- Halaman Utama /
- Buku /
- Komputer & Teknologi /
- Programming /
- Software Design, Testing & Engineering /
- Ujian /
- Mastering Modern Web Penetration Testing
Mastering Modern Web Penetration Testing
85% of respondents would recommend this to a friend
MYR 335
Price Details
Excluding Shipping & Custom charges ( Shipping and custom charges will be calculated on checkout )
*All items will import from AS
QTY:
Ubuy works hard to protect your security and privacy. Our advanced payment security system ensures confidentiality by encrypting your information during transmission using AES (Advanced Encryption Standards) and SSL (Secure Socket Layer) protocols. Your payment details are 100% secure as we do not share your payment details with third party sellers.
This pragmatic guide will be a great benefit and will help you prepare fully secure applications.
Fast
Shipping
Free
Return*
Secure Packaging
100% Original Products
PCI DSS Compliance
ISO 27001 Certified
What Stands Out
Maklumat produk
- Key FeaturesThis book covers the latest technologies such as Advance XSS, XSRF, SQL Injection, Web API testing, XML attack vectors, OAuth 2.0 Security, and more involved in today's web applicationsPenetrate and secure your web application using various techniquesGet this comprehensive reference guide that provides advanced tricks and tools of the trade for seasoned penetration testersBook DescriptionWeb penetration testing is a growing, fast-moving, and absolutely critical field in information security. This book executes modern web application attacks and utilises cutting-edge hacking techniques with an enhanced knowledge of web application security.We will cover web hacking techniques so you can explore the attack vectors during penetration tests. The book encompasses the latest technologies such as OAuth 2.0, Web API testing methodologies and XML vectors used by hackers. Some lesser discussed attack vectors such as RPO (relative path overwrite), DOM clobbering, PHP Object Injection and etc. has been covered in this book.We'll explain various old school techniques in depth such as XSS, CSRF, SQL Injection through the ever-dependable SQLMap and reconnaissance. Websites nowadays provide APIs to allow integration with third party applications, thereby exposing a lot of attack surface, we cover testing of these APIs using real-life examples. This pragmatic guide will be a great benefit and will help you prepare fully secure applications.What you will learnGet to know the new and less-publicized techniques such PHP Object Injection and XML-based vectorsWork with different security tools to automate most of the redundant tasksSee different kinds of newly-designed security headers and how they help to provide securityExploit and detect different kinds of XSS vulnerabilitiesProtect your web application using filtering mechanismsUnderstand old school and classic web hacking in depth using SQL Injection, XSS, and CSRFGrasp XML-related vulnerabilities and attack vectors such as XXE and DoS techniquesGet to know how to test REST APIs to discover security issues in themAbout the AuthorPrakhar Prasad is a web application security researcher and penetration tester from India. He has been a successful participant in various bug bounty programs and has discovered security flaws on websites such as Google, Facebook, Twitter, PayPal, Slack, and many more. He secured the tenth position worldwide in the year 2014 at HackerOne's platform. He is OSCP and OSWP certified, which are some of the most widely respected certifications in the information security industry. He occasionally performs training and security assessment for various government, non-government, and educational organizations.Table of ContentsCommon Security ProtocolsInformation GatheringCross-Site ScriptingCross-Site Request ForgeryExploiting SQL InjectionFile Upload VulnerabilitiesMetasploit and WebXML AttacksEmerging Attack VectorsOAuth 2.0 SecurityAPI Testing Methodology
| Publisher | Packt Publishing |
| Publication date | October 28, 2016 |
| Language | English |
| Print length | 298 pages |
| ISBN-10 | 1785284584 |
| ISBN-13 | 978-1785284588 |
| Item Weight | 1.14 pounds (520 grams) |
| Dimensions | 7.5 x 0.68 x 9.25 inches (19.1 x 1.7 x 23.5 cm) |
Who Should Buy?
-
Aspiring Penetration Testers
Individuals looking to start a career in cybersecurity and penetration testing will find practical insights and techniques.
-
Security Professionals
Experienced security practitioners seeking to update their skills with modern web vulnerabilities and testing methodologies will benefit.
-
Developers and Engineers
Web developers aiming to understand security implications in their coding can enhance their applications' security.
-
Beginner Or General Users
Complete novices without foundational cybersecurity knowledge may struggle with advanced concepts and terminology presented.
PENERANGAN PRODUK
Soalan & Jawapan Pelanggan
-
soalan:
Bagaimana untuk Membeli-belah Mastering Modern Web Penetration Testing Dalam Talian Dari Ubuy?
jawab: Sangat mudah untuk membeli-belah Mastering Modern Web Penetration Testing dalam talian daripada Ubuy.. Anda hanya perlu mencari produk, pilih kaedah penghantaran anda semasa mendaftar keluar dan hantar ke lokasi anda. -
soalan:
Adakah Mastering Modern Web Penetration Testing Tersedia untuk Beli-belah Dalam Talian dalam Malaysia?
jawab: Ya, di Ubuy Malaysia produk ini tersedia untuk anda membeli-belah pada harga yang berpatutan.. Mastering Modern Web Penetration Testing tidak tersedia secara tempatan tetapi anda boleh mempercayai kami dengan perkhidmatan penghantaran ekspres kami. -
soalan:
Berapa lama masa yang diperlukan untuk mendapatkan produk selepas membuat pesanan?
jawab: Masa penghantaran produk pesanan anda berbeza mengikut apa yang anda pesan dan kaedah penghantaran yang anda pilih.. Anggaran masa penghantaran dinyatakan semasa proses daftar keluar, jadi berhati-hati semasa membeli-belah.
Testing Editorial Review
Mastering Modern Web Penetration Testing is a compelling read for enthusiasts looking to delve into the latest techniques such as CORS and SSRF among others. With a publication date of October 28, 2016, this book by Packt Publishing provides 298 pages of insightful content, despite some readers feeling it lacks depth on certain subjects. While responses to the material vary, many appreciate the practical code and command samples included, aiding in the understanding of web app vulnerabilities and attacks. However, it's important to note that some readers found it unsuitable for beginners, indicating that a solid foundation in web security is beneficial.
Customer Reviews & Ratings
-
5 bintang
45%
-
4 bintang
31%
-
3 bintang
9%
-
2 bintang
7%
-
1 bintang
8%
Ulas Produk Ini
Kongsikan pandangan anda dengan pelanggan lain
Kebaikan
- Comprehensive coverage of modern web attacks
- Includes code and command samples for practical learning
- Useful for filling gaps left by other resources
- Explains relevant attack methods like PHP vulnerabilities
- Coherent structure making it easier to follow
Keburukan
- Lacks depth on some advanced topics and examples
Product Price History
Maklumat penting
- Pengehadan: Untuk produk penghantaran antarabangsa, harap maklum bahawa sebarang jaminan pengeluar mungkin tidak sah; pilihan perkhidmatan pengeluar mungkin tidak tersedia; manual produk, arahan, dan amaran keselamatan mungkin tidak dalam bahasa negara destinasi; produk-produk (dan bahan-bahan berkaitannya) mungkin tidak direka selaras dengan standard negara destinasi, spesifikasi, dan syarat pelabelan; dan produk-produk itu mungkin tidak mematuhi kepada voltan negara destinasi dan lain-lain standard elektrik (memerlukan penggunaan adaptor atau penukar aliran jika perlu). Penerima adalah bertanggungjawab untuk memastikan bahawa produk itu boleh diimport selaras dengan undang-undang negara destinasi. Apabila memesan dari Ubuy atau pihak afiliasinya, si penerima adalah merupakan pengimport dalam rekod dan mesti mematuhi kepada semua undang-undang dan peraturan negara destinasi.
- Bukan semua produk yang tersenarai di Ubuy adalah untuk dijual, kerana Ubuy adalah enjin carian global. Produk-produk adalah tertakluk kepada peraturan eksport/perdagangan.
MYR 335
Pesan sekarang dan dapatkannya lebih kurang pada Sunday, September 20
This item is not restrict in my country.(Please click on above link if this item is not restrict in your country, So our team will review and allow.)
QTY:
PCI DSS compliant and ISO 27001:2022 certified, with encrypted payments and full buyer protection on every order.
Ciri & Faedah
- Covers advanced web penetration techniques including XSS, XSRF, SQL Injection, and more.
- Features the latest technologies in web application security such as OAuth 2.0 and Web API testing.
- Explains lesser-discussed attack vectors like PHP Object Injection and XML vulnerabilities.
- Includes practical examples for testing and securing REST APIs.
- Offers in-depth knowledge of old-school hacking methods along with modern strategies.
- Written by a respected penetration tester with extensive experience in the field.
Ubuy Assurance
Experience worry-free shopping with 100% original products, PCI DSS-compliant payment security, ISO 27001-certified data protection, the fastest cross-border delivery, free returns *, and secure packaging on every order.