Threat-Aware Engineering: A Hands-On Cybersecurity Guide to Modern Software and AI Agents
Idioma: inglés
Editorial: Independently published, 2026
- Tapa blanda
- Nuevo

Librería: California Books, Miami, FL, Estados Unidos de AmericaCalifornia Books
Vendedor de IberLibro desde 27 de octubre de 2023
Condición: Nuevo
EUR 28,37
Cantidad disponible: Más de 20 disponibles
Añadir al carritoDescripción del artículo del vendedor
Print on Demand.
N° de ref. del artículo I-9798193859277
- Título
- Threat-Aware Engineering: A Hands-On Cybersecurity Guide to Modern Software and AI Agents
- Autor
- Cipher, Victor
- Editorial
- Independently published
- Año de publicación
- 2026
- Estado
- New
- Encuadernación
- Encuadernación de tapa blanda
- Idioma
- inglés
- ISBN 13
- 9798193859277
Every threat modeling book on the market was written before AI agents could call APIs, poison their own memory, or manipulate each other into leaking data. This book closes that gap.
If you build software today, you're not just defending against SQL injection and misconfigured cloud storage. You're defending against prompt injection, tool poisoning, and AI agents that can be socially engineered. Most security books cover one side of this or the other. This one covers both, so you're not stitching together a strategy from books that don't talk to each other.
What makes this different
Readers of the current bestsellers in this space consistently say the same thing: too theoretical, not enough hands-on guidance, and threat models that go stale the moment the system ships. This book fixes that. Every chapter pairs a concept with a real, applied example, what it looks like in an actual codebase or pipeline, and what you'd do differently because of it. It references real incidents: Equifax, Capital One, SolarWinds, and Log4Shell, so you're learning from what actually happened.
What you'll learn
You'll start with foundations: thinking like an attacker, mapping your real attack surface, and building a threat model that doesn't collect dust the moment you ship. From there, the book moves through the layers that matter most in production:
Secure architecture and least privilege, and why it's the highest-leverage decision most teams get wrong. Identity, authentication, and access control, including the authorization mistake ranked among the most damaging findings in real-world API assessments. Input handling, injection attacks, and API security, with validation patterns that eliminate entire vulnerability classes by design. Dependency and supply chain risk, covering what happened with Log4Shell and why most organizations couldn't answer "are we affected" fast enough. Cloud, container, and infrastructure security, including the mistakes that turn a contained breach into a headline. Secure coding, testing, logging, monitoring, and incident response, the operational backbone that decides whether a compromise stays a non-event or becomes a disaster.
Then the book covers what almost nothing else in the market does: securing AI-integrated software and autonomous agents. How prompt injection actually works, how indirect injection through documents and web content creates a new attack surface, how to design agents with genuinely limited authority instead of trusting a model's judgment, and how to secure agent tools, memory, and external connections.
Who this is for
Written for software engineers, architects, DevSecOps practitioners, and technical leads responsible for building systems that withstand real-world pressure, not just pass a compliance checklist. Whether you're securing a traditional web application or your team's first AI agent deployment, this book gives you a working method: identify what could go wrong, understand why, and turn that understanding into a concrete, verified engineering decision.
What you'll walk away with
A practical, repeatable threat modeling process you can run on a real sprint schedule. A concrete understanding of the vulnerability classes behind most real-world breaches, and the specific fixes for each. A framework for securing AI agents built around independent authorization checks, limited authority, and layered defense, not hoping the model behaves. A mindset shift: security stops being a phase bolted onto development and becomes a normal part of how you already build software.
Software will keep getting attacked. This book makes sure yours is ready for it.
“Sinopsis” puede pertenecer a otra edición de este título.
California Books
Miami, FL, Estados Unidos de America
Vendedor de IberLibro desde 27 de octubre de 2023
Tarifas de envío en Estados Unidos de America
| Artículo | De 3 a 7 días hábiles | De 2 a 5 días hábiles |
|---|---|---|
| Primer artículo | EUR 0,00 | EUR 10,66 |
Métodos de pago
Descripción de la tienda
We have 20 years experience selling books worldwide! Friendly customer support. Your satisfaction guaranteed!
Especialidad
All authorized categoriesInformación empresarial del vendedor
Miramar International Services LLC
FL, Estados Unidos de America
Derecho al desistimiento
Si es un consumidor, puede rescindir el contrato de acuerdo con lo siguiente. Por consumidor se entiende cualquier persona física que actúe con fines ajenos a su actividad comercial, empresarial, oficio o profesión.
Información sobre el derecho de desistimiento
Derecho legal de desistimiento
Tiene derecho a rescindir este contrato en un plazo de 14 días sin dar ningún motivo.
El periodo de desistimiento vencerá a los 14 días desde que usted, o un tercero que no sea el transportista e indicado por usted, adquiera la posesión física del último bien o del último lote o pieza.
Para ejercer el derecho de desistimiento, complete de forma electrónica y envíe una declaración clara en nuestro sitio web, desde "Mis compras" en "Mi cuenta". Le enviaremos sin demora un acuse de recibo de dicho desistimiento a través de un soporte duradero (por ejemplo, por correo electrónico).
Para cumplir con el plazo de desistimiento, basta con que envíe su comunicación relativa al ejercicio del derecho de desistimiento antes de que venza el periodo de desistimiento.
Efectos del desistimiento
Si rescinde este contrato, le reembolsaremos todos los pagos que hayamos recibido de usted, incluidos los gastos de envío (excepto los gastos adicionales que surjan si elige un tipo de envío que no sea el tipo de envío estándar más económico que ofrecemos).
Podemos hacer una deducción del reembolso por la pérdida de valor de cualquier bien suministrado, si la pérdida es el resultado de una manipulación innecesaria por su parte.
Efectuaremos el reembolso sin demoras indebidas y, a más tardar, 14 días después de que se nos informe de su decisión de rescindir este contrato.
Efectuaremos el reembolso utilizando el mismo medio de pago que utilizó para la transacción inicial, a menos que haya acordado expresamente lo contrario; en cualquier caso, no incurrirá en ningún cargo como resultado de dicho reembolso.
Podremos retener el reembolso hasta que hayamos recibido los bienes o hasta que nos haya presentado una prueba de que los ha devuelto, lo que ocurra primero.
Deberá devolver los bienes o entregarlos a California Books, Fort Wayne, Indiana, U.S.A., sin demoras indebidas y, en cualquier caso, en un plazo máximo de 14 días a partir del día en que nos comunique su desistimiento del presente contrato. El plazo se cumple si devuelve la mercancía antes de que venza el periodo de 14 días. Tendrá que asumir los gastos directos de devolución de los bienes. Usted solo es responsable de la disminución del valor de los bienes como resultado de una manipulación distinta a la necesaria para establecer la naturaleza, las características y el funcionamiento de los bienes.
Excepciones al derecho de desistimiento
El derecho de desistimiento no se aplica a lo siguiente:
- La entrega de periódicos, diarios o revistas, con la excepción de los contratos de suscripción; y
- El suministro de contenido digital que no se proporcione en un soporte tangible (por ejemplo, en un CD o DVD) si, al hacer el pedido, aceptó que podíamos empezar a entregarlo y que no podría desistir una vez iniciada la entrega.