LitMy.ru - литература в один клик

Hands-on Penetration Testing for Web Applications: Web security testing on modern applications - 2nd Edition

  • Добавил: literator
  • Дата: 26-05-2025, 18:27
  • Комментариев: 0
Название: Hands-on Penetration Testing for Web Applications: Web security testing on modern applications - 2nd Edition
Автор: Richa Gupta
Издательство: BPB Publications
Год: 2025
Страниц: 334
Язык: английский
Формат: epub (true)
Размер: 17.7 MB

Hands-on Penetration Testing for Web Applications offers readers with the knowledge and skillset to identify, exploit, and control the security vulnerabilities present in commercial web applications, including online banking, mobile payments, and e-commerce applications.

Covering a diverse array of topics, this book provides a comprehensive overview of web application security testing methodologies. Each chapter offers key insights and practical applications that align with the objectives of the course. Students will explore critical areas such as vulnerability identification, penetration testing techniques, using open-source pen test management and reporting tools, testing applications hosted on cloud, and automated security testing tools. Throughout the book, readers will encounter essential concepts and tools such as OWASP Top 10 vulnerabilities, SQL injection, cross-site scripting (XSS), authentication and authorization testing, and secure configuration practices. With a focus on real-world applications, students will develop critical thinking skills, problem-solving abilities, and a security-first mindset required to address the challenges of modern web application threats.

As with any new class of technology, web applications have brought with them a new range of security vulnerabilities. The set of most commonly encountered vulnerabilities are already there and now people are aware of them over time but new attacks that were not considered when web applications were being developed. New technologies have been developed that have introduced new possibilities for exploitation. Some categories of security flaws are completely mitigated as the result of mitigations made to web browser software and other development technologies. The most critical attacks against web applications are those that disclose sensitive data or gain unauthorized access to the web servers or other components on which the application is running. Zero-day vulnerabilities of high intensity compromises occur frequently like system downtime or website defacement, denial-of-service attacks can be used to compromise and create resource exhaustion against infrastructure. So, web application security is today the most significant area for an organization to take care of. The primary goal of this book is to provide information and skills that are necessary tounderstand from the security point of view of any web application. This book contains real life examples that will show you how to discover, exploit, and mitigate various vulnerabilities as well as how to launch various automated tools to customize attacks.

With a deep understanding of security vulnerabilities and testing solutions, students will have the confidence to explore new opportunities, drive innovation, and make informed decisions in the rapidly evolving field of cybersecurity.

Key Features:

- Exciting coverage on vulnerabilities and security loopholes in modern web applications.
- Practical exercises and case scenarios on performing pen testing and identifying security breaches.
- This new edition brings enhanced cloud security coverage and comprehensive penetration test management using AttackForge for streamlined vulnerability, documentation, and remediation.

What you will learn:

- Navigate the complexities of web application security testing.
- An overview of the modern application vulnerabilities, detection techniques, tools, and web penetration testing methodology framework.
- Contribute meaningfully to safeguarding digital systems.
- Address the challenges of modern web application threats.
- This edition includes testing modern web applications with emerging trends like DevSecOps, API security, and cloud hosting.
- This edition brings DevSecOps implementation using automated security approaches for continuous vulnerability remediation.

Who this book is for:
The target audience for this book includes students, security enthusiasts, penetration testers, and web application developers. Individuals who are new to security testing will be able to build an understanding about testing concepts and find this book useful. People will be able to gain expert knowledge on pentesting tools and concepts.

Contents:


Скачать Hands-on Penetration Testing for Web Applications: Web security testing on modern applications - 2nd Edition












[related-news] [/related-news]
Внимание
Уважаемый посетитель, Вы зашли на сайт как незарегистрированный пользователь.
Мы рекомендуем Вам зарегистрироваться либо войти на сайт под своим именем.