The Basics of Web Hacking : Tools and Techniques to Attack the Web

Saved in:
Bibliographic Details
Title: The Basics of Web Hacking : Tools and Techniques to Attack the Web
Description: The Basics of Web Hacking introduces you to a tool-driven process to identify the most widespread vulnerabilities in Web applications. No prior experience is needed. Web apps are a'path of least resistance'that can be exploited to cause the most damage to a system, with the lowest hurdles to overcome. This is a perfect storm for beginning hackers. The process set forth in this book introduces not only the theory and practical information related to these vulnerabilities, but also the detailed configuration and usage of widely available tools necessary to exploit these vulnerabilities. The Basics of Web Hacking provides a simple and clean explanation of how to utilize tools such as Burp Suite, sqlmap, and Zed Attack Proxy (ZAP), as well as basic network scanning tools such as nmap, Nikto, Nessus, Metasploit, John the Ripper, web shells, netcat, and more. Dr. Josh Pauli teaches software security at Dakota State University and has presented on this topic to the U.S. Department of Homeland Security, the NSA, BlackHat Briefings, and Defcon. He will lead you through a focused, three-part approach to Web security, including hacking the server, hacking the Web app, and hacking the Web user. With Dr. Pauli's approach, you will fully understand the what/where/why/how of the most widespread Web vulnerabilities and how easily they can be exploited with the correct tools. You will learn how to set up a safe environment to conduct these attacks, including an attacker Virtual Machine (VM) with all necessary tools and several known-vulnerable Web application VMs that are widely available and maintained for this very purpose. Once you complete the entire process, not only will you be prepared to test for the most damaging Web exploits, you will also be prepared to conduct more advanced Web hacks that mandate a strong base of knowledge. - Provides a simple and clean approach to Web hacking, including hands-on examples and exercises that are designed to teach you how to hack the server, hack the Web app, and hack the Web user - Covers the most significant new tools such as nmap, Nikto, Nessus, Metasploit, John the Ripper, web shells, netcat, and more! - Written by an author who works in the field as a penetration tester and who teaches Web security classes at Dakota State University
Authors: Josh Pauli
Resource Type: eBook.
Subjects: Computer networks--Security measures, Penetration testing (Computer security), Web sites--Security measures, Web applications--Security measures, Hackers, Computer crimes--Prevention
Categories: COMPUTERS / Security / General, COMPUTERS / Internet / General
Database: eBook Collection (EBSCOhost)
FullText Links:
  – Type: ebook-pdf
Text:
  Availability: 0
Header DbId: nlebk
DbLabel: eBook Collection (EBSCOhost)
An: 573954
RelevancyScore: 1051
AccessLevel: 6
PubType: eBook
PubTypeId: ebook
PreciseRelevancyScore: 1050.81640625
IllustrationInfo
ImageInfo – Size: thumb
  Target: https://rps2images.ebscohost.com/rpsweb/othumb?id=NL$573954$PDF&s=r
– Size: medium
  Target: https://rps2images.ebscohost.com/rpsweb/othumb?id=NL$573954$PDF&s=d
Items – Name: Title
  Label: Title
  Group: Ti
  Data: The Basics of Web Hacking : Tools and Techniques to Attack the Web
– Name: Abstract
  Label: Description
  Group: Ab
  Data: The Basics of Web Hacking introduces you to a tool-driven process to identify the most widespread vulnerabilities in Web applications. No prior experience is needed. Web apps are a'path of least resistance'that can be exploited to cause the most damage to a system, with the lowest hurdles to overcome. This is a perfect storm for beginning hackers. The process set forth in this book introduces not only the theory and practical information related to these vulnerabilities, but also the detailed configuration and usage of widely available tools necessary to exploit these vulnerabilities. The Basics of Web Hacking provides a simple and clean explanation of how to utilize tools such as Burp Suite, sqlmap, and Zed Attack Proxy (ZAP), as well as basic network scanning tools such as nmap, Nikto, Nessus, Metasploit, John the Ripper, web shells, netcat, and more. Dr. Josh Pauli teaches software security at Dakota State University and has presented on this topic to the U.S. Department of Homeland Security, the NSA, BlackHat Briefings, and Defcon. He will lead you through a focused, three-part approach to Web security, including hacking the server, hacking the Web app, and hacking the Web user. With Dr. Pauli's approach, you will fully understand the what/where/why/how of the most widespread Web vulnerabilities and how easily they can be exploited with the correct tools. You will learn how to set up a safe environment to conduct these attacks, including an attacker Virtual Machine (VM) with all necessary tools and several known-vulnerable Web application VMs that are widely available and maintained for this very purpose. Once you complete the entire process, not only will you be prepared to test for the most damaging Web exploits, you will also be prepared to conduct more advanced Web hacks that mandate a strong base of knowledge. - Provides a simple and clean approach to Web hacking, including hands-on examples and exercises that are designed to teach you how to hack the server, hack the Web app, and hack the Web user - Covers the most significant new tools such as nmap, Nikto, Nessus, Metasploit, John the Ripper, web shells, netcat, and more! - Written by an author who works in the field as a penetration tester and who teaches Web security classes at Dakota State University
– Name: Author
  Label: Authors
  Group: Au
  Data: <searchLink fieldCode="AR" term="%22Josh+Pauli%22">Josh Pauli</searchLink>
– Name: TypePub
  Label: Resource Type
  Group: TypPub
  Data: eBook.
– Name: Subject
  Label: Subjects
  Group: Su
  Data: <searchLink fieldCode="DE" term="%22Computer+networks--Security+measures%22">Computer networks--Security measures</searchLink><br /><searchLink fieldCode="DE" term="%22Penetration+testing+%28Computer+security%29%22">Penetration testing (Computer security)</searchLink><br /><searchLink fieldCode="DE" term="%22Web+sites--Security+measures%22">Web sites--Security measures</searchLink><br /><searchLink fieldCode="DE" term="%22Web+applications--Security+measures%22">Web applications--Security measures</searchLink><br /><searchLink fieldCode="DE" term="%22Hackers%22">Hackers</searchLink><br /><searchLink fieldCode="DE" term="%22Computer+crimes--Prevention%22">Computer crimes--Prevention</searchLink>
– Name: SubjectBISAC
  Label: Categories
  Group: Su
  Data: <searchLink fieldCode="ZK" term="%22COMPUTERS+%2F+Security+%2F+General%22">COMPUTERS / Security / General</searchLink><br /><searchLink fieldCode="ZK" term="%22COMPUTERS+%2F+Internet+%2F+General%22">COMPUTERS / Internet / General</searchLink>
PLink https://search.ebscohost.com/login.aspx?direct=true&site=eds-live&db=nlebk&AN=573954
RecordInfo BibRecord:
  BibEntity:
    Classifications:
      – Code: 005.8
        Scheme: ddc
        Type: prePub
    Languages:
      – Code: eng
        Text: English
    Subjects:
      – SubjectFull: Computer networks--Security measures
        Type: general
      – SubjectFull: Penetration testing (Computer security)
        Type: general
      – SubjectFull: Web sites--Security measures
        Type: general
      – SubjectFull: Web applications--Security measures
        Type: general
      – SubjectFull: Hackers
        Type: general
      – SubjectFull: Computer crimes--Prevention
        Type: general
    Titles:
      – TitleFull: The Basics of Web Hacking : Tools and Techniques to Attack the Web
        Type: main
  BibRelationships:
    HasContributorRelationships:
      – PersonEntity:
          Name:
            NameFull: Josh Pauli
      – PersonEntity:
          Name:
            NameFull: Josh Pauli
    IsPartOfRelationships:
      – BibEntity:
          Dates:
            – D: 01
              M: 01
              Type: published
              Y: 2013
            – D: 04
              M: 02
              Type: profile
              Y: 2014
          Identifiers:
            – Type: isbn-print
              Value: 9780124166004
            – Type: isbn-electronic
              Value: 9780124166592
          Titles:
            – TitleFull: The Basics of Web Hacking : Tools and Techniques to Attack the Web
              Type: main
ResultId 1