Secure Java: For Web Application Development (Paperback)
暫譯: 安全的 Java:網頁應用程式開發

Abhay Bhargav

  • 出版商: CRC
  • 出版日期: 2010-09-16
  • 售價: $4,110
  • 貴賓價: 9.5$3,905
  • 語言: 英文
  • 頁數: 308
  • 裝訂: Paperback
  • ISBN: 1439823510
  • ISBN-13: 9781439823514
  • 相關分類: Java 程式語言
  • 海外代購書籍(需單獨結帳)

買這商品的人也買了...

商品描述

Most security books on Java focus on cryptography and access control, but exclude key aspects such as coding practices, logging, and web application risk assessment. Encapsulating security requirements for web development with the Java programming platform, Secure Java: For Web Application Development covers secure programming, risk assessment, and threat modeling—explaining how to integrate these practices into a secure software development life cycle.

From the risk assessment phase to the proof of concept phase, the book details a secure web application development process. The authors provide in-depth implementation guidance and best practices for access control, cryptography, logging, secure coding, and authentication and authorization in web application development. Discussing the latest application exploits and vulnerabilities, they examine various options and protection mechanisms for securing web applications against these multifarious threats. The book is organized into four sections:

  • Provides a clear view of the growing footprint of web applications
  • Explores the foundations of secure web application development and the risk management process
  • Delves into tactical web application security development with Java EE
  • Deals extensively with security testing of web applications

This complete reference includes a case study of an e-commerce company facing web application security challenges, as well as specific techniques for testing the security of web applications. Highlighting state-of-the-art tools for web application security testing, it supplies valuable insight on how to meet important security compliance requirements, including PCI-DSS, PA-DSS, HIPAA, and GLBA. The book also includes an appendix that covers the application security guidelines for the payment card industry standards.

商品描述(中文翻譯)

大多數關於 Java 的安全書籍專注於加密和存取控制,但忽略了編碼實踐、日誌記錄和網路應用程式風險評估等關鍵方面。《Secure Java: For Web Application Development》將網路開發的安全需求進行封裝,涵蓋安全編程、風險評估和威脅建模,並解釋如何將這些實踐整合到安全的軟體開發生命週期中。

從風險評估階段到概念驗證階段,本書詳細說明了一個安全的網路應用程式開發過程。作者提供了有關存取控制、加密、日誌記錄、安全編碼以及網路應用程式開發中的身份驗證和授權的深入實施指導和最佳實踐。討論最新的應用程式漏洞和安全隱患,他們檢視了各種選項和保護機制,以保護網路應用程式免受這些多樣化威脅的影響。本書分為四個部分:

- 提供對網路應用程式日益增長的影響範圍的清晰視角
- 探索安全網路應用程式開發的基礎和風險管理過程
- 深入探討使用 Java EE 的戰術性網路應用程式安全開發
- 廣泛處理網路應用程式的安全測試

這本完整的參考書包括一個面臨網路應用程式安全挑戰的電子商務公司的案例研究,以及測試網路應用程式安全性的具體技術。強調最先進的網路應用程式安全測試工具,提供了如何滿足重要安全合規要求的寶貴見解,包括 PCI-DSS、PA-DSS、HIPAA 和 GLBA。本書還包括一個附錄,涵蓋支付卡行業標準的應用安全指導方針。

最後瀏覽商品 (20)