当前位置:首页>正文

Professional Pen 测试 Professional Pen Testing for Web Applications pdf 115盘 kindle 下载 tct lit mobi 在线

免费下载书籍地址:PDF下载地址

精美图片

Professional Pen 测试 Professional Pen Testing for Web Applications 书籍详细信息

  • ISBN:9780471789666
  • 作者:暂无作者
  • 出版社:暂无出版社
  • 出版时间:2006-12
  • 页数:522
  • 价格:317.70
  • 纸张:胶版纸
  • 装帧:平装
  • 开本:暂无开本
  • 语言:未知
  • 丛书:暂无丛书
  • TAG:暂无
  • 豆瓣评分:暂无豆瓣评分

内容简介:

  There is no such thing as "perfect security" when it comes to keeping all systems intact and functioning properly. Good penetration (pen) testing creates a balance that allows a system to be secure while simultaneously being fully functional. With this book, you'll learn how to become an effective penetrator (i.e., a white hat or ethical hacker) in order to circumvent the security features of a Web application so that those features can be accurately evaluated and adequate security precautions can be put in place.

After a review of the basics of web applications, you'll be introduced to web application hacking concepts and techniques such as vulnerability analysis, attack simulation, results analysis, manuals, source code, and circuit diagrams. These web application hacking concepts and techniques will prove useful information for ultimately securing the resources that need your protection.

What you will learn from this book

* Surveillance techniques that an attacker uses when targeting a system for a strike

* Various types of issues that exist within the modern day web application space

* How to audit web services in order to assess areas of risk and exposure

* How to analyze your results and translate them into documentation that is useful for remediation

* Techniques for pen-testing trials to practice before a live project

Who this book is for

This book is for programmers, developers, and information security professionals who want to become familiar with web application security and how to audit it.

Wrox Professional guides are planned and written by working programmers to meet the real-world needs of programmers, developers, and IT professionals. Focused and relevant, they address the issues technology professionals face every day. They provide examples, practical solutions, and expert education in new technologies, all designed to help programmers do a better job.

书籍目录:

Acknowledgments.

Introduction.

Chapter 1: Penetration Testing Web Applications.

Chapter 2: Web Applications: Some Basics.

Chapter 3: Discovery.

Chapter 4: Vulnerability Analysis.

Chapter 5: Attack Simulation Techniques and Tools: Web Server.

Chapter 6: Attack Simulation Techniques and Tools: Web Application.

Chapter 7: Attack Simulation Techniques and Tools: Known Exploits.

Chapter 8: Attack Simulation Techniques and Tools: Web Services.

Chapter 9: Documentation and Presentation.

Chapter 10: Remediation.

Chapter 11: Your Lab.

Appendix A: Basic SQL.

Appendix B: Basic LDAP.

Appendix C: XPath and XQuery.

Appendix D: Injection Attack Dictionaries.

Index.

作者介绍:

暂无相关内容,正在全力查找中

出版社信息:

暂无出版社相关信息,正在全力查找中!

书籍摘录:

暂无相关书籍摘录,正在全力查找中!

在线阅读/听书/购买/PDF下载地址:

在线阅读地址:Professional Pen 测试 Professional Pen Testing for Web Applications 在线阅读

在线听书地址:Professional Pen 测试 Professional Pen Testing for Web Applications 在线收听

在线购买地址:Professional Pen 测试 Professional Pen Testing for Web Applications 在线购买

原文赏析:

暂无原文赏析,正在全力查找中!

其它内容:

编辑推荐

作者简介:

Andres Andreu, CISSP-ISSAP, GSEC currently operates neuroFuzz Application Security LLC (http://www.neurofuzz.com), and has a strong background with the U.S. government. He served the United States of America in Information Technology and Security capacities within a “3-Letter” federal law enforcement agency. The bulk of his time there was spent building the IT Infrastructure and working on numerous intelligence software programs for one of the largest Title III Interception Operations within the continental U.S. He worked there for a decade and during that time he was the recipient of numerous agency awards for outstanding performance.

  He holds a bachelor’s degree in Computer Science, graduating Summa Cum Laude with a 3.9 GPA from the American College of Computer and Informational Sciences. Mr. Andreu specializes in software, application, and Web services security, working with XML security, TCP and HTTP(S) level proxying technology, and strong encryption. He has many years of experience with technologies like LDAP, Web services (SOA, SOAP, and so on), enterprise applications, and application integration.


书籍介绍

There is no such thing as "perfect security" when it comes to keeping all systems intact and functioning properly. Good penetration (pen) testing creates a balance that allows a system to be secure while simultaneously being fully functional. With this book, you'll learn how to become an effective penetrator (i.e., a white hat or ethical hacker) in order to circumvent the security features of a Web application so that those features can be accurately evaluated and adequate security precautions can be put in place.

After a review of the basics of web applications, you'll be introduced to web application hacking concepts and techniques such as vulnerability analysis, attack simulation, results analysis, manuals, source code, and circuit diagrams. These web application hacking concepts and techniques will prove useful information for ultimately securing the resources that need your protection.

What you will learn from this book

* Surveillance techniques that an attacker uses when targeting a system for a strike

* Various types of issues that exist within the modern day web application space

* How to audit web services in order to assess areas of risk and exposure

* How to analyze your results and translate them into documentation that is useful for remediation

* Techniques for pen-testing trials to practice before a live project

Who this book is for

This book is for programmers, developers, and information security professionals who want to become familiar with web application security and how to audit it.

Wrox Professional guides are planned and written by working programmers to meet the real-world needs of programmers, developers, and IT professionals. Focused and relevant, they address the issues technology professionals face every day. They provide examples, practical solutions, and expert education in new technologies, all designed to help programmers do a better job.

书籍真实打分

故事情节:8分

人物塑造:7分

主题深度:3分

文字风格:3分

语言运用:4分

文笔流畅:8分

思想传递:8分

知识深度:8分

知识广度:8分

实用性:8分

章节划分:3分

结构布局:9分

新颖与独特:4分

情感共鸣:7分

引人入胜:5分

现实相关:5分

沉浸感:7分

事实准确性:5分

文化贡献:4分

网站评分

书籍多样性:3分

书籍信息完全性:9分

网站更新速度:7分

使用便利性:7分

书籍清晰度:4分

书籍格式兼容性:3分

是否包含广告:7分

加载速度:6分

安全性:6分

稳定性:8分

搜索功能:9分

下载便捷性:8分

下载点评

  • epub(420+)
  • 值得下载(589+)
  • 二星好评(649+)
  • 无广告(551+)
  • 实惠(517+)
  • 情节曲折(644+)
  • 引人入胜(662+)
  • 无缺页(469+)

下载评价

网友 车***波:很好,下载出来的内容没有乱码。

网友 常***翠:哈哈哈哈哈哈

网友 訾***晴:挺好的,书籍丰富

网友 居***南:请问,能在线转换格式吗?

网友 温***欣:可以可以可以

网友 瞿***香:非常好就是加载有点儿慢。

网友 郗***兰:网站体验不错

网友 石***致:挺实用的,给个赞!希望越来越好,一直支持。

网友 汪***豪:太棒了,我想要azw3的都有呀!!!

版权声明

1本文:Professional Pen 测试 Professional Pen Testing for Web Applications 转载请注明出处。
2本站内容除签约编辑原创以外,部分来源网络由互联网用户自发投稿仅供学习参考。
3文章观点仅代表原作者本人不代表本站立场,并不完全代表本站赞同其观点和对其真实性负责。
4文章版权归原作者所有,部分转载文章仅为传播更多信息服务用户,如信息标记有误请联系管理员。
5本站一律禁止以任何方式发布或转载任何违法违规的相关信息,如发现本站上有涉嫌侵权/违规及任何不妥的内容,请第一时间联系我们申诉反馈,经核实立即修正或删除。


本站仅提供信息存储空间服务,部分内容不拥有所有权,不承担相关法律责任。

相关文章:

  • [选5本25元]西游记儿童彩图注音版少儿版 小学生一二年级课外书带拼音的名著故事书5-6-7-8岁儿童拼音注音名著读物 pdf 115盘 kindle 下载 tct lit mobi 在线
  • 工种综合与现场管理实训/全国水利行业“十三五”规划教材(中等职业教育) pdf 115盘 kindle 下载 tct lit mobi 在线
  • 事实核查 后真相时代美国新闻业的选择 新闻与传播学译丛·学术前沿系列 美 卢卡斯·格雷夫斯 中国大学出版社 pdf 115盘 kindle 下载 tct lit mobi 在线
  • “十三五”深圳市装配式建筑发展报告 pdf 115盘 kindle 下载 tct lit mobi 在线
  • 人性的弱点全集 pdf 115盘 kindle 下载 tct lit mobi 在线
  • 理科综合 pdf 115盘 kindle 下载 tct lit mobi 在线
  • 亲爱的鲁迅先生 pdf 115盘 kindle 下载 tct lit mobi 在线
  • 世 界上下五千年书正版青少版小学版全套正版 人类五千年风云录界大事件全解读经典历史读物 界通史中华上下五千年正版 pdf 115盘 kindle 下载 tct lit mobi 在线
  • 魅力法则 pdf 115盘 kindle 下载 tct lit mobi 在线
  • 林语堂评传——国学大师丛书16 pdf 115盘 kindle 下载 tct lit mobi 在线