The Web Application Hacker's Handbook: Discovering and Exploiting Security Flaws

The Web Application Hacker's Handbook: Discovering and Exploiting Security Flaws
by Dafydd Stuttard, Marcus Pinto

The Web Application Hacker's Handbook: Discovering and Exploiting Security Flaws
List Price: $50.00
Our Price: $26.87
You Save: $23.13 (46%)
Availability: Usually ships in 1-2 business days
Category: Book
See more book details and other editions


(Click here)
Buy this book at online book store in your country
Canada | UK | Germany | France

Book Summary Information

Author: Dafydd Stuttard, Marcus Pinto
Edition: Paperback
Published: 2007-10-22
ISBN: 0470170778
Number of pages: 768
Publisher: Wiley

Book Reviews of The Web Application Hacker's Handbook: Discovering and Exploiting Security Flaws

Book Review: More than just words!
Summary: 5 Stars

This is an excellent book. Many books of this nature leave you wanting. They talk in complicated jargon, excite you about learning new concepts, and then leave you hanging with no real application of what you are learning. This is not the case with This book.

This book is excellent for both the beginner and the advanced! Plenty of real examples! Walks the beginner through the concepts of foot printing. It explains the technologies and then for the advanced it talks about creating custom code for each vulnerability.

This is a must have for any security professional's library! it was worth every penny!

Summary of The Web Application Hacker's Handbook: Discovering and Exploiting Security Flaws

This book is a practical guide to discovering and exploiting security flaws in web applications. The authors explain each category of vulnerability using real-world examples, screen shots and code extracts. The book is extremely practical in focus, and describes in detail the steps involved in detecting and exploiting each kind of security weakness found within a variety of applications such as online banking, e-commerce and other web applications.

The topics covered include bypassing login mechanisms, injecting code, exploiting logic flaws and compromising other users. Because every web application is different, attacking them entails bringing to bear various general principles, techniques and experience in an imaginative way. The most successful hackers go beyond this, and find ways to automate their bespoke attacks. This handbook describes a proven methodology that combines the virtues of human intelligence and computerized brute force, often with devastating results.

The authors are professional penetration testers who have been involved in web application security for nearly a decade. They have presented training courses at the Black Hat security conferences throughout the world. Under the alias "PortSwigger", Dafydd developed the popular Burp Suite of web application hack tools.

Privacy Books

Book Subjects
Most talked about in ESSG Book Purchases
Hands-on Information Security ImageHands-on Information Security
by Michael E. Whitman
Course Technology Ptr (Sd); Published: 2005-03-30; Paperback; Book
Best price: $4.00
Price in other shops: $51.10
Principles of Information Security ImagePrinciples of Information Security
by Michael E. Whitman, Herbert J. Mattord
Course Technology; Published: 2004-11-23; Paperback; Book
Best price: $28.00
Price in other shops: $93.95
Guide to Computer Forensics and Investigations, Second Edition ImageGuide to Computer Forensics and Investigations, Second Edition
by Amelia Phillips, Bill Nelson, Frank Enfinger, Christopher Steuart
Course Technology; Published: 2005-03-03; Paperback; Book
Best price: $49.59
Price in other shops: $101.95
Hands-On Ethical Hacking and Network Defense ImageHands-On Ethical Hacking and Network Defense
by Michael T. Simpson
Course Technology; Published: 2005-10-19; Paperback; Book
Best price: $47.83
Price in other shops: $101.95
Guide to Network Defense and Countermeasures ImageGuide to Network Defense and Countermeasures
by Randy Weaver
Course Technology; Published: 2006-01-09; Paperback; Book
Best price: $54.99
Price in other shops: $120.95
Security Metrics: Replacing Fear, Uncertainty, and Doubt ImageSecurity Metrics: Replacing Fear, Uncertainty, and Doubt
by Andrew Jaquith
Addison-Wesley Professional; Published: 2007-04-05; Paperback; Book
Best price: $31.49
Price in other shops: $49.99
Extrusion Detection: Security Monitoring for Internal Intrusions ImageExtrusion Detection: Security Monitoring for Internal Intrusions
by Richard Bejtlich
Addison-Wesley Professional; Published: 2005-11-18; Paperback; Book
Best price: $36.65
Price in other shops: $54.99
Web Hacker Boot Camp ImageWeb Hacker Boot Camp
by Gerald Quakenbush
MasterMind Press; Published: 2006-03-10; Paperback; Book
Best price: $39.95
Testing Web Security: Assessing the Security of Web Sites and Applications ImageTesting Web Security: Assessing the Security of Web Sites and Applications
by Steven Splaine
Wiley; Published: 2002-10-11; Paperback; Book
Best price: $20.20
Price in other shops: $50.00
HackNotes(tm) Web Security Pocket Reference ImageHackNotes(tm) Web Security Pocket Reference
by Mike Shema
McGraw-Hill Osborne Media; Published: 2003-06-30; Paperback; Book
Best price: $7.83
Price in other shops: $29.99
Similar Books and other products
Hacking Exposed Web Applications, 2nd Ed. (Hacking Exposed) ImageHacking Exposed Web Applications, 2nd Ed. (Hacking Exposed)
by Joel Scambray, Mike Shema, Caleb Sima
McGraw-Hill Osborne Media; Published: 2006-06-05; Paperback; Book
Best price: $13.88
Price in other shops: $49.99
Virtual Honeypots: From Botnet Tracking to Intrusion Detection ImageVirtual Honeypots: From Botnet Tracking to Intrusion Detection
by Niels Provos, Thorsten Holz
Addison-Wesley Professional; Published: 2007-07-26; Paperback; Book
Best price: $29.15
Price in other shops: $49.99
Reversing: Secrets of Reverse Engineering ImageReversing: Secrets of Reverse Engineering
by Eldad Eilam
Wiley; Published: 2005-04-15; Paperback; Book
Best price: $19.91
Price in other shops: $40.00
Security Metrics: Replacing Fear, Uncertainty, and Doubt ImageSecurity Metrics: Replacing Fear, Uncertainty, and Doubt
by Andrew Jaquith
Addison-Wesley Professional; Published: 2007-04-05; Paperback; Book
Best price: $28.98
Price in other shops: $49.99
The Database Hacker's Handbook: Defending Database Servers ImageThe Database Hacker's Handbook: Defending Database Servers
by David Litchfield, Chris Anley, John Heasman, Bill Grindlay
Wiley; Published: 2005-07-14; Paperback; Book
Best price: $1.25
Price in other shops: $50.00
Fuzzing: Brute Force Vulnerability Discovery ImageFuzzing: Brute Force Vulnerability Discovery
by Michael Sutton, Adam Greene, Pedram Amini
Addison-Wesley Professional; Published: 2007-07-09; Paperback; Book
Best price: $27.00
Price in other shops: $54.99
Ajax Security ImageAjax Security
by Billy Hoffman, Bryan Sullivan
Addison-Wesley Professional; Published: 2007-12-16; Paperback; Book
Best price: $24.38
Price in other shops: $49.99
XSS Attacks: Cross Site Scripting Exploits and Defense ImageXSS Attacks: Cross Site Scripting Exploits and Defense
by Seth Fogie, Jeremiah Grossman, Robert Hansen, Anton Rager, Petko D. Petkov
Syngress; Published: 2007-05-15; Paperback; Book
Best price: $48.29
Price in other shops: $59.95
The Shellcoder's Handbook: Discovering and Exploiting Security Holes ImageThe Shellcoder's Handbook: Discovering and Exploiting Security Holes
by Chris Anley, John Heasman, Felix? Lindner, Gerardo Richarte
Wiley; Published: 2007-08-20; Paperback; Book
Best price: $26.58
Price in other shops: $49.99
Hacking: The Art of Exploitation, 2nd Edition ImageHacking: The Art of Exploitation, 2nd Edition
by Jon Erickson
No Starch Press; Published: 2008-02-04; Paperback; Book
Best price: $31.29
Price in other shops: $49.95
Book store. Illustrated catalog of books on different categories