- Aloitussivu /
- Kirjat /
- Tietokoneet ja tekniikka /
- Programming /
- Software Design, Testing & Engineering /
- Testaus /
- Mastering Modern Web Penetration Testing
Mastering Modern Web Penetration Testing
85% vastaajista suosittelisi tätä ystävälle
€ 62
Hintatiedot
Ei sisällä toimitus- ja tullimaksuja ( Toimitus- ja tullimaksut lasketaan kassalla )
*Kaikki tuotteet tuodaan maasta Yhdysvallat
Määrä:
Ubuy tekee kovasti töitä turvallisuutesi ja yksityisyytesi suojaamiseksi. Kehittynyt maksun turvallisuusjärjestelmämme varmistaa luottamuksellisuuden salaamalla tietosi siirron aikana AES (Advanced Encryption Standards)- ja SSL (Secure Socket Layer) -protokollilla. Maksutietosi ovat 100 % turvassa, sillä emme jaa maksutietojasi kolmansien osapuolten myyjille.
This pragmatic guide will be a great benefit and will help you prepare fully secure applications.
Osta nyt, maksa myöhemmin
Fast
Shipping
Ilmainen
palautus*
Pakattu turvallisesti
100-prosenttisesti alkuperäistuotteita
PCI DSS Compliance
ISO 27001 Certified
Mikä erottuu joukosta
Tuotteen yksityiskohdat
- Key FeaturesThis book covers the latest technologies such as Advance XSS, XSRF, SQL Injection, Web API testing, XML attack vectors, OAuth 2.0 Security, and more involved in today's web applicationsPenetrate and secure your web application using various techniquesGet this comprehensive reference guide that provides advanced tricks and tools of the trade for seasoned penetration testersBook DescriptionWeb penetration testing is a growing, fast-moving, and absolutely critical field in information security. This book executes modern web application attacks and utilises cutting-edge hacking techniques with an enhanced knowledge of web application security.We will cover web hacking techniques so you can explore the attack vectors during penetration tests. The book encompasses the latest technologies such as OAuth 2.0, Web API testing methodologies and XML vectors used by hackers. Some lesser discussed attack vectors such as RPO (relative path overwrite), DOM clobbering, PHP Object Injection and etc. has been covered in this book.We'll explain various old school techniques in depth such as XSS, CSRF, SQL Injection through the ever-dependable SQLMap and reconnaissance. Websites nowadays provide APIs to allow integration with third party applications, thereby exposing a lot of attack surface, we cover testing of these APIs using real-life examples. This pragmatic guide will be a great benefit and will help you prepare fully secure applications.What you will learnGet to know the new and less-publicized techniques such PHP Object Injection and XML-based vectorsWork with different security tools to automate most of the redundant tasksSee different kinds of newly-designed security headers and how they help to provide securityExploit and detect different kinds of XSS vulnerabilitiesProtect your web application using filtering mechanismsUnderstand old school and classic web hacking in depth using SQL Injection, XSS, and CSRFGrasp XML-related vulnerabilities and attack vectors such as XXE and DoS techniquesGet to know how to test REST APIs to discover security issues in themAbout the AuthorPrakhar Prasad is a web application security researcher and penetration tester from India. He has been a successful participant in various bug bounty programs and has discovered security flaws on websites such as Google, Facebook, Twitter, PayPal, Slack, and many more. He secured the tenth position worldwide in the year 2014 at HackerOne's platform. He is OSCP and OSWP certified, which are some of the most widely respected certifications in the information security industry. He occasionally performs training and security assessment for various government, non-government, and educational organizations.Table of ContentsCommon Security ProtocolsInformation GatheringCross-Site ScriptingCross-Site Request ForgeryExploiting SQL InjectionFile Upload VulnerabilitiesMetasploit and WebXML AttacksEmerging Attack VectorsOAuth 2.0 SecurityAPI Testing Methodology
| Publisher | Packt Publishing |
| Publication date | October 28, 2016 |
| Language | English |
| Print length | 298 pages |
| ISBN-10 | 1785284584 |
| ISBN-13 | 978-1785284588 |
| Item Weight | 1.14 pounds (520 grams) |
| Dimensions | 7.5 x 0.68 x 9.25 inches (19.1 x 1.7 x 23.5 cm) |
Kenelle sopii?
-
Aspiring Penetration Testers
Individuals looking to start a career in cybersecurity and penetration testing will find practical insights and techniques.
-
Security Professionals
Experienced security practitioners seeking to update their skills with modern web vulnerabilities and testing methodologies will benefit.
-
Developers and Engineers
Web developers aiming to understand security implications in their coding can enhance their applications' security.
-
Beginner Or General Users
Complete novices without foundational cybersecurity knowledge may struggle with advanced concepts and terminology presented.
TUOTEKUVAUS.
Asiakkaiden kysymykset ja vastaukset
-
kysymys:
What kind of security techniques are included in this book?
vastaus: The book covers advanced techniques like Cross-Site Scripting, SQL Injection, API testing, and emerging attack vectors. -
kysymys:
Who is the author of this book?
vastaus: Prakhar Prasad, a web application security researcher and experienced penetration tester. -
kysymys:
Is this book suitable for beginners?
vastaus: While it provides advanced insights, it serves as a comprehensive guide that may benefit those with prior knowledge of web security. -
kysymys:
Is this book suitable for beginners?
vastaus: Yes, this book is recommended for beginners and provides the basics of web exploits. -
kysymys:
Does this book cover new techniques?
vastaus: Yes, the book covers various new techniques in web pen testing. -
kysymys:
Is this book worth the price?
vastaus: Opinions on the price vary. Some readers find it expensive while others think it's worth it.
Testing Editorial Review
Mastering Modern Web Penetration Testing is a book that provides useful information for beginners and some helpful content for medium-level readers. However, it falls short for advanced readers who expected more in-depth and advanced material. The book covers a range of web app attacks, including the latest attack methods, and provides examples of such attacks. While it may not make you a true master of web pen testing, it serves as a valuable additional resource. Some reviewers found the book to be coherent and well-organized, but wished for more information on certain topics. Others criticized the book for being poorly written and lacking coherent explanations and relevant examples. Overall, the book is praised for its quality and the practical screenshots provided. However, some readers found it to be expensive. It is considered a good book for beginners and those interested in bug bounty in web applications.
Asiakkaiden arvostelut ja arvosanat
-
5 tähteä
45%
-
4 tähteä
31%
-
3 tähteä
9%
-
2 tähteä
7%
-
1 tähteä
8%
Arvostele tämä tuote
Jaa ajatuksesi muille asiakkaille
Plussat
- The quality of the book is really good
- Covers a range of web app attacks, including the latest methods
- Provides examples of attacks
- Coherent and well-organized
- Practical screenshots provided
Miinukset
- Includes a lot of very basic concepts known to many people
LUOTTAMUS JA OSTAJAN TURVA
“Easy to use and always helpful and sorts any issues I've had past and present”
“I always receive support when I engage customer service. Overall my experience with UBUY has been top notch. Keep up the good work.”
“The delivery was fast and the product came undamaged and authentic.”
“Ubuy is extremely efficient and to order online is an easy process. The verity of products to buy is really unlimited! My order was urgent and I got it on time. The products are great! Thank you Ubuy!”
“Fast, convenient and cheap. Great store!”
Tuotteen hintahistoria
Tärkeitä tietoja
- Rajoitukset: Kansainvälisesti toimitettujen tuotteiden kohdalla tulee ottaa huomioon, ettei valmistajan takuu välttämättä ole voimassa, etteivät valmistajan huoltovaihtoehdot välttämättä ole käytettävissä, etteivät tuotteen ohjekirjat, oppaat ja turvallisuusvaroitukset välttämättä ole kohdemaan kielellä, ettei tuotteita (ja niiden oheismateriaalia) ole välttämättä suunniteltu vastaamaan kohdemaan standardeja, teknisiä tietoja ja merkintävaatimuksia ja etteivät tuotteet välttämättä vastaa kohdemaan jännitettä ja muita sähköstandardeja (jolloin ne saattavat tarvittaessa vaatia sovittimen tai muuntimen käyttöä). Vastaanottaja on vastuussa sen varmistamisesta, että tuote voidaan toimittaa kohdemaahan laillisesti. Kun vastaanottaja tekee tilauksen Ubuysta tai sen kumppanuusyhtiöiltä, hän on myös rekisteröity maahantuoja ja hänen tulee noudattaa kaikkia kohdemaan lakeja ja säädöksiä.
- Kaikki Ubuyssa listatut tuotteet eivät ole myytävänä, koska Ubuy on maailmanlaajuinen hakukone. Tuotteisiin kohdistuu vienti- ja myyntisäännöksiä.
€ 62
Tilaa nyt ja saat sen noin Monday, Syyskuu 14
This item is not restrict in my country.(Please click on above link if this item is not restrict in your country, So our team will review and allow.)
Määrä:
PCI DSS -yhteensopiva ja ISO 27001:2022 -sertifioitu, salatut maksut ja täysi ostajansuoja jokaisella tilauksella.
Ominaisuudet ja hyödyt
- Covers advanced web penetration techniques including XSS, XSRF, SQL Injection, and more.
- Features the latest technologies in web application security such as OAuth 2.0 and Web API testing.
- Explains lesser-discussed attack vectors like PHP Object Injection and XML vulnerabilities.
- Includes practical examples for testing and securing REST APIs.
- Offers in-depth knowledge of old-school hacking methods along with modern strategies.
- Written by a respected penetration tester with extensive experience in the field.
Ubuy-takuu
Nauti huolettomasta ostoskokemuksesta: 100 % alkuperäisiä tuotteita, PCI DSS -yhteensopiva maksuturvallisuus, ISO 27001 -sertifioitu tietosuoja, nopein rajat ylittävä toimitus, ilmaiset palautukset ja turvallinen pakkaus jokaisella tilauksella.