Home / Search / Evasion Engineering: Building Custom Red Team Tools for Modern Defenses
Cover of Evasion Engineering: Building Custom Red Team Tools for Modern Defenses
  • ISBN-13 · 9781718505049
  • ISBN-10 · 1718505043
  • Publisher · No Starch Press
  • Format · paperback, 256 pages
  • Published · 2026
  • Language · English

Evasion Engineering: Building Custom Red Team Tools for Modern Defenses

Rent this book

Free return shipping included
Total rental price$26.00

Please Note: Rental books are typically used and do not come with any unused access code cards.

Return by 2026-12-08. Prepaid return label included; extend at any point for the difference in price.

Buy from a seller

No copies for sale right now — but you can rent it above.

Check back soon — sellers list new copies every day.

About this book

If your tooling is public, it’s already known. Defenders have studied every public offensive framework. They know Cobalt Strike’s beacon patterns, Metasploit’s shellcode signatures, and the behavioral fingerprints of every commodity implant. Once it’s known, the tool gets burned. As a red teamer, your job is to get in. When defenders know your tools, they know your moves—and you don’t get in. Evasion Engineering teaches you to build custom offensive tooling in Go by understanding what modern defenses actually target and building around them. You’ll construct network enumerators, C2 implants, lateral movement tools, obfuscated loaders, and covert exfiltration channels. Each chapter then flips the perspective: the same techniques, examined from the detection side. Build the tool. Understand how it gets caught. Build better. Dennis Chow (GIAC Security Expert #288) and Michael LaSalvia bring 36 combined years of experience inside Fortune 500 red team programs. They treat payload development as an engineering discipline: robustness, reusability, and reliability built in from the start, not bolted on after the fact. You’ll learn to: Build enumeration tools that don’t match known signatures Develop C2 implants with custom protocols that bypass network inspection Implement lateral movement via autonomous worm mechanics Create hybrid-packed payloads that defeat AV and EDR Exfiltrate data through covert channels under active monitoring Map every technique to its detection surface and validate your results If you’ve been relying on tools the defender already knows, this book is where that changes. Requires Go 1.21.x and higher and Python 3.x