Web Hacking. Attacks And Defense

Shreeraj Shah

,

Stuart McClure

,

Saumil Shah

Note moyenne 
Shreeraj Shah et Stuart McClure - Web Hacking. Attacks And Defense.
Whether it's petty defacing or full-scale cyber robbery, hackers are moving to the Web along with everyone else. Organizations using Web-based business... Lire la suite
58,10 € Neuf
Expédié sous 2 à 4 semaines
Livré chez vous entre le 11 mai et le 25 mai
En librairie

Résumé

Whether it's petty defacing or full-scale cyber robbery, hackers are moving to the Web along with everyone else. Organizations using Web-based business applications are increasingly at risk. Web Hacking: Attacks and Defense is a powerful guide to the latest information on Web attacks and defense. Security experts Stuart McClure (lead author of Hacking Exposed), Saumil Shah, and Shreeraj Shah present a broad range of Web attacks and defense. Both novice and seasoned readers will come away with an increased understanding of how Web hacking occurs and enhanced skill at developing defenses against such Web attacks. Technologies covered include Web languages and protocols, Web and database servers, payment systems and shopping carts, and critical vulnerabilities associated with URLs. Features Include: Overview of the Web and what hackers go after; Complete Web application security methodologies; Detailed analysis of hack techniques; Countermeasures; What to do at development time to eliminate vulnerabilities; New case studies and eye-opening attack scenarios; Advanced Web hacking concepts, methodologies, and tools. "How Do They Do It?" sections show how and why different attacks succeed, including: Cyber graffiti and Web site defacements; e-Shoplifting; Database access and Web applications; Java TM application servers; how to harden your Java Web Server; Impersonation and session hijacking; Buffer overflows, the most wicked of attacks; Automated attack tools and worms. Appendices include a listing of Web and database ports, cheat sheets for remote command execution, and source code disclosure techniques. Web Hacking informs from the trenches. Experts show you how to connect the dots-how to put the stages of a Web hack together so you can best defend against them. Written for maximum brain absorption with unparalleled technical content and battle-tested analysis, Web Hacking will help you combat potentially costly security threats and attacks.

Sommaire

  • THE E-COMMERCE PLAYGROUND
    • Web Languages: The Babylon of the 21st Century
    • Web and Database Servers
    • Shopping Carts and Payment Gateways
    • HTTP and HTTPS: The Hacking Protocols
    • URL: The Web Hacker's Sword
    • URLs UNRAVELED
    • Web: Under (the) Cover
    • Reading Between the Lines
    • Site Linkage Analysis
  • HOW DO THEY DO IT?
    • Cyber Graffiti
    • E-Shoplifting
    • Database Access
    • Java: Remote Command Execution
    • Impersonation
    • Buffer Overflows: On-the-Fly
  • ADVANCED WEB KUNG FU
    • Web Hacking: Automated Tools
    • Worms
    • Beating the IDS

Caractéristiques

  • Date de parution
    01/11/2002
  • Editeur
  • ISBN
    0-201-76176-9
  • EAN
    9780201761764
  • Présentation
    Broché
  • Nb. de pages
    520 pages
  • Poids
    1.045 Kg
  • Dimensions
    18,5 cm × 23,5 cm × 3,1 cm

Avis libraires et clients

Avis audio

Écoutez ce qu'en disent nos libraires !

À propos des auteurs

Stuart McClure is the President/CTO of Foundstone, Inc., the premier provider of enterprise vulnerability management products and services. He is lead author of the critically acclaimed Hacking Exposed, Third Edition, (Osborne McGraw-Hill, 2001). Saumil Shah, Director of India Operations for Foundstone, Inc., is a regular speaker at security conferences such as Black Hat and RSA, and has pioneered Foundstone's Ultimate Web Hacking training course. Mr. Shah authored The Anti-Virus Book (Tata McGraw-Hill, India). Shreeraj Shah is a Consultant and Software Engineer with Foundstone, Inc., where he specializes in analyzing the security architecture of Internet and Intranet applications. He has published numerous security vulnerability advisories on Web application servers.

Derniers produits consultés

58,10 €