Hacking Exposed Web 2.0: Web 2.0 Security Secrets and Solutions

個数:

Hacking Exposed Web 2.0: Web 2.0 Security Secrets and Solutions

  • オンデマンド(OD/POD)版です。キャンセルは承れません。
  • 【入荷遅延について】
    世界情勢の影響により、海外からお取り寄せとなる洋書・洋古書の入荷が、表示している標準的な納期よりも遅延する場合がございます。
    おそれいりますが、あらかじめご了承くださいますようお願い申し上げます。
  • ◆画像の表紙や帯等は実物とは異なる場合があります。
  • ◆ウェブストアでの洋書販売価格は、弊社店舗等での販売価格とは異なります。
    また、洋書販売価格は、ご注文確定時点での日本円価格となります。
    ご注文確定後に、同じ洋書の販売価格が変動しても、それは反映されません。
  • 製本 Paperback:紙装版/ペーパーバック版/ページ数 258 p.
  • 言語 ENG
  • 商品コード 9780071494618
  • DDC分類 005.8

Full Description


Publisher's Noteguaranteed by the publisher for quality, authenticity, or access to any online entitlements included with the product.Lock down next-generation Web services "This book concisely identifies the types of attacks which are faced daily by Web 2.0 sites, and the authors give solid, practical advice on how to identify and mitigate these threats." --Max Kelly, CISSP, CIPP, CFCE, Senior Director of Security, FacebookProtect your Web 2.0 architecture against the latest wave of cybercrime using expert tactics from Internet security professionals. Hacking Exposed Web 2.0 shows how hackers perform reconnaissance, choose their entry point, and attack Web 2.0-based services, and reveals detailed countermeasures and defense techniques. You'll learn how to avoid injection and buffer overflow attacks, fix browser and plug-in flaws, and secure AJAX, Flash, and XML-driven applications. Real-world case studies illustrate social networking site weaknesses, cross-site attack methods, migration vulnerabilities, and IE7 shortcomings.Plug security holes in Web 2.0 implementations the proven Hacking Exposed wayLearn how hackers target and abuse vulnerable Web 2.0 applications, browsers, plug-ins, online databases, user inputs, and HTML formsPrevent Web 2.0-based SQL, XPath, XQuery, LDAP, and command injection attacks Circumvent XXE, directory traversal, and buffer overflow exploits Learn XSS and Cross-Site Request Forgery methods attackers use to bypass browser security controls Fix vulnerabilities in Outlook Express and Acrobat Reader add-onsUse input validators and XML classes to reinforce ASP and .NET security Eliminate unintentional exposures in ASP.NET AJAX (Atlas), Direct Web Remoting, Sajax, and GWT Web applicationsMitigate ActiveX security exposures using SiteLock, code signing, and secure controlsFind and fix Adobe Flash vulnerabilities and DNS rebinding attacks

Contents

ForewordAcknowledgmentsIntroductionPart I: Attacking Web 2.0Chapter 1. Common Injection AttacksChapter 2. Cross-Site ScriptingPart II: Next Generation Web Application AttacksChapter 3. Cross-Domain AttacksChapter 4. Malicious JavaScript and AJAXChapter 5. .Net SecurityPart III: AJAXChapter 6. AJAX Types, Discovery, and Parameter ManipulationChapter 7. AJAX Framework ExposuresPart IV: Thick ClientsChapter 8. ActiveX SecurityChapter 9. Attacking Flash ApplicationsIndexNER(01): WOW

最近チェックした商品