Articles liés à Security Principles for PHP Applications: A php[architect]...

Security Principles for PHP Applications: A php[architect] guide - Couverture souple

 
9781940111612: Security Principles for PHP Applications: A php[architect] guide

Synopsis

Discover how to secure your applications against the vulnerabilities exploited by attackers.

Security is an ongoing process not something to add right before your application launches. In this book, you'll learn how to write secure PHP applications from first principles. You'll be able to identify the threats exposed by legacy applications and avoid following the same broken patterns while engineering your tools. This book will give you the background to avoid the risk most commonly encountered in web application development.

This book is for anyone getting their start in web development. It's for anyone who wants to understand better the common risks that plague newer applications. It's for seasoned developers who want a refresher on the common pitfalls and mistakes that may affect their code. It should be a resource you can turn to when building or maintaining your web application to ensure you're practicing a security-first mindset.

This book is divided primarily into two sections. The first covers the ten application security risks presented by the OWASP Top Ten (as of 2017). Each chapter in this section will detail:

  • The nature of the vulnerability to be avoided.
  • Example code illustrating how the vulnerability might appear in practice.
  • A detailed illustration of how to properly patch the vulnerability.
  • Notable examples where this vulnerability has impacted business in the wild.

Why wait until your site is attacked or your data is breached?

Prevent your exposure by being aware of the ways a malicious user might hijack your web site or API.

Security Principles for PHP Applications is a comprehensive guide to cultivating a security-first mindset. This book contains examples of vulnerable code side-by-side with solutions to harden it. Organized around the 2017 OWASP Top Ten list, topics covered include:

  • Injection Attacks such as SQL, OS, and LDAP caused by using untrusted data.
  • Authentication and Session Management to prevent compromising user passwords, kets, and session tokens.
  • Sensitive Data Exposure—adequately protecting data such as credit card numbers, tax IDs, and authentication credentials
  • Access Control and Password Handling to properly enforce what authenticated users are allowed to do.
  • PHP Security Settings to harden the server, framework, and libraries used to build your software.
  • Avoiding Cross-Site Scripting flaws by properly validating input and escaping output strings.
  • Adequately Logging and Monitoring to identify threats in real-time.
  • API Protection by detecting, preventing, and responding to manual and automated attacks
  • Preventing Cross-Site Request Forgery which can trick application users into sending forged HTTP requests.
  • Using components with known vulnerabilities
  • Insecure deserialization which can allow attackers to run arbitrary code
  • XML External Entities—guarding against injection attacks when parsing XML input.
  • Guarding against unvalidated redirects and forwards.
  • Using peer code reviews to identify security issues before they are deployed to production.

Written by PHP professional Eric Mann, this book builds on his experience in building secure, web applications with PHP.

Les informations fournies dans la section « Synopsis » peuvent faire référence à une autre édition de ce titre.

Présentation de l'éditeur

Security is an ongoing process not something to add right before your app launches. In this book, you'll learn how to write secure PHP applications from first principles. Why wait until your site is attacked or your data is breached? Prevent your exposure by being aware of the ways a malicious user might hijack your web site or API.

Security Principles for PHP Applications is a comprehensive guide. This book contains examples of vulnerable code side-by-side with solutions to harden it. Organized around the 2017 OWASP Top Ten list, topics cover include:

  • Injection Attacks
  • Authentication and Session Management
  • Sensitive Data Exposure
  • Access Control and Password Handling
  • PHP Security Settings
  • Cross-Site Scripting
  • Logging and Monitoring
  • API Protection
  • Cross-Site Request Forgery
  • ...and more.

    Written by PHP professional Eric Mann, this book builds on his experience in building secure, web applications with PHP.

  • Les informations fournies dans la section « A propos du livre » peuvent faire référence à une autre édition de ce titre.

    Acheter neuf

    Afficher cet article
    EUR 28,25

    Autre devise

    EUR 6,86 expédition depuis Etats-Unis vers France

    Destinations, frais et délais

    Résultats de recherche pour Security Principles for PHP Applications: A php[architect]...

    Image d'archives

    Mann, Eric
    Edité par php[architect], 2017
    ISBN 10 : 1940111617 ISBN 13 : 9781940111612
    Neuf Couverture souple

    Vendeur : California Books, Miami, FL, Etats-Unis

    Évaluation du vendeur 5 sur 5 étoiles Evaluation 5 étoiles, En savoir plus sur les évaluations des vendeurs

    Etat : New. N° de réf. du vendeur I-9781940111612

    Contacter le vendeur

    Acheter neuf

    EUR 28,25
    Autre devise
    Frais de port : EUR 6,86
    De Etats-Unis vers France
    Destinations, frais et délais

    Quantité disponible : Plus de 20 disponibles

    Ajouter au panier

    Image fournie par le vendeur

    Mann, Eric
    Edité par PHP[Architect] 12/18/2017, 2017
    ISBN 10 : 1940111617 ISBN 13 : 9781940111612
    Neuf Paperback or Softback

    Vendeur : BargainBookStores, Grand Rapids, MI, Etats-Unis

    Évaluation du vendeur 5 sur 5 étoiles Evaluation 5 étoiles, En savoir plus sur les évaluations des vendeurs

    Paperback or Softback. Etat : New. Security Principles for PHP Applications: A php[architect] guide 0.78. Book. N° de réf. du vendeur BBS-9781940111612

    Contacter le vendeur

    Acheter neuf

    EUR 27,65
    Autre devise
    Frais de port : EUR 10,72
    De Etats-Unis vers France
    Destinations, frais et délais

    Quantité disponible : 5 disponible(s)

    Ajouter au panier

    Image fournie par le vendeur

    Mann, Eric
    Edité par LIGHTNING SOURCE INC, 2017
    ISBN 10 : 1940111617 ISBN 13 : 9781940111612
    Neuf Couverture souple

    Vendeur : moluna, Greven, Allemagne

    Évaluation du vendeur 5 sur 5 étoiles Evaluation 5 étoiles, En savoir plus sur les évaluations des vendeurs

    Etat : New. N° de réf. du vendeur 905890088

    Contacter le vendeur

    Acheter neuf

    EUR 33,51
    Autre devise
    Frais de port : EUR 9,70
    De Allemagne vers France
    Destinations, frais et délais

    Quantité disponible : Plus de 20 disponibles

    Ajouter au panier

    Image d'archives

    Eric Mann
    Edité par PHP[Architect], 2017
    ISBN 10 : 1940111617 ISBN 13 : 9781940111612
    Neuf Paperback / softback
    impression à la demande

    Vendeur : THE SAINT BOOKSTORE, Southport, Royaume-Uni

    Évaluation du vendeur 5 sur 5 étoiles Evaluation 5 étoiles, En savoir plus sur les évaluations des vendeurs

    Paperback / softback. Etat : New. This item is printed on demand. New copy - Usually dispatched within 5-9 working days 222. N° de réf. du vendeur C9781940111612

    Contacter le vendeur

    Acheter neuf

    EUR 41,08
    Autre devise
    Frais de port : EUR 4,98
    De Royaume-Uni vers France
    Destinations, frais et délais

    Quantité disponible : Plus de 20 disponibles

    Ajouter au panier

    Image fournie par le vendeur

    Eric Mann
    ISBN 10 : 1940111617 ISBN 13 : 9781940111612
    Neuf Taschenbuch

    Vendeur : AHA-BUCH GmbH, Einbeck, Allemagne

    Évaluation du vendeur 5 sur 5 étoiles Evaluation 5 étoiles, En savoir plus sur les évaluations des vendeurs

    Taschenbuch. Etat : Neu. Neuware. N° de réf. du vendeur 9781940111612

    Contacter le vendeur

    Acheter neuf

    EUR 41,49
    Autre devise
    Frais de port : EUR 10,99
    De Allemagne vers France
    Destinations, frais et délais

    Quantité disponible : 2 disponible(s)

    Ajouter au panier

    Image d'archives

    Mann, Eric
    Edité par php[architect], 2017
    ISBN 10 : 1940111617 ISBN 13 : 9781940111612
    Neuf Couverture souple

    Vendeur : Lucky's Textbooks, Dallas, TX, Etats-Unis

    Évaluation du vendeur 5 sur 5 étoiles Evaluation 5 étoiles, En savoir plus sur les évaluations des vendeurs

    Etat : New. N° de réf. du vendeur ABLIING23Mar2912160347629

    Contacter le vendeur

    Acheter neuf

    EUR 24,09
    Autre devise
    Frais de port : EUR 64,29
    De Etats-Unis vers France
    Destinations, frais et délais

    Quantité disponible : Plus de 20 disponibles

    Ajouter au panier