Ethical Hacking Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package. | Computer Forensics Training at InfoSec Institute Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors. |

| Subject: | [WEB SECURITY] The Web Application Hacker's Handbook |
|---|---|
| Date: | Mon, 22 Oct 2007 19:24:08 +0100 |
The Web Application Hacker's Handbook has just been published (in the US at least - the rest of the world catches up shortly). Co-authored by PortSwigger (creator of Burp), this book aims to be the most deep and comprehensive general purpose guide to hacking web applications that is currently available. The book is highly practical in focus, and describes in detail the steps involved in detecting and exploiting all kinds of web application security flaws. The coverage is broad, from easy attacks like password guessing through to advanced techniques like blind code injection, reversing client-side components, and uncovering subtle logic flaws. Each topic is illustrated using real-world examples, screen shots and code extracts. In addition to specific vulnerabilities, the book describes numerous techniques such as mapping an application's attack surface, leveraging automation to speed up customised attacks, and finding security bugs in source code. It also includes a comprehensive methodology for performing web application penetration tests. You can view the full table of contents and read some extracts from the book here: http://www.amazon.com/dp/0470170778 Cheers, PortSwigger ------------------------------------------------------------------------- Sponsored by: Watchfire Cross-Site Scripting (XSS) is one of the most common application-level attacks that hackers use to sneak into web applications today. This whitepaper will discuss how traditional XSS attacks are performed, how to secure your site against these attacks and check if your site is protected. Cross-Site Scripting Explained - Download this whitepaper today! https://www.watchfire.com/securearea/whitepapers.aspx?id=701700000009405 -------------------------------------------------------------------------
| <Prev in Thread] | Current Thread | [Next in Thread> |
|---|---|---|
| ||
| Previous by Date: | PacSec 2007 Agenda (Tokyo 11-29/30), Dragos Ruiu |
|---|---|
| Next by Date: | php password strength checkers, Robin Wood |
| Previous by Thread: | PacSec 2007 Agenda (Tokyo 11-29/30), Dragos Ruiu |
| Next by Thread: | php password strength checkers, Robin Wood |
| Indexes: | [Date] [Thread] [Top] [All Lists] |