Grokking Web Application Security

Grokking Web Application Security

Grokking Web Application Security

paperback
Published: 24 June, 2024
Standard worldwide delivery by Thu, July 9 - Tue, July 14
Order within 0
Condition: NEW
$65.90
RRP $69.95
You save $4.05 (6%)
Price includes shipping
Available 2 in stock
- +
FREE Returns within 30 days

Description

When you launch an application on the web, every hacker in the world has access to it. Are you sure your web apps can stand up to the most sophisticated attacks?

Grokking Web Application Security is a brilliantly illustrated and clearly written guide that delivers detailed coverage on:

  • How the browser security model works, including sandboxing, the same-origin policy, and methods of securing cookies
  • Securing web servers with input validation, escaping of output, and defense in depth
  • A development process that prevents security bugs
  • Protecting yourself from browser vulnerabilities such as cross-site scripting, cross-site request forgery, and clickjacking
  • Network vulnerabilities like man-in-the-middle attacks, SSL-stripping, and DNS poisoning
  • Preventing authentication vulnerabilities that allow brute forcing of credentials by using single sign-on or multi-factor authentication
  • Authorization vulnerabilities like broken access control and session jacking
  • How to use encryption in web applications
  • Injection attacks, command execution attacks, and remote code execution attacks
  • Malicious payloads that can be used to attack XML parsers, and file upload functions
See more

More Details

Type Book
ISBN13 9781633438262
ISBN10 1633438260
Number Of Pages 336
Item Weight 606 g
Product Dimensions 185 x 235 x 20 mm
Publisher / Reseller Manning Publications
Format paperback
See More +

Author's Bio

Malcolm McDonald is the creator of hacksplaining.com, a comprehensive and interactive security training solution that helps working web developers brush up on their security knowledge. He is a security engineer with 20 years of experience across investment banking, start-ups, and PayPal. He has personally trained thousands of developers in web security over his career.

Show more