Zum Hauptinhalt springen Zur Suche springen Zur Hauptnavigation springen
Beschreibung
Proven Methods for Building Secure Java-Based Web Applications

Develop, deploy, and maintain secure Java applications using the expert techniques and open source libraries described in this Oracle Press guide. Iron-Clad Java presents the processes required to build robust and secure applications from the start and explains how to eliminate existing security bugs. Best practices for authentication, access control, data protection, attack prevention, error handling, and much more are included. Using the practical advice and real-world examples provided in this authoritative resource, you'll gain valuable secure software engineering skills.

Establish secure authentication and session management processes

Implement a robust access control design for multi-tenant web applications

Defend against cross-site scripting, cross-site request forgery, and clickjacking

Protect sensitive data while it is stored or in transit

Prevent SQL injection and other injection attacks

Ensure safe file I/O and upload

Use effective logging, error handling, and intrusion detection methods

Follow a comprehensive secure software development lifecycle

"In this book, Jim Manico and August Detlefsen tackle security education from a technical perspective and bring their wealth of industry knowledge and experience to application designers. A significant amount of thought was given to include the most useful and relevant security content for designers to defend their applications. This is not a book about security theories, it's the hard lessons learned from those who have been exploited, turned into actionable items for application designers, and condensed into print." -From the Foreword by Milton Smith, Oracle Senior Principal Security Product Manager, Java
Proven Methods for Building Secure Java-Based Web Applications

Develop, deploy, and maintain secure Java applications using the expert techniques and open source libraries described in this Oracle Press guide. Iron-Clad Java presents the processes required to build robust and secure applications from the start and explains how to eliminate existing security bugs. Best practices for authentication, access control, data protection, attack prevention, error handling, and much more are included. Using the practical advice and real-world examples provided in this authoritative resource, you'll gain valuable secure software engineering skills.

Establish secure authentication and session management processes

Implement a robust access control design for multi-tenant web applications

Defend against cross-site scripting, cross-site request forgery, and clickjacking

Protect sensitive data while it is stored or in transit

Prevent SQL injection and other injection attacks

Ensure safe file I/O and upload

Use effective logging, error handling, and intrusion detection methods

Follow a comprehensive secure software development lifecycle

"In this book, Jim Manico and August Detlefsen tackle security education from a technical perspective and bring their wealth of industry knowledge and experience to application designers. A significant amount of thought was given to include the most useful and relevant security content for designers to defend their applications. This is not a book about security theories, it's the hard lessons learned from those who have been exploited, turned into actionable items for application designers, and condensed into print." -From the Foreword by Milton Smith, Oracle Senior Principal Security Product Manager, Java
Über den Autor
Jim Manico is an author and educator of developer security awareness trainings. He is also a frequent speaker on secure software practices and is a member of the JavaOne "rockstar hall of fame". He has an 18 year history building software as a developer and architect. Jim is also one of the members of the Global Board of Directors for the OWASP foundation where he helps drive the strategic vision for the organization. He manages and participates in several OWASP projects, including the OWASP cheat sheet series and several secure coding projects. For more information, see [...] or follow him on Twitter at [...]
Inhaltsverzeichnis
Chapter 1: Web Application Security Basics
Chapter 2. Authentication and Session Management
Chapter 3: Access Control
Chapter 4: Cross-Site Scripting Defense
Chapter 5: Cross-Site Request Forgery Defense and Clickjacking
Chapter 6: Protecting Sensitive Data
Chapter 7: SQL Injection and Other Injection Attacks
Chapter 8: Safe File Upload and File I/O
Chapter 9: Logging, Error Handling, and Intrusion Detection
Chapter 10: Secure Software Development Lifecycle
Appendix: Resources
Details
Erscheinungsjahr: 2014
Fachbereich: Programmiersprachen
Genre: Importe, Informatik
Rubrik: Naturwissenschaften & Technik
Medium: Taschenbuch
Inhalt: Kartoniert / Broschiert
ISBN-13: 9780071835886
ISBN-10: 0071835881
Sprache: Englisch
Einband: Kartoniert / Broschiert
Autor: Manico, Jim
Detlefsen, August
Hersteller: McGraw-Hill Education
Verantwortliche Person für die EU: Libri GmbH, Europaallee 1, D-36244 Bad Hersfeld, gpsr@libri.de
Maße: 235 x 191 x 17 mm
Von/Mit: Jim Manico (u. a.)
Erscheinungsdatum: 16.10.2014
Gewicht: 0,575 kg
Artikel-ID: 131543800

Ähnliche Produkte