Hacking Exposed Web Applications, 3/e (Paperback)
暫譯: 破解曝光:網路應用程式,第3版 (平裝本)

Joel Scambray, Vincent Liu, Caleb Sima

  • 出版商: McGraw-Hill Education
  • 出版日期: 2010-11-05
  • 定價: $1,850
  • 售價: 8.0$1,480
  • 語言: 英文
  • 頁數: 482
  • 裝訂: Paperback
  • ISBN: 0071740643
  • ISBN-13: 9780071740647
  • 相關分類: 駭客 Hack
  • 立即出貨(限量) (庫存=1)

買這商品的人也買了...

相關主題

商品描述

The latest Web app attacks and countermeasures from world-renowned practitioners

Protect your Web applications from malicious attacks by mastering the weapons and thought processes of today's hacker. Written by recognized security practitioners and thought leaders, Hacking Exposed Web Applications, Third Edition is fully updated to cover new infiltration methods and countermeasures. Find out how to reinforce authentication and authorization, plug holes in Firefox and IE, reinforce against injection attacks, and secure Web 2.0 features. Integrating security into the Web development lifecycle (SDL) and into the broader enterprise information security program is also covered in this comprehensive resource.

  • Get full details on the hacker's footprinting, scanning, and profiling tools, including SHODAN, Maltego, and OWASP DirBuster
  • See new exploits of popular platforms like Sun Java System Web Server and Oracle WebLogic in operation
  • Understand how attackers defeat commonly used Web authentication technologies
  • See how real-world session attacks leak sensitive data and how to fortify your applications
  • Learn the most devastating methods used in today's hacks, including SQL injection, XSS, XSRF, phishing, and XML injection techniques
  • Find and fix vulnerabilities in ASP.NET, PHP, and J2EE execution environments
  • Safety deploy XML, social networking, cloud computing, and Web 2.0 services
  • Defend against RIA, Ajax, UGC, and browser-based, client-side exploits
  • Implement scalable threat modeling, code review, application scanning, fuzzing, and security testing procedures

商品描述(中文翻譯)

最新的網頁應用程式攻擊與世界知名專家的對策

保護您的網頁應用程式免受惡意攻擊,掌握當今駭客的武器和思維過程。由公認的安全專家和思想領袖撰寫的《Hacking Exposed Web Applications, Third Edition》已全面更新,以涵蓋新的滲透方法和對策。了解如何加強身份驗證和授權、修補 Firefox 和 IE 的漏洞、加強對注入攻擊的防護,以及保護 Web 2.0 功能。本書還涵蓋了將安全性整合到網頁開發生命週期 (SDL) 和更廣泛的企業資訊安全計畫中的內容。

- 獲取駭客的足跡、掃描和分析工具的詳細資訊,包括 SHODAN、Maltego 和 OWASP DirBuster
- 觀察流行平台如 Sun Java System Web Server 和 Oracle WebLogic 的新漏洞利用實例
- 了解攻擊者如何擊敗常用的網頁身份驗證技術
- 了解現實世界中的會話攻擊如何洩漏敏感數據,以及如何加固您的應用程式
- 學習當今駭客使用的最具破壞性的方法,包括 SQL 注入、XSS、XSRF、釣魚攻擊和 XML 注入技術
- 在 ASP.NET、PHP 和 J2EE 執行環境中尋找並修復漏洞
- 安全部署 XML、社交網路、雲計算和 Web 2.0 服務
- 防禦 RIA、Ajax、UGC 和基於瀏覽器的客戶端攻擊
- 實施可擴展的威脅建模、代碼審查、應用程式掃描、模糊測試和安全測試程序