Discount Book Store - Rbookshop.comOnline Book StoreBusiness BooksComputer BooksEngineering BooksMathematics BooksScience BooksView All Categoriesnavmap
arrow Search for books at ARC Spider:
arrow Search for books at Powells:
arrow
Buy a Book from Amazon.com
bar
How to buy? - A step-by-step guide

Book Categories


The Web Application Hacker's Handbook: Discovering and...

Buy The Web Application Hacker's Handbook: Discovering and... here, one of many Active Server Pages books offered for sale at discount prices here at Rbookshop.com.  We greatly appreciate your patronage at Rbookshop and look forward to offering you great products and prices now and in the future.
You Are Here:  Home > Computer Books > Active Server Pages > Item 22

View Previous Product in our Active Server Pages Store      View Next Product in our Active Server Pages Store

Click here to buy The Web Application Hacker's Handbook: Discovering and... by  Dafydd Stuttard and Marcus Pinto. The Web Application Hacker's Handbook: Discovering and...
by Dafydd Stuttard and Marcus Pinto
Sales Rank: 10512
5.0 out of 5 stars
Discount: 37 %
$31.50
At Amazon
on 7-6-2008.
Buy The Web Application Hacker's Handbook: Discovering and... now! Get Info on The Web Application Hacker's Handbook: Discovering and...
Features
  • Cover Type: Paperback with 736 pages
  • Published by: Wiley October 22, 2007
  • Written in: English
  • ISBN 10 Number: 0470170778
  • ISBN 13 Number: 978-0470170779
  • Book Dimensions: 9.3 x 7.4 x 1.6 inches
  • Weighs: 2.4 pounds

Product Review
"If you have an interest in web application security, I would highly recommend picking up a copy of this book, especially if you’re interested in being able to audit applications for vulnerabilities".
Robert Wesley McGrew, McGrew Security

Book Description
This book is a practical guide to discovering and exploiting security flaws in web applications. The authors explain each category of vulnerability using real-world examples, screen shots and code extracts. The book is extremely practical in focus, and describes in detail the steps involved in detecting and exploiting each kind of security weakness found within a variety of applications such as online banking, e-commerce and other web applications.

The topics covered include bypassing login mechanisms, injecting code, exploiting logic flaws and compromising other users. Because every web application is different, attacking them entails bringing to bear various general principles, techniques and experience in an imaginative way. The most successful hackers go beyond this, and find ways to automate their bespoke attacks. This handbook describes a proven methodology that combines the virtues of human intelligence and computerized brute force, often with devastating results.

The authors are professional penetration testers who have been involved in web application security for nearly a decade. They have presented training courses at the Black Hat security conferences throughout the world. Under the alias "PortSwigger", Dafydd developed the popular Burp Suite of web application hack tools.

Reader Reviews
This is the most important IT security title written in the past year or more. Why? Custom web applications offer more opportunities for exploitation than all of the publicized vulnerabilities your hear about combined. This book gives expert treatment to the subject. I found the writing to be very clear and concise in this 727 page volume. There is minimal fluff. While everything is clearly explained, this is not a beginners book. The authors assume that you can read html, JavaScript, etc... Usually with a book like this there are a few really good chapters and some so-so chapters, but that's not the case here. Chapters 3-18 in this book rock all the way through. Another huge plus is the tools in this book are free. The first few chapters provide context and background information. Chapter 3 on Web Application Technologies provides particularly useful background info. The next 666 pages of the book are all about attacking the applications. There next five chapters cover mapping application functionality, client side controls, authentication, sessions, and access controls. The coverage is comprehensive. I'm not new to these topics, but I learned so much in every chapter. The depth of coverage is amazing. The next six chapters are the heart of this book. They cover injection, path traversal, application logic, XSS and related attacks, automating attacks, and information disclosure. You'll find full treatment of attacks we're all familiar with like SQL injection and cross site scripting as well as many that most of us haven't heard of before. The danger is real and these chapters need to be read. The final next four chapters cover attacks against compiled applications, application architecture, web servers, and source code. The final two chapters are more useful as a quick reference. They provide an overview of the tools covered throughout the book and describe attack methodology discussed throughout the book for exploiting each technology. This book scores five easily based on the relevance and value of the information. Comment | | (Report this)


Back To Top

View Previous Product in our Active Server Pages Store      View Next Product in our Active Server Pages Store

The Web Application Hacker's Handbook: Discovering and...
List Price: $50.00
Discount: 37 %
Available from Amazon
Price: $31.50
Updated on 7-6-2008.
Buy The Web Application Hacker's Handbook: Discovering and... now! Get Info on The Web Application Hacker's Handbook: Discovering and...




NOTICE: All prices, availability, and specifications
are subject to verification by their respective retailers.




We offer The Web Application Hacker's Handbook: Discovering and... and other related Active Server Pages Books here at Rbookshop.com. To view more books about Active Server Pages please use the previous and next buttons near the top of this page.




Alternative Med Books | Art Books | Business Books | Comic Books | Computer Books | Cook Books | Engineering Books | History Books | Hobby Books | Law Books | Mathematics Books | Medical Books | Popular Authors | Rare Books | Religion Books | Romance Books | Science Books | Science Fiction Books | Sports Books | Travel Books | Unusual Subjects Books
Discount Book Store
Rbookshop

Copyright © 2007 Rbookshop.com

97218 Computer Books Online and Available as of 7-6-2008.