ODBIERZ TWÓJ BONUS :: »

Penetration Testing with Java Nancy Snoke

Język publikacji: 1
Penetration Testing with Java Nancy Snoke - okladka książki

Penetration Testing with Java Nancy Snoke - okladka książki

Autor:
Nancy Snoke
Ocena:
Bądź pierwszym, który oceni tę książkę
Stron:
400
Dostępne formaty:
     ePub
     Mobi

Ebook 76,49 zł najniższa cena z 30 dni

89,90 zł (-10%)
80,91 zł

Dodaj do koszyka lub Kup na prezent Kup 1-kliknięciem

76,49 zł najniższa cena z 30 dni

Przenieś na półkę

Do przechowalni

Description
The book provides a comprehensive exploration of Java security and penetration testing, starting with foundational topics such as secure coding practices and the OWASP Top 10 for web applications. The early chapters introduce penetration testing methodologies, including Java web application-specific mapping and reconnaissance techniques. The gathering of information through OSINT and advanced search techniques is highlighted, laying the crucial groundwork for testing. Proxy tools like Burp Suite and OWASP Zap are shown, offering insights into their configurations and capabilities for web application testing.

Each chapter does a deep dive into specific vulnerabilities and attack vectors associated with Java web and mobile applications. Key topics include SQL injection, cross-site scripting (XSS), authentication flaws, and session management issues. Each chapter supplies background information, testing examples, and practical secure coding advice to prevent these vulnerabilities. There is a distinct focus on hands-on testing methodologies, which prepares readers for real-world security challenges.

By the end of this book, you will be a confident Java security champion. You will understand how to exploit vulnerabilities to mimic real-world attacks, enabling you to proactively patch weaknesses before malicious actors can exploit them.

Key Features
Learn penetration testing basics for Java applications.
Discover web vulnerabilities, testing techniques, and secure coding practices.
Explore Java Android security, SAST, DAST, and vulnerability mitigation.

What you will learn
Study the OWASP Top 10 and penetration testing methods.
Gain secure coding and testing techniques for vulnerabilities like XSS and CORS.
Find out about authentication, cookie management, and secure session practices.
Master access control and authorization testing, including IDOR and privilege escalation.
Discover Android app security and tools for SAST, DAST, and exploitation.

Who this book is for
This book is for Java developers, software developers, application developers, quality engineers, software testing teams, and security analysts. Prior knowledge of Java is required. Some application security knowledge is helpful.

Table of Contents
1. Introduction: Java Security, Secure Coding, and Penetration Testing
2. Reconnaissance and Mapping
3. Hands-on with Web Proxies
4. Observability with SQL Injections
5. Misconfiguration with Default Values
6. CORS Exploitation
7. Exploring Vectors with DoS Attacks
8. Executing Business Logic Vulnerabilities
9. Authentication Protocols
10. Session Management
11. Authorization Practices
12. Java Deserialization Vulnerabilities
13. Java Remote Method Invocation Vulnerabilities
14. Java Native Interface Vulnerabilities
15. Static Analysis of Java Android Applications
16. Dynamic Analysis of Java Android Applications
17. Network Analysis of Java Android Applications
Appendix

Wybrane bestsellery

BPB Publications - inne książki

Zamknij

Przenieś na półkę
Dodano produkt na półkę
Usunięto produkt z półki
Przeniesiono produkt do archiwum
Przeniesiono produkt do biblioteki

Zamknij

Wybierz metodę płatności

Ebook
80,91 zł
Dodaj do koszyka
Sposób płatności
Zabrania się wykorzystania treści strony do celów eksploracji tekstu i danych (TDM), w tym eksploracji w celu szkolenia technologii AI i innych systemów uczenia maszynowego. It is forbidden to use the content of the site for text and data mining (TDM), including mining for training AI technologies and other machine learning systems.