1. Home
  2. Computing & Technology
  3. Internet / Network Security

Book Review: Hacking Exposed- Web Applications

About.com Rating 5

From Tony Bradley, CISSP, MCSE2k, MCSA, A+, for About.com

Hacking Exposed- Web Apps
The Bottom Line
The malicious hackers of the world know lots of tricks and techniques for identifying the weaknesses in your web servers and exploiting them. If they didn't, they will after reading this book. All web administrators and developers should read this book. It provides broad and detailed coverage of the vulnerabilities inherent in various web applications from IIS to Apache and everything in between. More importantly, it explains how to guard against such attacks.
Compare Prices
Pros
  • Same established and respected style as the rest of the Hacking Exposed books
  • Broad coverage from IIS to Apache and J2EE to ASP.NET
  • Excellent checklists and techniques to protect your web servers from these attacks
Cons
  • None
Description
  • Describes how attackers gather information to identify weak spots and select a target
  • Discusses various attacks from attacking the web servers, to web applications and web clients
  • Case studies provide a great resource to help you pull the information together and understand it
  • Checklists are provided to help you ensure you've covered all the bases to secure your web apps
Guide Review - Book Review: Hacking Exposed- Web Applications
Companies go to great lengths to segregate their internal networks from the rest of the world. They implement firewalls and DMZ's to protect their computer systems from the malicious code flying about the public Internet. For the most part, companies can simply block incoming traffic from getting through to their network at all from the outside world. However, in order to host a web site the web server must be accessible from the public Internet. That means that the web server offers an inroad to the internal network if not configured properly.

Hacking Exposed- Web Applications: Web Application Security Secrets & Solutions by Joel Scambray and Mike Shema will show you what you need to know to protect your web servers. The authors explain how an attacker gathers information to identify target systems and seek out the vulnerabilities they can exploit to break in. They go into great detail to discuss the myriad of vulnerabilities on various platforms such as Apache, IIS, J2EE and more.

This book will help you understand just how much risk your web servers are exposed to- vulnerabilities within XML, cross-site scripting and other input validation attacks, SQL injection attacks and more. Thankfully, the authors go on to provide valuable information for how to guard against these attacks and ways to harden your web servers to protect them.

Anyone who administers a web server or develops web applications should read this book to understand the pitfalls and how to avoid them.

Compare Prices
Explore Internet / Network Security
About.com Special Features

Stay connected and entertained with reviews on tips on the latest HDTVs, cellphones and more. More >

Easy ways to connect two computers for networking purposes. More >

  1. Home
  2. Computing & Technology
  3. Internet / Network Security
  4. Product and Book Reviews
  5. Read Book Reviews
  6. Sorted by Title
  7. H
  8. Book Review: Hacking Exposed- Web Applications

©2009 About.com, a part of The New York Times Company.

All rights reserved.