Web Application Security: Exploitation and Countermeasures for Modern Web Applications

Andrew Hoffman

Book cover for Web Application Security: Exploitation and Countermeasures for Modern Web Applications
Book cover for Web Application Security: Exploitation and Countermeasures for Modern Web Applications

Web Application Security: Exploitation and Countermeasures for Modern Web Applications

Web Application Security: Exploitation and Countermeasures for Modern Web Applications

Andrew Hoffman

Member Benefits

  • 30% Off All Books - Savings that support storytellers, not stock prices.
  • Fight Book Bans - Every membership sends a book to LGBTQ+ youth in affected states.
Member Book Price
$65.99 $46.19
Non-Member Book Price $65.99

An annual membership will be billed at $48/year.

Discount applies to first-time members only. Already a member? Log in here.

View full details

Description

In the first edition of this critically acclaimed book, Andrew Hoffman defined the three pillars of application security: reconnaissance, offense, and defense. In this revised and updated second edition, he examines dozens of related topics, from the latest types of attacks and mitigations to threat modeling, the secure software development lifecycle (SSDL/SDLC), and more.

Hoffman, senior staff security engineer at Ripple, also provides information regarding exploits and mitigations for several additional web application technologies such as GraphQL, cloud-based deployments, content delivery networks (CDN) and server-side rendering (SSR). Following the curriculum from the first book, this second edition is split into three distinct pillars comprising three separate skill sets:

  • Pillar 1: Recon--Learn techniques for mapping and documenting web applications remotely, including procedures for working with web applications
  • Pillar 2: Offense--Explore methods for attacking web applications using a number of highly effective exploits that have been proven by the best hackers in the world. These skills are valuable when used alongside the skills from Pillar 3.
  • Pillar 3: Defense--Build on skills acquired in the first two parts to construct effective and long-lived mitigations for each of the attacks described in Pillar 2.

Publishing Information

Publisher: O'Reilly Media
Pub date: 2024-02-27
Length: 441 pages

The Allstora Membership

Membership Perks:

  • Save 30% on all online store purchases
  • Exclusive access to author's content
  • You pay less, but authors still earn double

Membership Terms:

First Month: $0.00
Monthly price: $5.00
  • To access membership discount simply log in and add to cart, discount applied automatically.
  • One month free trial, cancel anytime. Membership renews on the 15th of each month.