Internet / Network Security

  1. Home
  2. Computing & Technology
  3. Internet / Network Security

Book Review: Hacking Exposed- Web Applications

About.com Rating five out of Five

From Tony Bradley, CISSP, MCSE2k, MCSA, A+, for About.com

Hacking Exposed- Web Apps

The Bottom Line

The malicious hackers of the world know lots of tricks and techniques for identifying the weaknesses in your web servers and exploiting them. If they didn't, they will after reading this book. All web administrators and developers should read this book. It provides broad and detailed coverage of the vulnerabilities inherent in various web applications from IIS to Apache and everything in between. More importantly, it explains how to guard against such attacks.
Pros
  • Same established and respected style as the rest of the Hacking Exposed books
  • Broad coverage from IIS to Apache and J2EE to ASP.NET
  • Excellent checklists and techniques to protect your web servers from these attacks
Cons
  • None

Description

  • Describes how attackers gather information to identify weak spots and select a target
  • Discusses various attacks from attacking the web servers, to web applications and web clients
  • Case studies provide a great resource to help you pull the information together and understand it
  • Checklists are provided to help you ensure you've covered all the bases to secure your web apps

Guide Review - Book Review: Hacking Exposed- Web Applications

Companies go to great lengths to segregate their internal networks from the rest of the world. They implement firewalls and DMZ's to protect their computer systems from the malicious code flying about the public Internet. For the most part, companies can simply block incoming traffic from getting through to their network at all from the outside world. However, in order to host a web site the web server must be accessible from the public Internet. That means that the web server offers an inroad to the internal network if not configured properly.

Hacking Exposed- Web Applications: Web Application Security Secrets & Solutions by Joel Scambray and Mike Shema will show you what you need to know to protect your web servers. The authors explain how an attacker gathers information to identify target systems and seek out the vulnerabilities they can exploit to break in. They go into great detail to discuss the myriad of vulnerabilities on various platforms such as Apache, IIS, J2EE and more.

This book will help you understand just how much risk your web servers are exposed to- vulnerabilities within XML, cross-site scripting and other input validation attacks, SQL injection attacks and more. Thankfully, the authors go on to provide valuable information for how to guard against these attacks and ways to harden your web servers to protect them.

Anyone who administers a web server or develops web applications should read this book to understand the pitfalls and how to avoid them.

Compare Prices
User Reviews Write Review

Explore Internet / Network Security

More from About.com

Internet / Network Security

  1. Home
  2. Computing & Technology
  3. Internet / Network Security
  4. Product and Book Reviews
  5. Read Book Reviews
  6. Sorted by Title
  7. H
  8. Book Review: Hacking Exposed- Web Applications

©2008 About.com, a part of The New York Times Company.

All rights reserved.