Book Name: | Web Application Security |
Category: | Computer Books ( CE & IT ) |
Free Download: | Available |
Web Application Security: Exploitation and Countermeasures for Modern Web Applications
Book Description:
While many networks and IT security resources are available, detailed knowledge regarding modern web application security has been lacking—until now. This practical guide provides offensive and defensive security concepts that software engineers can quickly learn and apply.
Andrew Hoffman, a senior security engineer at Salesforce, introduces three pillars of web application security: recon, offense, and defense. You’ll learn methods for effectively researching and analyzing modern web applications—including those you don’t have direct access to. You’ll also learn how to break into web applications using the latest hacking techniques. Finally, you’ll learn how to develop mitigations for your web applications to protect against hackers.
• Explore common vulnerabilities plaguing today’s web applications
• Learn essential hacking techniques attackers use to exploit applications
• Map and document web applications for which you don’t have direct access
• Develop and deploy customized exploits that can bypass common defenses
• Develop and deploy mitigations to protect your applications against hackers
• Integrate secure coding best practices into your development lifecycle
• Get practical tips to help you improve the overall security of your web applications
About the Authors
Andrew Hoffman is a senior product security engineer at Salesforce.com, where he is responsible for the security of multiple JavaScript, NodeJS, and OSS teams. His expertise is in deep DOM and JavaScript security vulnerabilities.
Web Application Security: Exploitation and Countermeasures for Modern Web Applications
Author(s): Andrew Hoffman
Publisher: O’Reilly Media, Year: 2020
ISBN: 9781492053118,9781492087960