Hacking Web Apps: Detecting and Preventing Web Application Security Problems (Paperback)

Mike Shema

  • 出版商: Syngress Media
  • 出版日期: 2012-08-29
  • 售價: $1,890
  • 貴賓價: 9.5$1,796
  • 語言: 英文
  • 頁數: 296
  • 裝訂: Paperback
  • ISBN: 159749951X
  • ISBN-13: 9781597499514
  • 相關分類: 資訊安全駭客 Hack
  • 海外代購書籍(需單獨結帳)

買這商品的人也買了...

商品描述

How can an information security professional keep up with all of the hacks, attacks, and exploits on the Web? One way is to read Hacking Web Apps. The content for this book has been selected by author Mike Shema to make sure that we are covering the most vicious attacks out there. Not only does Mike let you in on the anatomy of these attacks, but he also tells you how to get rid of these worms, trojans, and botnets and how to defend against them in the future. Countermeasures are detailed so that you can fight against similar attacks as they evolve.

Attacks featured in this book include:

. SQL Injection

. Cross Site Scripting

. Logic Attacks

. Server Misconfigurations

. Predictable Pages

. Web of Distrust

. Breaking Authentication Schemes

. HTML5 Security Breaches

. Attacks on Mobile Apps

Even if you don't develop web sites or write HTML, Hacking Web Apps can still help you learn how sites are attacked-as well as the best way to defend against these attacks. Plus, Hacking Web Apps gives you detailed steps to make the web browser - sometimes your last line of defense - more secure.

  • More and more data, from finances to photos, is moving into web applications. How much can you trust that data to be accessible from a web browser anywhere and safe at the same time?
  • Some of the most damaging hacks to a web site can be executed with nothing more than a web browser and a little knowledge of HTML.
  • Learn about the most common threats and how to stop them, including HTML Injection, XSS, Cross Site Request Forgery, SQL Injection, Breaking Authentication Schemes, Logic Attacks, Web of Distrust, Browser Hacks and many more.

商品描述(中文翻譯)

如何讓資訊安全專業人員跟上網路上所有的駭客攻擊和漏洞利用呢?其中一種方法就是閱讀《Hacking Web Apps》。這本書的內容是由作者Mike Shema精心挑選的,確保我們涵蓋了目前最惡毒的攻擊方式。Mike不僅揭示了這些攻擊的結構,還告訴你如何清除這些蠕蟲、木馬和殭屍網絡,以及如何在未來防禦它們。書中詳細介紹了對策,讓你能夠對抗不斷演變的類似攻擊。

本書介紹的攻擊包括:
- SQL注入
- 跨站腳本攻擊
- 邏輯攻擊
- 伺服器配置錯誤
- 可預測的頁面
- 不信任的網絡
- 破解身份驗證方案
- HTML5安全漏洞
- 對移動應用程式的攻擊

即使你不開發網站或撰寫HTML,《Hacking Web Apps》仍然可以幫助你了解網站如何受到攻擊,以及最佳的防禦方式。此外,本書還提供了詳細的步驟,讓網頁瀏覽器(有時是你最後的防線)更加安全。

越來越多的數據,從財務到照片,都正在轉移到網絡應用程式中。你能信任這些數據在任何地方都可以從網頁瀏覽器訪問,同時又是安全的嗎?

對一個網站來說,一些最具破壞性的駭客攻擊可能只需要一個網頁瀏覽器和一點HTML知識。

學習最常見的威脅以及如何阻止它們,包括HTML注入、XSS、跨站請求偽造、SQL注入、破解身份驗證方案、邏輯攻擊、不信任的網絡、瀏覽器駭客攻擊等等。