HabrAugust 5, 2026🇷🇺Translated from Russian

Third Edition of The Ultimate Kali Linux Book Released with Expanded OSINT and Pentesting Coverage

The publishing house Piter announces the release of the third international edition of The Ultimate Kali Linux Book: Mastering Nmap, Metasploit, Aircrack-ng and Empire for Pentesting.

The volume introduces readers to Kali Linux, the leading platform for advanced penetration testing. It equips cybersecurity specialists with the tools required to conduct complex assessments in corporate networks. The new edition has been substantially revised with an added chapter on OSINT, updated hands-on exercises and improved explanations of virtual laboratory setups.

The book addresses a broad audience, from novices to seasoned IT professionals who want to stay current with information security trends. As readers progress, they master the Kali Linux toolkit for vulnerability assessment, with emphasis on information gathering. They learn to identify target systems, detect security issues in devices, exploit network vulnerabilities and test web applications.

What readers will learn

  • Build a solid foundation for a career in ethical hacking
  • Install and configure Kali Linux
  • Construct a penetration testing lab and perform vulnerability assessments
  • Apply methodologies used in security evaluations
  • Conduct open-source intelligence gathering (OSINT)
  • Use Nmap to discover security weaknesses in target systems
  • Master advanced wireless network penetration testing techniques
  • Become proficient at exploiting vulnerable web applications

By the end of the book, practitioners are prepared to tackle complex corporate network testing challenges with increased confidence.

Glen Singh is an author, instructor and cybersecurity professional specializing in cyber operations, Red Team and Blue Team activities and enterprise networking. He holds an MSc degree and certifications from EC-Council, Cisco and Check Point. His publications cover vulnerability discovery, threat detection, intrusion analysis, incident response and network security.

The book is available on the publisher’s website. Purchasers of the print edition receive the electronic version by email. Habrahabr readers can apply a 25% discount using the code Kali Linux25.

Related articles

AntiMalwareOther

Wi-Fi 8 Expected Earlier as DDR4 Shortage Forces Market Acceleration

Corporate Wi-Fi 8 equipment could reach the market in 2027, earlier than initially projected, because of ongoing shortages and rising prices of DDR4 memory chips. Although individual access points do not require large amounts of memory, vendors purchase components in massive volumes, so even modest price increases significantly raise production costs. Dell'Oro Group recommends redesigning devices to reduce reliance on the most expensive modules, noting that faster adaptation will lead to more competitive pricing. The DDR4 shortage is effectively accelerating the transition to the next wireless generation. At the same time, Wi-Fi 7 is not being retired soon; analysts forecast triple-digit revenue growth for Wi-Fi 7 equipment in 2026, with the segment continuing to expand for another three years. Cloud-managed WLAN solutions and AIOps features are also driving market growth, increasing software revenue even as high component costs partially cool overall demand.

SecuritylabOther

Security Vision SIEM Tackles Alert Overload with Data Quality Monitoring and MITRE ATT&CK Coverage

The article examines persistent SIEM challenges illustrated by the 2013 Target breach, where FireEye detected the compromise but response processes failed. It cites recent statistics showing organizations receive nearly 3,000 daily alerts with 46 percent false positives and 63 percent left uninvestigated. Security Vision SIEM, built on the Low-Code Security Vision 5 platform, integrates event collection, normalization, correlation, asset context, and basic response. Key July 2026 updates add collection stability monitoring, SLA dashboards, statistical anomaly detection, Sigma rule exchange, and retrospective process chain reconstruction. The product offers more than 1,200 correlation rules covering over 70 percent of MITRE ATT&CK techniques along with FSTEC BDU mappings and expert response recommendations. It supports remote and agent-based collection across 150 integrations while providing visual No-Code tools for connectors, rules, and dashboards.

AntiMalwareOther

CrossTech Solutions Group Rebrands as GardaTech and Completes Integration into IKS Holding

CrossTech Solutions Group has announced its rebranding to GardaTech Solutions Group, marking the final stage of its integration into the IKS Holding ecosystem. The company will now operate under the IKS Security vendor direction, focusing on insider threat prevention, access management, confidential data control, and container environment protection. GardaTech joins existing entities Garda and Bastion to deliver a complete security lifecycle covering product development, integration, and ongoing support for banks, government agencies, and critical information infrastructure. CEO Rifkat Zagitov confirmed that all accumulated expertise and existing products will remain intact while benefiting from expanded resources and market reach. The rebranding is not a superficial change but the culmination of a larger corporate consolidation aimed at offering customers unified security solutions without the need for multiple contractors.

HabrOther

Mapping Logical Air Gap Techniques for Secure Network Segmentation

A detailed technical overview explores how organizations can achieve logical air gaps to isolate high-value network segments without completely severing data exchange. The article contrasts classic physical air gaps with everyday reverse proxies and introduces six distinct levels of isolation ranging from physical media to semantic validation. It evaluates each approach across three axes: whether a direct network path remains, which side initiates connections, and whether synchronous responses are possible. Practical constructions such as dual-homed hosts, message brokers, and schema-enforced proxies are examined alongside common misconceptions including reverse tunnels and port knocking. The guide emphasizes that true logical air gaps terminate sessions at an intermediary that then originates new, controlled exchanges. Real-world deployments typically combine multiple layers, such as network separation plus transport proxies plus content validation, to balance security and usability for critical environments like industrial control systems and backup repositories.