๐Ÿ—ž๏ธ ๐•น๐–Š๐–œ๐–˜๐–‘๐–Š๐–™๐–™๐–Š๐–— ๐•ด๐–“๐–ˆ๐–”๐–’๐–Ž๐–“๐–Œ ๐Ÿ—ž๏ธ

Be sure to subscribe to the #CyberCanon #Newsletter to be informed of our latest reviews, Hall of Fame book highlights, and more. In this edition, we give a special shout-out to our friends at #TheCyberNest.๐Ÿชน

https://cybercanon.substack.com/p/cybercanon-april-2026-part-2

#CybersecurityBooks

๐Ÿ›ก๏ธ ๐—ง๐—ผ๐—ฑ๐—ฎ๐˜†'๐˜€ ๐—ฅ๐—ฒ๐˜ƒ๐—ถ๐—ฒ๐˜„! ๐Ÿงฑ

This week, our #CyberCanon Committee provides you with Debra Baker's ๐˜ผ ๐˜พ๐™„๐™Ž๐™Š ๐™‚๐™ช๐™ž๐™™๐™š ๐™ฉ๐™ค ๐˜พ๐™ฎ๐™—๐™š๐™ง ๐™๐™š๐™จ๐™ž๐™ก๐™ž๐™š๐™ฃ๐™˜๐™š.

Read Jack Freund, Ph.D.'s assessment ๐Ÿ‘‰ https://cybercanon.org/a-ciso-guide-to-cyber-resilience/

#CybersecurityBooks #CISO #CyberResilience

โœ๏ธ ๐—ฅ๐—ฒ๐˜ƒ๐—ถ๐—ฒ๐˜„ ๐——๐—ฟ๐—ผ๐—ฝ๐—ฝ๐—ฒ๐—ฑ ๐Ÿช–

We have back-to-back reviews from Larry Pesce. Today, Larry offers his insights on Chris Miller's widely well-regarded book, ๐˜พ๐™๐™ž๐™ฅ ๐™’๐™–๐™ง, from a cyber pro's perspective:

๐Ÿ“ You'll want to read this review https://cybercanon.org/chip-war-the-quest-to-dominate-the-worlds-most-critical-technology/

๐Ÿ›๏ธ Reminder: Our review pages contain links to purchase via Amazon or your local bookstore via Bookshop(dot)org. Doing so supports the #CyberCanon, a 100% volunteer-run nonprofit. ๐Ÿ™

#CybersecurityBooks | @haxorthematrix

Heads up - only a few days remain for this fantastic Wiley #CybersecurityBooks Humble Bundle.

๐Ÿ‘‰https://www.humblebundle.com/books/cybersecurity-wiley-books-2025

Five are in the #CyberCanon library:

๐™Ž๐™š๐™˜๐™ช๐™ง๐™ž๐™ฉ๐™ฎ ๐™€๐™ฃ๐™œ๐™ž๐™ฃ๐™š๐™š๐™ง๐™ž๐™ฃ๐™œ: https://cybercanon.org/security-engineering/
๐™Ž๐™š๐™˜๐™ง๐™š๐™ฉ๐™จ ๐™–๐™ฃ๐™™ ๐™‡๐™ž๐™š๐™จ: https://cybercanon.org/secrets-and-lies-digital-security-in-a-networked-world/
๐™๐™ง๐™ž๐™—๐™š ๐™ค๐™› ๐™ƒ๐™–๐™˜๐™ ๐™š๐™ง๐™จ: https://cybercanon.org/tribe-of-hackers/
๐™ƒ๐™ค๐™ฌ ๐™„ ๐™๐™ค๐™— ๐˜ฝ๐™–๐™ฃ๐™ ๐™จ: https://cybercanon.org/how-i-rob-banks-and-other-such-places/
๐™๐™๐™š ๐™‡๐™–๐™ฃ๐™œ๐™ช๐™–๐™œ๐™š ๐™ค๐™› ๐˜ฟ๐™š๐™˜๐™š๐™ฅ๐™ฉ๐™ž๐™ค๐™ฃ: https://cybercanon.org/the-language-of-deception-weaponizing-next-generation-ai/

๐ŸŽฏ๐—ง๐—ผ๐—ฑ๐—ฎ๐˜† ๐—ถ๐—ป ๐—–๐˜†๐—ฏ๐—ฒ๐—ฟ๐˜€๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† ๐—›๐—ถ๐˜€๐˜๐—ผ๐—ฟ๐˜†: ๐—ง๐—ต๐—ฒ ๐—ง๐—ฎ๐—ฟ๐—ด๐—ฒ๐˜ ๐——๐—ฎ๐˜๐—ฎ ๐—•๐—ฟ๐—ฒ๐—ฎ๐—ฐ๐—ต, ๐——๐—ฒ๐—ฐ๐—ฒ๐—บ๐—ฏ๐—ฒ๐—ฟ ๐Ÿญ๐Ÿต, ๐Ÿฎ๐Ÿฌ๐Ÿญ๐Ÿฏ

It started quietly, days before the holiday rush. Shoppers were filling stores, credit cards were swiping nonstop, and behind the scenes, a small foothold inside Targetโ€™s network was about to become one of the most infamous breaches in retail history.

๐Ÿ’€ Attackers slipped in through a third-party HVAC vendor
๐Ÿชฒ Malware moved silently across point-of-sale systems
๐Ÿ’ณ 40 million payment cards skimmed
๐Ÿ” 70 million customers' data exposed

While many are (sadly) becoming numb to breach news nowadays, this disclosure, announced 12 years ago today, shook the industry. Boardrooms across the globe were confronted with the fact that cybersecurity wasnโ€™t just an IT problem, but a critical business-wide issue.

The incident is covered very nicely in this Huntress article: https://www.huntress.com/threat-library/data-breach/target-data-breach

Many books in the #CyberCanon address themes related to the breach. Here are two recos to get you started:

๐™‰๐™–๐™ซ๐™ž๐™œ๐™–๐™ฉ๐™ž๐™ฃ๐™œ ๐™ฉ๐™๐™š ๐˜ฟ๐™ž๐™œ๐™ž๐™ฉ๐™–๐™ก ๐˜ผ๐™œ๐™š discusses cyber risk at the board/executive level and uses high-profile cases to illustrate governance, risk oversight, and leadership implications. Our review๐Ÿ“: https://cybercanon.org/navigating-the-digital-age-the-definitive-cybersecurity-guide-for-directors-and-officers/

๐™๐™๐™š ๐˜พ๐™„๐™Ž๐™Š ๐™‹๐™ก๐™–๐™ฎ๐™—๐™ค๐™ค๐™  is your go-to for structured guidance on integrating 3rd party risk into enterprise security strategy. Our review๐Ÿ“: https://cybercanon.org/the-ciso-playbook/

#CybersecurityBooks #CybersecurityHistory #DataBreach

๐Ÿ—“๏ธ๐—ก๐—ผ๐˜ƒ๐—ฒ๐—บ๐—ฏ๐—ฒ๐—ฟ ๐—•๐—ผ๐—ผ๐—ธ ๐—ฅ๐—ฒ๐˜ƒ๐—ถ๐—ฒ๐˜„ ๐—ฅ๐—ฒ๐—ฐ๐—ฎ๐—ฝ!๐Ÿ“š

It's already a couple of weeks into December, but we'd be remiss not to share our monthly review recap for November...

๐Ÿง  ๐™๐™ฃ๐™™๐™š๐™ง๐™จ๐™ฉ๐™–๐™ฃ๐™™ ๐™ฉ๐™๐™š ๐˜พ๐™ฎ๐™—๐™š๐™ง ๐˜ผ๐™ฉ๐™ฉ๐™–๐™˜๐™ ๐™š๐™ง ๐™ˆ๐™ž๐™ฃ๐™™๐™จ๐™š๐™ฉ: https://cybercanon.org/understand-the-cyber-attacker-mindset-build-a-strategic-security-programme-to-counteract-threats/

๐Ÿ” ๐˜พ๐™ง๐™ฎ๐™ฅ๐™ฉ๐™ค ๐˜ฟ๐™ž๐™˜๐™ฉ๐™ž๐™ค๐™ฃ๐™–๐™ง๐™ฎ: https://cybercanon.org/crypto-dictionary-500-tasty-tidbits-for-the-curious-cryptographer/

๐Ÿ‘‚ ๐™‡๐™ž๐™จ๐™ฉ๐™š๐™ฃ๐™ž๐™ฃ๐™œ ๐™„๐™ฃ: https://cybercanon.org/listening-in-cybersecurity-in-an-insecure-age/

๐Ÿ•ต๏ธโ€โ™‚๏ธ ๐™‡๐™–๐™ฏ๐™–๐™ง๐™ช๐™จ ๐™ƒ๐™š๐™ž๐™จ๐™ฉ: https://cybercanon.org/the-lazarus-heist-from-hollywood-to-high-finance-inside-north-koreas-global-cyber-war/

Each review page on our site now includes affiliate links to purchase the books (and other Amazon purchases), which provides a small portion of the proceeds to the Canon. ๐Ÿ™

Authors: Sarah Armstrong-Smith, Jean-Philippe (JP) Aumasson (@veorq), Susan Landau, and Geoff White

Reviewers: Kevin Magee, Sandip Dholakia (@iSandipD), Jeny Teheran, and Jeff Schiemann

#CyberCanon #CybersecurityBooks

๐Ÿ›๏ธ #CyberMonday is in full swing. Here is a reminder on how you can contribute to the Canon. We have something special for you: the #CyberCanon is now an Amazon affiliate!

Hereโ€™s what that means:
1. Every book review on https://CyberCanon.org contains a link that takes you directly to Amazon to purchase the book of your choice.
2. Each time you use one of these links, a % of your purchase will be contributed back to the CyberCanon.
3. This benefit applies to anything you buy on Amazon within the following 24 hours, not just books.

๐Ÿ“š Books make fantastic gifts for family, friends, colleagues, and teammates, really, everyone. Support us by beginning your Amazon shopping on https://CyberCanon.org and help continue our mission to curate cybersecurity content for the greater good of the cyber community.

#CybersecurityBooks #Giving #CyberMonday

๐Ÿ—“๏ธ๐—ข๐—ฐ๐˜๐—ผ๐—ฏ๐—ฒ๐—ฟ ๐—•๐—ผ๐—ผ๐—ธ ๐—ฅ๐—ฒ๐˜ƒ๐—ถ๐—ฒ๐˜„ ๐—ฅ๐—ฒ๐—ฐ๐—ฎ๐—ฝ!๐Ÿ“š

In case you missed any of our reviews for the month of October, we are here for you...

๐Ÿง‘โ€๐Ÿ’ผ ๐™๐™๐™š ๐™๐™ง๐™–๐™ฃ๐™จ๐™›๐™ค๐™ง๐™ข๐™–๐™ฉ๐™ž๐™ค๐™ฃ๐™–๐™ก ๐™‡๐™š๐™–๐™™๐™š๐™ง: https://tinyurl.com/94z7ujsu

๐Ÿ” ๐˜ฟ๐™ž๐™›๐™›๐™š๐™ง๐™š๐™ฃ๐™ฉ๐™ž๐™–๐™ก ๐™‹๐™ง๐™ž๐™ซ๐™–๐™˜๐™ฎ: https://tinyurl.com/2s3jk4cn

๐Ÿค– ๐˜ผ๐™„-๐˜ฟ๐™ง๐™ž๐™ซ๐™š๐™ฃ ๐˜พ๐™ฎ๐™—๐™š๐™ง๐™จ๐™š๐™˜๐™ช๐™ง๐™ž๐™ฉ๐™ฎ ๐™–๐™ฃ๐™™ ๐™๐™๐™ง๐™š๐™–๐™ฉ ๐™„๐™ฃ๐™ฉ๐™š๐™ก๐™ก๐™ž๐™œ๐™š๐™ฃ๐™˜๐™š: https://tinyurl.com/4k263a9c

๐Ÿง  ๐™๐™ฃ๐™ ๐™ฃ๐™ค๐™ฌ๐™–๐™—๐™ก๐™š ๐™ˆ๐™ž๐™ฃ๐™™๐™จ: https://tinyurl.com/yc4r5r4r

#CyberCanon #CybersecurityBooks

๐Ÿ“…๐—ง๐—ผ๐—ฑ๐—ฎ๐˜† ๐—ถ๐—ป ๐—–๐˜†๐—ฏ๐—ฒ๐—ฟ๐˜€๐—ฒ๐—ฐ๐˜‚๐—ฟ๐—ถ๐˜๐˜† ๐—›๐—ถ๐˜€๐˜๐—ผ๐—ฟ๐˜†!

On November 2, 1988, the Morris Worm became the first major computer virus to spread across the Internet. What began as a graduate studentโ€™s โ€œexperimentโ€ quickly spiraled out of control, taking down much of the early Internet and costing millions in cleanup. It also gave rise to one of cybersecurityโ€™s most important realizations: even well-intentioned code can cause catastrophic damage in a connected world.

To learn more, ๐™๐™–๐™ฃ๐™˜๐™ฎ ๐˜ฝ๐™š๐™–๐™ง ๐™‚๐™ค๐™š๐™จ ๐™‹๐™๐™ž๐™จ๐™๐™ž๐™ฃ๐™œ by Scott Shapiro, a #CyberCanonHoFCandidate, covers the #MorrisWorm as one of its five infamous hacks. See our review โžก๏ธ https://tinyurl.com/r2b3zc2u

๐Ÿ’ฅAnd as a bonus, many may not be aware that ๐™๐™๐™š ๐˜พ๐™ช๐™˜๐™ ๐™ค๐™ค'๐™จ ๐™€๐™œ๐™œ also contains an interesting perspective on the Morris Worm. A year after astronomer Cliff Stoll's spy tracking journey, he was one of many admins around the country who were investigating the Morris Worm live as it was spreading through the night. Cliff writes about this experience in the book's epilogue, where he discovers that the author of the worm was actually the son of NSA's Chief Scientist, Robert Morris, whom Cliff worked with in relation to his international hacker sleuthing a year earlier.

#CyberCanonHoF review โžก๏ธ https://tinyurl.com/3rywf7zw

#CyberCanon #CybersecurityHistory #CybersecurityBooks

๐ŸŽƒIt's Halloween. But forget ghost stories, the scariest stories are true.

In ๐™Ž๐™–๐™ฃ๐™™๐™ฌ๐™ค๐™ง๐™ข, @agreenberg unravels a real-life cyber-thriller. A Russian hacking unit unleashes chaos around the world, turning code into a weapon and critical infrastructure into targets. No jump scares. Just power grids going dark, global companies paralyzed, and governments scrambling in the shadows.

At #CyberCanon, we honor books that reveal how close the digital and physical worlds really are and how fragile our sense of safety can be when the next exploit lurks unseen.

๐Ÿ’€ https://tinyurl.com/mu9aht95

#Cybersecurity #CybersecurityBooks #CyberCanonHoF #Halloween