How to Attack and Defend Your Website

How to Attack and Defend Your Website

2.5 (4 ratings by Goodreads)
By (author)  , Edited by 

Free delivery worldwide

Available. Dispatched from the UK in 1 business day
When will my order arrive?


How to Attack and Defend Your Website is a concise introduction to web security that includes hands-on web hacking tutorials. The book has three primary objectives: to help readers develop a deep understanding of what is happening behind the scenes in a web application, with a focus on the HTTP protocol and other underlying web technologies; to teach readers how to use the industry standard in free web application vulnerability discovery and exploitation tools - most notably Burp Suite, a fully featured web application testing tool; and finally, to gain knowledge of finding and exploiting the most common web security vulnerabilities.

This book is for information security professionals and those looking to learn general penetration testing methodology and how to use the various phases of penetration testing to identify and exploit common web protocols.

How to Attack and Defend Your Website is be the first book to combine the methodology behind using penetration testing tools such as Burp Suite and Damn Vulnerable Web Application (DVWA), with practical exercises that show readers how to (and therefore, how to prevent) pwning with SQLMap and using stored XSS to deface web pages.
show more

Product details

  • Paperback | 76 pages
  • 154 x 228 x 8mm | 140g
  • Rockland, MA, United States
  • English
  • 0128027320
  • 9780128027325

Table of contents

Chapter 1: Web Technologies

Chapter 2: Exploitation

Chapter 3: Finding Vulnerabilities
show more

Review quote

"...does a reasonable job of opening your eyes to the kinds of vulnerabilities from which your site might suffer. You can then use that understanding to fix or prevent them...if you care about your site's security, this will get you started." --Network Security
show more

About Henry Dalziel

Henry Dalziel is a serial education entrepreneur, founder of Concise Ac Ltd, online cybersecurity blogger and e-book author. He writes for the blog and has developed numerous cybersecurity continuing education courses and books. Concise Ac Ltd develops and distributes continuing education content [books and courses] for cybersecurity professionals seeking skill enhancement and career advancement. The company was recently accepted onto the UK Trade & Investment's (UKTI) Global Entrepreneur Programme (GEP). Alejandro Caceres is the founder of Hyperion Gray, LLC, a web security and big data R&D company. He is also the creator of the PunkSPIDER project, an open-source web app vulnerability scanner and repository of vulnerabilities found on the open web. Alejandro has spoken at several major security conferences (DEF CON, ShmooCon, AppSec) and enjoys making web app hacking principles more accessible to web developers so that they can design and build more secure applications.
show more

Rating details

4 ratings
2.5 out of 5 stars
5 0% (0)
4 0% (0)
3 50% (2)
2 50% (2)
1 0% (0)
Book ratings by Goodreads
Goodreads is the world's largest site for readers with over 50 million reviews. We're featuring millions of their reader ratings on our book pages to help you find your new favourite book. Close X