Cyber Threat Intelligence
ca. € 79,95
Vorbestellbar
Lieferbar ab 07.09.2026
ca. € 79,95
Vorbestellbar
Verfügbar ab 07.09.2026
Rheinwerk Computing, ISBN 978-1-4932-2813-3
E-Book-Formate: PDF, EPUB, Online
Rheinwerk Computing, ISBN 978-1-4932-2814-0
A strong cybersecurity program needs to stay informed. With this all-in-one guide, master both the theory and practice of cyber threat intelligence (CTI). Walk through the intelligence lifecycle, and then get up to speed on the latest tools and technologies for intelligence gathering, adversary profiling, network and host-based forensics, threat hunting, and more. Follow practical examples that showcase key CTI strategies in modern security operations.
- Understand the cyber intelligence lifecycle and get to know your sources: OSINT, HUMINT, and SIGINT
- Develop threat models and conduct forensic analysis of network data and host systems to detect malicious behavior
- Integrate CTI into incident response, explore threat hunting, and see how automation can improve your CTI workflows
In this book, you’ll learn about:
-
Frameworks and Fundamentals
Learn what cyber threat intelligence is and how it works in the real world. Understand the full intelligence lifecycle, from planning to feedback, and the different sources of intelligence, from OSINT to SIGINT.
-
Threat Modeling, Analysis, and Response
Master CTI tools and techniques. Apply the MITRE ATT&CK framework to model threats, turn network and host data into actionable intelligence, design custom threat detection logic, implement automation with MISP and OpenCTI, and more.
-
Best Practices and Case Studies
Explore real-world workflows and practical examples. See how intelligence supports incident response, threat hunting, and automation, and learn proven methods for handling feed quality, enrichment, and operational integration.
Highlights include:
- Cyber intelligence lifecycle
- Open-source intelligence (OSINT)
- Human intelligence (HUMINT)
- Signals intelligence (SIGINT)
- Intelligence gathering
- Adversary profiling
- Threat intelligence feed integrity
- Network forensics
- Host-based forensics
- Incident response
- Threat hunting
- Automation