The Basics of Web Hacking: Tools and Techniques to Attack the Web (Paperback)
暫譯: 網路駭客基礎:攻擊網路的工具與技術 (平裝本)

Josh Pauli

  • 出版商: Syngress Media
  • 出版日期: 2013-07-22
  • 售價: $1,350
  • 貴賓價: 9.5$1,283
  • 語言: 英文
  • 頁數: 160
  • 裝訂: Paperback
  • ISBN: 0124166008
  • ISBN-13: 9780124166004
  • 相關分類: 駭客 Hack
  • 海外代購書籍(需單獨結帳)

買這商品的人也買了...

相關主題

商品描述

The Basics of Web Hacking introduces you to a tool-driven process to identify the most widespread vulnerabilities in Web applications. No prior experience is needed. Web apps are a "path of least resistance" that can be exploited to cause the most damage to a system, with the lowest hurdles to overcome. This is a perfect storm for beginning hackers. The process set forth in this book introduces not only the theory and practical information related to these vulnerabilities, but also the detailed configuration and usage of widely available tools necessary to exploit these vulnerabilities.

The Basics of Web Hacking provides a simple and clean explanation of how to utilize tools such as Burp Suite, sqlmap, and Zed Attack Proxy (ZAP), as well as basic network scanning tools such as nmap, Nikto, Nessus, Metasploit, John the Ripper, web shells, netcat, and more. Dr. Josh Pauli teaches software security at Dakota State University and has presented on this topic to the U.S. Department of Homeland Security, the NSA, BlackHat Briefings, and Defcon. He will lead you through a focused, three-part approach to Web security, including hacking the server, hacking the Web app, and hacking the Web user.

With Dr. Pauli's approach, you will fully understand the what/where/why/how of the most widespread Web vulnerabilities and how easily they can be exploited with the correct tools. You will learn how to set up a safe environment to conduct these attacks, including an attacker Virtual Machine (VM) with all necessary tools and several known-vulnerable Web application VMs that are widely available and maintained for this very purpose. Once you complete the entire process, not only will you be prepared to test for the most damaging Web exploits, you will also be prepared to conduct more advanced Web hacks that mandate a strong base of knowledge.

  • Provides a simple and clean approach to Web hacking, including hands-on examples and exercises that are designed to teach you how to hack the server, hack the Web app, and hack the Web user
  • Covers the most significant new tools such as nmap, Nikto, Nessus, Metasploit, John the Ripper, web shells, netcat, and more!
  • Written by an author who works in the field as a penetration tester and who teaches Web security classes at Dakota State University

商品描述(中文翻譯)

《網路駭客基礎》介紹了一個以工具為驅動的過程,用以識別網路應用程式中最普遍的漏洞。無需任何先前經驗。網路應用程式是「最小阻力的路徑」,可以被利用來對系統造成最大的損害,且克服的障礙最低。這對於初學者駭客來說是一個完美的風暴。本書中所提出的過程不僅介紹了與這些漏洞相關的理論和實用資訊,還詳細說明了利用這些漏洞所需的廣泛可用工具的配置和使用。

《網路駭客基礎》提供了一個簡單明瞭的解釋,說明如何使用如 Burp Suite、sqlmap 和 Zed Attack Proxy (ZAP) 等工具,以及基本的網路掃描工具,如 nmap、Nikto、Nessus、Metasploit、John the Ripper、web shells、netcat 等。喬希·保利博士(Dr. Josh Pauli)在達科他州立大學教授軟體安全,並曾在美國國土安全部、國家安全局、BlackHat 會議和 Defcon 上發表過相關主題的演講。他將引導您通過一個專注的三部分方法來了解網路安全,包括駭客伺服器、駭客網路應用程式和駭客網路使用者。

透過保利博士的方法,您將全面了解最普遍的網路漏洞的什麼/在哪裡/為什麼/如何,以及如何使用正確的工具輕易地利用這些漏洞。您將學會如何設置一個安全的環境來進行這些攻擊,包括一個擁有所有必要工具的攻擊者虛擬機(VM)和幾個廣泛可用且為此目的維護的已知漏洞網路應用程式虛擬機。一旦您完成整個過程,您不僅會準備好測試最具破壞性的網路漏洞,還會準備進行更高級的網路駭客行為,這需要堅實的知識基礎。

- 提供一個簡單明瞭的網路駭客方法,包括實作範例和練習,旨在教您如何駭客伺服器、駭客網路應用程式和駭客網路使用者
- 涵蓋最重要的新工具,如 nmap、Nikto、Nessus、Metasploit、John the Ripper、web shells、netcat 等!
- 由一位在滲透測試領域工作的作者撰寫,並在達科他州立大學教授網路安全課程