Book description
NoneTable of contents
- Cover Page
- Title Page
- Copyright Page
- About the Authors
- BRIEF CONTENTS
- CONTENTS IN DETAIL
- ACKNOWLEDGMENTS
- INTRODUCTION
- 1 LET’S HACK A WEBSITE
- Part I: The Basics
- 2 HOW THE INTERNET WORKS
- 3 HOW BROWSERS WORK
- 4 HOW WEB SERVERS WORK
- 5 HOW PROGRAMMERS WORK
- Part II: The Threats
- 6 INJECTION ATTACKS
- 7 CROSS-SITE SCRIPTING ATTACKS
- 8 CROSS-SITE REQUEST FORGERY ATTACKS
- 9 COMPROMISING AUTHENTICATION
- 10 SESSION HIJACKING
- 11 PERMISSIONS
-
12 INFORMATION LEAKS
- Mitigation 1: Disable Telltale Server Headers
- Mitigation 2: Use Clean URLs
- Mitigation 3: Use Generic Cookie Parameters
- Mitigation 4: Disable Client-Side Error Reporting
- Mitigation 5: Minify or Obfuscate Your JavaScript Files
- Mitigation 6: Sanitize Your Client-Side Files
- Stay on Top of Security Advisories
- Summary
- 13 ENCRYPTION
- 14 THIRD-PARTY CODE
- 15 XML ATTACKS
- 16 DON’T BE AN ACCESSORY
- 17 DENIAL-OF-SERVICE ATTACKS
- 18 SUMMING UP
- INDEX
Product information
- Title: Web Security for Developers
- Author(s):
- Release date:
- Publisher(s): No Starch Press
- ISBN: None
You might also like
book
Web Application Security
While many resources for network and IT security are available, detailed knowledge regarding modern web application …
book
Web Application Security, 2nd Edition
In the first edition of this critically acclaimed book, Andrew Hoffman defined the three pillars of …
book
Microservices Security in Action
Unlike traditional enterprise applications, Microservices applications are collections of independent components that function as a system. …
book
Advanced API Security: OAuth 2.0 and Beyond
Prepare for the next wave of challenges in enterprise security. Learn to better protect, monitor, and …