作者:《Web Security Testing Cookbook》书籍
出版社:O'Reilly Media
出版年:2008-10-24
评分:0.0
ISBN:9780596514839
所属分类:网络科技
Among the tests you perform on web applications, security testing is perhaps the most important, yet it's often the most neglected. The recipes in the Web Security Testing Cookbook demonstrate how developers and testers can check for the most common web security issues, while conducting unit tests, regression tests, or exploratory tests. Unlike ad hoc security assessments, these recipes are repeatable, concise, and systematic-perfect for integrating into your regular test suite. Recipes cover the basics from observing messages between clients and servers to multi-phase tests that script the login and execution of web application features. By the end of the book, you'll be able to build tests pinpointed at Ajax functions, as well as large multi-step tests for the usual suspects: cross-site scripting and injection attacks. This book helps you: * Obtain, install, and configure useful-and free-security testing tools * Understand how your application communicates with users, so you can better simulate attacks in your tests * Choose from many different methods that simulate common attacks such as SQL injection, cross-site scripting, and manipulating hidden form fields * Make your tests repeatable by using the scripts and examples in the recipes as starting points for automated tests Don't live in dread of the midnight phone call telling you that your site has been hacked. With Web Security Testing Cookbook and the free tools used in the book's examples, you can incorporate security coverage into your test suite, and sleep in peace.
《破局:中国服务经济15年崛起与突破之路》内容简介:全书以技术、政策、资本和需求四大力量为主线,讲述它们如何影响甚至决定服务
《银行业营销管理实战精析》内容简介:本书从国际通用的营销管理体系出发,引入银行业营销管理案例共32个,案例覆盖大型商业银行、
Informationretrievalisasub-fieldofcomputersciencethatdealswiththeautomatedstorag...
基于社交问答平台的用户知识贡献行为与服务优化 内容简介 《基于社交问答平台的用户知识贡献行为与服务优化》围绕用户的社交问答需求,从社交问答平台发展与平台架构出发...
Entwerfen.Programmieren.Visualisieren.MitinternationalenBest-Practise-Beispielen...
IfyouareadesignerwhoknowsHTML,CSS,andJavaScript,youcaneasilylearnhowtomakenative...
很多程序员及软件设计师都认为,用c++开发意味着放弃程序性能提升的可能。在很多人眼里,使用c++来开发那些效率至上的应用无疑将
《块数据5.0:数据社会学的理论与方法》内容简介:块数据是贵阳发展大数据的理论创新和实践探索的产物,是大数据时代的解决方案。《
《跨界协同育人共同体:思与行的融合》内容简介:上海中医药大学自2015年7成立“跨界协同育人共同体——服务学生成长导师团”。导师
Chapter1.IntroductionSection1.1.TheHighPerformanceBuzz-wordChapter2.TheTheoryofC...
《世事如书,我只爱你这一句》内容简介:朱生豪:“醒来觉得甚是爱你。”张爱玲:“因为爱过,所以慈悲;因为懂得,所以宽容。”林
《Linux集群之美》内容简介:全书共9章,主要是以作者的项目实践为基础,以CentOS 7.5x86_64为主操作系统、AWS云为平台,介绍Linux
《2020—2021年中国网络可信身份服务发展蓝皮书(精装版)》内容简介:在国家政策支持下,2020年我国网络可信身份服务业发展迅猛,
《好好读书:特级教师蒋军晶经典童书阶梯导读(第6阶)》内容简介:童书真多啊。“一天”里出版的书,认真读的话,可能一辈子也读不
《纳兰词》内容简介:他是王国维、梁启超、徐志摩盛赞的词人,留存于世的三百余篇词作中,“情”是贯穿始终的主题,“诗乃心声,性
《唯一的规则》内容简介:这本书,是李零阅读经典四部书(《论语》《老子》《孙子》《周易》)的第三本。对《孙子兵法》一书,不易
《自然语言处理实战:预训练模型应用及其产品化》内容简介:本书分为三部分。第1部分聚焦于自然语言处理的高层次概述,包括自然语言
《战时国民政府行政机构改革(1937~1945)》内容简介:本书旨在考察抗战时期国民政府实施行政机构改革的全过程,分析国民政府为实
《美国的故事(套装书共7册)》内容简介:本书聚焦于美国建国前后的激情岁月。从北美殖民地的建立,到独立战争的打响,再到美国前几
《C++从入门到精通(微视频精编版)》内容简介:本书从初、中级读者的角度出发,通过通俗易懂的语言、丰富多彩的实例,详细介绍了使