Free Book on Building Secure Web Applications免費書籍就構建安全Web應用程序
The Open Web Application Security Project (開放Web應用安全項目( OWASP.org owasp.org ) has written and )已書面和 published出版 a free 293-page book detailing how to build and develop Secure Web Applications.免費的293頁的書,詳細說明如何建立和發展安全的Web應用程序。 This guide carefully explains many common web security issues, such as cross site scripting and SQL injection vulnerabilities.本指南仔細解釋,有許多共同的Web安全問題,如跨站點腳本和SQL注入漏洞。 It provides information about securing most forms of web applications and services, along with real world guidance using J2EE,它提供的信息,確保大多數形式的Web應用程序和服務,隨著現實世界中使用J2EE的指導, ASP.NET asp.net , and PHP samples. ,和PHP的樣本。 It also discusses Microsoft's Threat Risk Modeling strategy, as well as several other security methodologies, such as Trike, CVSS, AS4360, and Octave.它還討論了微軟的威脅,風險建模策略,以及其他幾個安全的方法,如trike , cvss , as4360 ,八度。 Here is a這裡是一個 zip download of the guide郵編下載指南 . OWASP also provides some excellent 。 owasp也提供了一些優秀的 Web Security Presentations Web安全演示 and和 Web Security Papers Web安全文件 . 。
A Guide to Building Secure Web Applications and Web Services 指南構建安全Web應用程序和Web服務
(3.1mb, pdf format) ( 3.1mb , PDF格式)
Table of Contents 目錄
- About The Open Web Application Security Project關於開放Web應用安全項目
- Introduction導言
- What Are Web Applications?什麼是Web應用程序?
- Security Architecture And Design安全體系結構和設計
- Secure Coding Principles安全編碼原則
- Threat Risk Modeling威脅的風險建模
- Handling E-Commerce Payments處理電子商務支付系統
- Phishing網絡釣魚
- Web Services Web服務
- Authentication驗證
- Authorization授權
- Session Management會議管理
- Data Validation數據驗證
- Interpreter Injection口譯注射液
- Canoncalization, Locale And Unicode canoncalization ,區域設置和Unicode
- Error Handling, Auditing And Logging錯誤處理,審計和日誌記錄
- File System文件系統
- Buffer Overflows緩衝區溢出
- Administrative Interfaces行政接口
- Cryptography加密技術
- Configuration配置
- Maintenance維修
- Denial Of Service Attacks拒絕服務攻擊
- Gnu Free Documentation License在GNU自由文檔許可證
- Php Guidelines PHP的指引
- Cheat Sheets作弊表
Technorati Tags: Technorati標記: web security Web安全 , , secure web applications安全Web應用程序 , , secure applications安全應用 , , secure progamming安全編程
Popularity: 40% [人氣: 40 % [ ? ? ] ]
Related Posts: 相關文章:





















