12/25/2011

Improving Web Application Security: Threats and Countermeasures Review

Improving Web Application Security: Threats and Countermeasures
Average Reviews:

(More customer reviews)
I am in the business of writing secure e-biz apps and I found the security and countermeasure strategies in this book to be very thorough.
Now, why the 4 stars? Two reasons - 1. The author(s) are very repetitive. I read the section on countermeasures to SQL injection attacks 3 times in the book.
2. The countermeasures are demonstrated adequately but the attacks are not. For instance, what to do to thwart SQL injection attacks is explained with some examples. But what really is a SQL injection attack; plain description is not enough? Some non-trivial examples of those make sense because then you know the reason for deploying the countermeasures; what are you saving yourself against? Sort of, identifying the enemy.
Nevertheless, a great, comprehensive and practical tutorial.

Click Here to see more reviews about: Improving Web Application Security: Threats and Countermeasures


Gain a solid foundation for designing, building, and configuring security-enhanced, hack-resistant Microsoft® ASP.NET Web applications. This expert guide describes a systematic, task-based approach to security that can be applied to both new and existing applications. It addresses security considerations at the network, host, and application layers for each physical tier-Web server, remote application server, and database server-detailing the security configurations and countermeasures that can help mitigate risks. The information is organized into sections that correspond to both the product life cycle and the roles involved, making it easy for architects, designers, and developers to find the answers they need. All PATTERNS & PRACTICES guides are reviewed and approved by Microsoft engineering teams, consultants, partners, and customers-delivering accurate, real-world information that's been technically validated and tested.


Buy Now

Click here for more information about Improving Web Application Security: Threats and Countermeasures

No comments:

Post a Comment