Fakta
"TUF for Package Security: Designing Update Systems That Resist Compromise"
Software updates are now a primary intrusion path, and “just use TLS” collapses the moment a repository, mirror, or signing key is compromised. This book is for experienced security engineers, platform and infrastructure leads, and package ecosystem maintainers who need update systems that remain trustworthy under active attack—and that keep working during incidents, outages, and imperfect real-world operations.
You’ll learn to treat TUF as an executable security protocol built from signed, versioned, expiring metadata—rather than as a bolt-on feature. The book develops a precise threat model and maps it to concrete client invariants: rollback and freeze resistance, mix-and-match prevention, and target substitution defenses. It dives deeply into the core roles (root, timestamp, snapshot, targets), threshold policies, algorithm agility, and clock-dependent security. It then turns theory into practice with the full client update workflow, verification checkpoints, and attack-driven validation strategies that let you prove your deployment resists compromise.
Coverage emphasizes production realities: key custody trade-offs (offline vs online, KMS/HSM), rotation and recovery playbooks, automation pipelines for generating and publishing metadata, scaling trust with delegations and consistent snapshots, and integrating TUF into registries and package managers. Familiarity with public-key cryptography, CI/CD, and distributed systems is assumed; the differentiator is operational rigor—how to design for fa
© 2026 NobleTrex Press (E-bog): 6610001191481
Udgivelsesdato
E-bog: 22. marts 2026
Over 1 million titler
Download og nyd titler offline
Eksklusive titler + Mofibo Originals
Børnevenligt miljø (Kids Mode)
Det er nemt at opsige når som helst
For dig som lytter og læser ofte.
129 kr. /måned
Eksklusivt indhold hver uge
Fri lytning til podcasts
Ingen binding
For dig som lytter og læser ubegrænset.
159 kr. /måned
Eksklusivt indhold hver uge
Fri lytning til podcasts
Ingen binding
For dig som ønsker at dele historier med familien.
Fra 179 kr. /måned
Fri lytning til podcasts
Kun 39 kr. pr. ekstra konto
Ingen binding
179 kr. /måned
For dig som vil prøve Mofibo.
89 kr. /måned
Gem op til 100 ubrugte timer
Eksklusivt indhold hver uge
Fri lytning til podcasts
Ingen binding
Har du en rabatkode?
Indtast koden her