

Buy anything from 5,000+ international stores. One checkout price. No surprise fees. Join 2M+ shoppers on Desertcart.
Desertcart purchases this item on your behalf and handles shipping, customs, and support to Uruguay.
When you launch an application on the web, every hacker in the world has access to it. Are you sure your web apps can stand up to the most sophisticated attacks? Grokking Web Application Security is a brilliantly illustrated and clearly written guide that delivers detailed coverage on: How the browser security model works, including sandboxing, the same-origin policy, and methods of securing cookies Securing web servers with input validation, escaping of output, and defense in depth A development process that prevents security bugs Protecting yourself from browser vulnerabilities such as cross-site scripting, cross-site request forgery, and clickjacking Network vulnerabilities like man-in-the-middle attacks, SSL-stripping, and DNS poisoning Preventing authentication vulnerabilities that allow brute forcing of credentials by using single sign-on or multi-factor authentication Authorization vulnerabilities like broken access control and session jacking How to use encryption in web applications Injection attacks, command execution attacks, and remote code execution attacks Malicious payloads that can be used to attack XML parsers, and file upload functions Review: Too High Level for a Developer - The writing has the feel of being rushed. The explanations of how the vulnerabilities work and what to do about them are very high level and not sufficient for a developer. It would have been a lot better if it was language specific. The diagrams were also not helpful.






























| Best Sellers Rank | 1,152,012 in Books ( See Top 100 in Books ) 1,651 in Web Scripting & Programming 7,445 in Computing & Internet Programming 21,183 in Language Study & Reference |
| Customer Reviews | 4.3 out of 5 stars 7 Reviews |
T**H
Too High Level for a Developer
The writing has the feel of being rushed. The explanations of how the vulnerabilities work and what to do about them are very high level and not sufficient for a developer. It would have been a lot better if it was language specific. The diagrams were also not helpful.
Trustpilot
2 weeks ago
2 days ago