• 讀書網|DuShu.com - 讀書·學習·生活
  •  | 簡體版
  • 論壇
  • 暢銷
  • 連載
  • 圖書
  • 資訊
  • 首頁
  • 國學/古籍 | 文學藝術 | 人文社科 | 經濟管理 | 生活時尚 | 科學技術 | 教材教輔 | 少兒讀物
  •    
  • 圖書搜索:
  •  
     全部圖書 可讀圖書 可購圖書
     
  • 黑客手冊:安全漏洞的發現與利用 - 書籍詳細信息
  • 查看同類圖書:科學技術»科普讀物»其他科普知識»黑客手冊:安全漏洞的發現與利用
  • 黑客手冊:安全漏洞的發現與利用

  • 【作 者】:Dafydd Stuttard,Marcus Pinto
  • 【又/譯名】:Discovering and Exploiting Security Flaws:The Web Application Hacker's Handbook
  • 【叢編項】:
  • 【裝幀項】:平裝 16開 / 736
  • 【出版項】:無 / 2007-10-1
  • 【ISBN號】:9780470170779 / 0470170778
  • 【原書定價】:¥423.00 有1家書店打折銷售 
  • 【主題詞】:進口原版書-計算機 Computers & Internet
  • 【圖書簡介】
      This book is a practical guide to discovering and exploiting security flaws in web applications. The authors explain each category of vulnerability using real-world examples, screen shots and code extracts. The book is extremely practical in focus, and describes in detail the steps involved in detecting and exploiting each kind of security weakness found within a variety of applications such as online banking, e-commerce and other web applications. The topics covered include bypassing login mechanisms, injecting code, exploiting logic flaws and compromising other users. Because every web application is different, attacking them entails bringing to bear various general principles, techniques and experience in an imaginative way. The most successful hackers go beyond this, and find ways to automate their bespoke attacks. This handbook describes a proven methodology that combines the virtues of human intelligence and computerized brute force, often with devastating results. The authors are professional penetration testers who have been involved in web application security for nearly a decade. They have presented training courses at the Black Hat security conferences throughout the world. Under the alias "PortSwigger", Dafydd developed the popular Burp Suite of web application hack tools.
  • 【作者簡介】
      Dafydd Stuttard is a Principal Security Consultant at Next Generation Security Software, where he leads the web application security competency. He has nine years’ experience in security consulting and specializes in the penetration testing of web applications and compiled software.Dafydd has worked with numerous banks, retailers, and other enterprises to help secure their web applications, and has provided security consulting to several software manufacturers and governments to help secure their compiled software. Dafydd is an accomplished programmer in several languages, and his interests include developing tools to facilitate all kinds of software security testing.Dafydd has developed and presented training courses at the Black Hat security conferences around the world. Under the alias “PortSwigger,” Dafydd created the popular Burp Suite of web application hacking tools. Dafydd holds master’s and doctorate degrees in philosophy from the University of Oxford.
  • 【本書目錄】
    Acknowledgments
    Introduction
    Chapter 1 Web Application (In)security
    Chapter 2 Core Defense Mechanisms
    Chapter 3 Web Application Technologies
    Chapter 4 Mapping the Application
    Chapter 5 Bypassing Client-Side Controls
    Chapter 6 Attacking Authentication
    Chapter 7 Attacking Session Management
    Chapter 8 Attacking Access Controls
    Chapter 9 Injecting Code
    Chapter 10 Exploiting Path Traversal
    Chapter 11 Attacking Application Logic
    Chapter 12 Attacking Other Users
    Chapter 13 Automating Bespoke Attacks
    Chapter 14 Exploiting Information Disclosure
    Chapter 15 Attacking Compiled Applications
    Chapter 16 Attacking Application Architecture
    Chapter 17 Attacking the Web Server
    Chapter 18 Finding Vulnerabilities in Source Code
    Chapter 19 A Web Application Hacker's Toolkit
    Chapter 20 A Web Application Hacker's Methodology
    Index
  • 【購買本書】
  • 商城名稱價格 配送信息優惠活動去看看購買

    當當網
    ¥376.50
    當天加急送:北京五環以內
    送貨上門:國內178個城市
    郵寄:全球
    特快專遞:全球
    特惠商品68折封頂 去看看 訂購

    中國圖書館網
    ¥0.4/頁起
    郵寄、快遞:全國
    特快專遞EMS:全球
    提供稀缺絕版圖書文獻影印服務 去看看 預定
  • 說明:
  • 1、由于網上書店可能根據各種情況隨時調整價格,我們的價格信息存在滯后性。以上價格僅作參考,具體以網上書店標示的價格為準。
    2、如價格折扣信息和原書定價存在較大誤差,可能是該店售書為本書的不同版本或不同裝禎形式,請讀者自行鑒別。
    3、對如何網上購書存在疑問,請點擊上面購書指南鏈接查詢。
  • Copyright © 讀書網 www.dushu.com 2006-2007, All Rights Reserved.
    鄂ICP備06000781號 公安備4201502577