Grokking Web Application Security by McDonald, Malcolm

Grokking Web Application Security

When you launch an application on the web, every hacker in the world has access to it....
$181.15 AUD
$181.15 AUD
SKU: 9781633438262
Product Type: Books
Please hurry! Only 57 left in stock
Author: Malcolm McDonald
Format: Paperback
Language: English
Subtotal: $181.15
10 customers are viewing this product
Grokking Web Application Security by McDonald, Malcolm

Grokking Web Application Security

$181.15

Grokking Web Application Security

$181.15
Author: Malcolm McDonald
Format: Paperback
Language: English
When you launch an application on the web, every hacker in the world has access to it. Are you sure your web apps can stand up to the most sophisticated attacks?

Trying to teach yourself about web security from the internet can feel like walking into a huge disorganized library--one where you can never find what you need, and the wrong advice might endanger your application! You need a single, all-in-one guide to securing your apps against all the attacks they can and will face. You need Grokking Web Application Security.

This brilliantly illustrated and clearly written guide delivers detailed coverage on:

  • Browser security, including sandboxing, the same-origin policy, and cookie security
  • Securing web servers with input validation, escaping of output, and defense in depth
  • A development process that prevents security bugs
  • Browser vulnerabilities, from cross-site scripting and cross-site request forgery, to clickjacking
  • Network vulnerabilities, such as man-in-the-middle attacks, SSL-stripping, and DNS poisoning
  • Authentication vulnerabilities, such as brute forcing of credentials with single sign-on or multi-factor authentication
  • Authorization vulnerabilities, such as broken access control and session jacking
  • How to use encryption in web applications
  • Injection attacks, command execution attacks, and remote code execution attacks
  • Malicious payloads that can be used to attack XML parsers and file upload functions

Grokking Web Application Security teaches you how to build web apps that are ready and resilient to any attack. It's laser-focused on what the working programmer needs to know about web security. In it, you'll find practical recommendations for both common and not-so-common vulnerabilities--everything from SQL injection to cross-site scripting inclusion attacks. You'll learn what motivates hackers, discover the latest tools for identifying issues, and set up a development lifecycle that catches problems early. Read it cover to cover for a comprehensive overview of web security, and dip in as a reference whenever you need to tackle a specific vulnerability.

Purchase of the print book includes a free eBook in PDF and ePub formats from Manning Publications.

About the technology

Application security is a front-burner concern for web developers. Whether working on the UI with a frontend framework or building out the server side, it's up to you to understand the threats and know exactly how to keep the black hats from getting the upper hand.

About the book

Grokking Web Application Security covers everything a working developer needs to know about securing applications in the browser and on the server. The tested techniques apply to any stack and are illustrated with concrete examples plucked from author Malcolm McDonald's extensive career. You'll discover must-implement security principles and even learn the fascinating tools and techniques the bad guys use to crack systems.

What's inside

  • A security-first development process
  • Encryption in web applications
  • Supply-chain and API attacks
  • What to do when a hacker gets in

About the reader

For readers who understand basic web application design and technologies.

About the author

Malcolm McDonald is a security engineer with 20 years of experience across investment banking, start-ups, and PayPal, and he is the creator of hacksplaining.com.

The technical editor on this book was Rajvardhan Oak.

Table of Contents

PART 1
1 Know your enemy
2 Browser security
3 Encryption
4 Web server security
5 Security as a process
PART 2
6 Browser vulnerabilities
7 Network vulnerabilities
8 Authentication vulnerabilities
9 Session vulnerabilities
10 Authorization vulnerabilities
11 Payload vulnerabilities
12 Injection vulnerabilities
13 Vulnerabilities in third-party code
14 Being an unwitting accomplice
15 What to do when you get hackede

Author: Malcolm McDonald
Publisher: Manning Publications
Published: 06/11/2024
Pages: 336
Binding Type: Paperback
Weight: 1.27lbs
Size: 9.25h x 7.41w x 0.69d
ISBN: 9781633438262

Returns Policy

You may return most new, unopened items within 30 days of delivery for a full refund. We'll also pay the return shipping costs if the return is a result of our error (you received an incorrect or defective item, etc.).

You should expect to receive your refund within four weeks of giving your package to the return shipper, however, in many cases you will receive a refund more quickly. This time period includes the transit time for us to receive your return from the shipper (5 to 10 business days), the time it takes us to process your return once we receive it (3 to 5 business days), and the time it takes your bank to process our refund request (5 to 10 business days).

If you need to return an item, simply login to your account, view the order using the "Complete Orders" link under the My Account menu and click the Return Item(s) button. We'll notify you via e-mail of your refund once we've received and processed the returned item.

Shipping

We can ship to virtually any address in the world. Note that there are restrictions on some products, and some products cannot be shipped to international destinations.

When you place an order, we will estimate shipping and delivery dates for you based on the availability of your items and the shipping options you choose. Depending on the shipping provider you choose, shipping date estimates may appear on the shipping quotes page.

Please also note that the shipping rates for many items we sell are weight-based. The weight of any such item can be found on its detail page. To reflect the policies of the shipping companies we use, all weights will be rounded up to the next full pound.

Related Products

Recently Viewed Products