali Linux Book: Perform advanced penetration testing using Nmap, Metasploit, Aircrack-ng, and Empire , Second Edition&lt;/a> by Glen D. Singh&lt;/li>
&lt;li>&lt;a href="#Security-Monitoring-with-Wazuh:-A-hands-on-guide-to-effective-enterprise-security-using-real-life-use-cases-in-Wazuh">Security Monitoring with Wazuh: A hands-on guide to effective enterprise security using real-life use cases in Wazuh&lt;/a> by Rajneesh Gupta&lt;/li>
&lt;li>&lt;a href="#Resilient-Cybersecurity:-Reconstruct-your-defense-strategy-in-an-evolving-cyber-world">Resilient Cybersecurity: Reconstruct your defense strategy in an evolving cyber world&lt;/a> by Mark Dunkerley&lt;/li>
&lt;/ul>
&lt;h1 id="my-approach">My approach&lt;/h1>
&lt;p>I had a good conversation with ChatGPT &lt;code>gpt-4o&lt;/code> about this bundle and how I could think about what&amp;rsquo;s important to read given my role and responsibilities. Here&amp;rsquo;s the most salient excerpt from its assessment:&lt;/p></description></item></channel></rss>