- Početna stranica /
- Knjige /
- Računari i tehnologija /
- Programming /
- Software Design, Testing & Engineering /
- Testiranje /
- Mastering Modern Web Penetration Testing
Mastering Modern Web Penetration Testing
87% of respondents would recommend this to a friend
BAM 135
Price Details
Excluding Shipping & Custom charges ( Shipping and custom charges will be calculated on checkout )
*All items will import from SAD
QTY:
Ubuy works hard to protect your security and privacy. Our advanced payment security system ensures confidentiality by encrypting your information during transmission using AES (Advanced Encryption Standards) and SSL (Secure Socket Layer) protocols. Your payment details are 100% secure as we do not share your payment details with third party sellers.
This pragmatic guide will be a great benefit and will help you prepare fully secure applications.
Fast
Shipping
Free
Return*
Secure Packaging
100% Original Products
PCI DSS Compliance
ISO 27001 Certified
What Stands Out
Detalji o proizvodu
- Key FeaturesThis book covers the latest technologies such as Advance XSS, XSRF, SQL Injection, Web API testing, XML attack vectors, OAuth 2.0 Security, and more involved in today's web applicationsPenetrate and secure your web application using various techniquesGet this comprehensive reference guide that provides advanced tricks and tools of the trade for seasoned penetration testersBook DescriptionWeb penetration testing is a growing, fast-moving, and absolutely critical field in information security. This book executes modern web application attacks and utilises cutting-edge hacking techniques with an enhanced knowledge of web application security.We will cover web hacking techniques so you can explore the attack vectors during penetration tests. The book encompasses the latest technologies such as OAuth 2.0, Web API testing methodologies and XML vectors used by hackers. Some lesser discussed attack vectors such as RPO (relative path overwrite), DOM clobbering, PHP Object Injection and etc. has been covered in this book.We'll explain various old school techniques in depth such as XSS, CSRF, SQL Injection through the ever-dependable SQLMap and reconnaissance. Websites nowadays provide APIs to allow integration with third party applications, thereby exposing a lot of attack surface, we cover testing of these APIs using real-life examples. This pragmatic guide will be a great benefit and will help you prepare fully secure applications.What you will learnGet to know the new and less-publicized techniques such PHP Object Injection and XML-based vectorsWork with different security tools to automate most of the redundant tasksSee different kinds of newly-designed security headers and how they help to provide securityExploit and detect different kinds of XSS vulnerabilitiesProtect your web application using filtering mechanismsUnderstand old school and classic web hacking in depth using SQL Injection, XSS, and CSRFGrasp XML-related vulnerabilities and attack vectors such as XXE and DoS techniquesGet to know how to test REST APIs to discover security issues in themAbout the AuthorPrakhar Prasad is a web application security researcher and penetration tester from India. He has been a successful participant in various bug bounty programs and has discovered security flaws on websites such as Google, Facebook, Twitter, PayPal, Slack, and many more. He secured the tenth position worldwide in the year 2014 at HackerOne's platform. He is OSCP and OSWP certified, which are some of the most widely respected certifications in the information security industry. He occasionally performs training and security assessment for various government, non-government, and educational organizations.Table of ContentsCommon Security ProtocolsInformation GatheringCross-Site ScriptingCross-Site Request ForgeryExploiting SQL InjectionFile Upload VulnerabilitiesMetasploit and WebXML AttacksEmerging Attack VectorsOAuth 2.0 SecurityAPI Testing Methodology
| Publisher | Packt Publishing |
| Publication date | October 28, 2016 |
| Language | English |
| Print length | 298 pages |
| ISBN-10 | 1785284584 |
| ISBN-13 | 978-1785284588 |
| Item Weight | 1.14 pounds (520 grams) |
| Dimensions | 7.5 x 0.68 x 9.25 inches (19.1 x 1.7 x 23.5 cm) |
Who Should Buy?
-
Aspiring Penetration Testers
Individuals looking to start a career in cybersecurity and penetration testing will find practical insights and techniques.
-
Security Professionals
Experienced security practitioners seeking to update their skills with modern web vulnerabilities and testing methodologies will benefit.
-
Developers and Engineers
Web developers aiming to understand security implications in their coding can enhance their applications' security.
-
Beginner Or General Users
Complete novices without foundational cybersecurity knowledge may struggle with advanced concepts and terminology presented.
OPIS PROIZVODA
Pitanja i odgovori kupaca
-
Pitanje:
Kako kupovati Mastering Modern Web Penetration Testing online od Ubuya?
Odgovor: Lako je kupovati Mastering Modern Web Penetration Testing online od Ubuya.. Vi samo trebate potražiti proizvod, odabrati način dostave prilikom odjavljivanja i dostaviti ga na vašu lokaciju. -
Pitanje:
Je li Mastering Modern Web Penetration Testing dostupan za online kupovinu u Bosnia and Herzegovina?
Odgovor: Da, u Ubuy Bosnia and Herzegovina ovaj proizvod je dostupan za kupovinu po razumnoj cijeni.. Mastering Modern Web Penetration Testing nije dostupan lokalno, ali možete nam povjeriti naše usluge ekspresne dostave. -
Pitanje:
Koliko vremena je potrebno da dobijete proizvod nakon narudžbe?
Odgovor: Vrijeme isporuke vašeg naručenog proizvoda ovisi o tome šta ste naručili i načinu dostave koji ste odabrali.. Predviđeno vrijeme dostave se spominje prilikom naplate, stoga budite bezbrižni prilikom kupovine.
Testing Editorial Review
Mastering Modern Web Penetration Testing is a compelling read for enthusiasts looking to delve into the latest techniques such as CORS and SSRF among others. With a publication date of October 28, 2016, this book by Packt Publishing provides 298 pages of insightful content, despite some readers feeling it lacks depth on certain subjects. While responses to the material vary, many appreciate the practical code and command samples included, aiding in the understanding of web app vulnerabilities and attacks. However, it's important to note that some readers found it unsuitable for beginners, indicating that a solid foundation in web security is beneficial.
Customer Reviews & Ratings
-
5 zvijezda
45%
-
4 zvijezda
31%
-
3 zvijezda
9%
-
2 zvijezda
7%
-
1 zvijezda
8%
Recenzirajte ovaj proizvod
Podijelite svoje misli sa drugim mušterijama
Pros
- Comprehensive coverage of modern web attacks
- Includes code and command samples for practical learning
- Useful for filling gaps left by other resources
- Explains relevant attack methods like PHP vulnerabilities
- Coherent structure making it easier to follow
Cons
- Lacks depth on some advanced topics and examples
Product Price History
Važna informacija
- Ograničenja: Za proizvode koji se isporučuju na međunarodnom nivou, molimo imajte na umu da garancija proizvođača možda neće biti važeća, da opcije usluga servisiranja od strane proizvođača možda neće biti dostupne, da priručnici za proizvode, uputstva i sigurnosna upozorenja možda nisu na jezicima odredišne zemlje, da proizvodi (i prateći materijali) možda nisu dizajnirani u skladu sa standardima zemlje odredišta, specifikacijama i pravilima za označavanje i da proizvodi možda nisu u skladu sa naponom koji se koristi u zemlji odredišta i drugim električnim standardima (što bi zahtijevalo upotrebu adaptera ili pretvarača po potrebi). Primalac je odgovoran da provjeri da li se proizvod može legalno uvesti u zemlju odredišta. Kada naručuje sa Ubuy, primalac je uvoznik na formularima i mora se pridržavati svih zakona i propisa zemlje odredišta.
- Nisu svi proizvodi navedeni na Ubuy-u na prodaju jer je Ubuy globalna tražilica. Proizvodi podliježu izvozno/trgovačkim propisima.
BAM 135
Naručite sada i bit će vam dostavljeno oko Monday, septembar 14
This item is not restrict in my country.(Please click on above link if this item is not restrict in your country, So our team will review and allow.)
QTY:
PCI DSS compliant and ISO 27001:2022 certified, with encrypted payments and full buyer protection on every order.
Karakteristike i prednosti
- Covers advanced web penetration techniques including XSS, XSRF, SQL Injection, and more.
- Features the latest technologies in web application security such as OAuth 2.0 and Web API testing.
- Explains lesser-discussed attack vectors like PHP Object Injection and XML vulnerabilities.
- Includes practical examples for testing and securing REST APIs.
- Offers in-depth knowledge of old-school hacking methods along with modern strategies.
- Written by a respected penetration tester with extensive experience in the field.
Ubuy Assurance
Experience worry-free shopping with 100% original products, PCI DSS-compliant payment security, ISO 27001-certified data protection, the fastest cross-border delivery, free returns *, and secure packaging on every order.