Web Application Security : 2nd Eidtion - Exploitation and Countermeasures for Modern Web Applications - Andrew Hoffman
eTextbook alternate format product

Instant online reading.

Web Application Security

2nd Eidtion - Exploitation and Countermeasures for Modern Web Applications

By: Andrew Hoffman

Paperback | 2 February 2024 | Edition Number 2

At a Glance

Paperback


RRP $125.50

$60.90

51%OFF

or 4 interest-free payments of $15.22 with

 or 
In Stock and Aims to ship in 1-2 business days

When will this arrive by?

In the first edition of this critically acclaimed book, Andrew Hoffman defined the three pillars of application security: reconnaissance, offense, and defense. In this revised and updated second edition, he examines dozens of related topics, from the latest types of attacks and mitigations to threat modeling, the secure software development lifecycle (SSDL/SDLC), and more.

Hoffman, senior staff security engineer at Ripple, also provides information regarding exploits and mitigations for several additional web application technologies such as GraphQL, cloud-based deployments, content delivery networks (CDN) and server-side rendering (SSR). Following the curriculum from the first book, this second edition is split into three distinct pillars comprising three separate skill sets:

  • Pillar 1: Recon-Learn techniques for mapping and documenting web applications remotely, including procedures for working with web applications
  • Pillar 2: Offense-Explore methods for attacking web applications using a number of highly effective exploits that have been proven by the best hackers in the world. These skills are valuable when used alongside the skills from Pillar 3.
  • Pillar 3: Defense-Build on skills acquired in the first two parts to construct effective and long-lived mitigations for each of the attacks described in Pillar 2.
About the Author

Andrew Hoffman is a senior staff security engineer at Ripple. His expertise is in deep DOM and JavaScript security vulnerabilities. He's worked with every major browser vendor, including TC39 and the Web Hypertext Application Technology Working Group (WHATWG) - organizations responsible for the upcoming version of JavaScript and the browser DOM spec.

More in Network Security

Cybersecurity For Dummies : 2nd edition - Joseph Steinberg

RRP $52.95

$37.75

29%
OFF
Cybersecurity All-in-One For Dummies : For Dummies - Joseph Steinberg
Intelligence-Driven Incident Response : Outwitting the Adversary - Rebekah Brown
Network Security Assessment : Know Your Network : 3rd Edition - Chris Mcnab
The Language of Cyber Attacks : A Rhetoric of Deception - Aaron Mauro
Information Modeling and Relational Databases : 2nd Edition - Terry Halpin
Cyber Wars : Hacks that Shocked the Business World - Charles Arthur
I'm a Romance Scam IT Detective (Edition 2) - Selina Co
Data Engineering for Cybersecurity
From Day Zero to Zero Day
Onlife Criminology : Virtual Crimes and Real Harms - Janos Mark Szakolczai

RRP $165.95

$114.95

31%
OFF
Securing Microsoft Azure OpenAI : Tech Today - Karl Ots

RRP $90.95

$65.50

28%
OFF