Iron-Clad Java: Building Secure Web Applications (Paperback)
暫譯: 堅如鐵的 Java:構建安全的網頁應用程式 (平裝本)
Jim Manico, August Detlefsen
- 出版商: McGraw-Hill Education
- 出版日期: 2014-09-09
- 售價: $1,870
- 貴賓價: 9.5 折 $1,777
- 語言: 英文
- 頁數: 304
- 裝訂: Paperback
- ISBN: 0071835881
- ISBN-13: 9780071835886
-
相關分類:
Java 相關技術
海外代購書籍(需單獨結帳)
買這商品的人也買了...
-
C 語言程式設計 + C 語言程式技巧問答實戰 (Kernighan: The C Programming Language, 2/e) (雙書合購)$980$980 -
深入淺出設計模式 (Head First Design Patterns)$880$695 -
$945Programming in Python 3: A Complete Introduction to the Python Language (Paperback) -
Embedded Linux 嵌入式系統開發實務, 2/e (Embedded Linux Primer: A Practical Real-World Approach, 2/e)$780$663 -
Inside Windows Debugging: A Practical Guide to Debugging and Tracing Strategies in Windows (Paperback)$1,830$1,793 -
提升程式設計的資料結構力-國際程式設計競賽之資料結構原理、題型、解題技巧與重點解析$500$395 -
財務會計, 2/e (Weygandt: Financial Accounting: IFRS Edition, 2/e)$780$764 -
Robi 洛比 2015/07/28 (No.66) <此為過刊雜誌,恕不接受退貨及取消訂單>$599$569 -
超圖解 Arduino 互動設計入門, 2/e$680$578 -
徹底研究 PhoneGap 跨平台手機程式開發實戰$680$578 -
資料探勘 (Han: Data Mining: Concepts and Techniques, 3/e )$620$589 -
US-100 超音波距離感測器帶溫度補償$150$143 -
物件導向設計模式-可再利用物件導向軟體之要素 (精裝典藏版) (Design Patterns: Elements of Reusable Object-Oriented Software)$550$550 -
養成 iOS 8 App 程式設計實力的 25 堂課-最新 Swift 開發教學(A Practical Guide to Building Your First App from Scratch: Beginning iOS 8 Programming with Swift)$580$452 -
Node.js 的九堂實作課$550$435 -
Android App 程式設計教本之無痛起步 -- 使用 Android Studio 開發環境$550$468 -
The Hacker Playbook 2: Practical Guide To Penetration Testing (Paperback)$1,110$1,055 -
實戰 CentOS 7作業系統(附光碟開機直接可用LiveCD)$420$332 -
OpenCV 程式設計參考手冊$620$490 -
人人都是網站分析師|看穿網站流量的祕密$380$300 -
$474揭秘家用路由器0day漏洞挖掘技術 -
Effective Python 中文版 | 寫出良好 Python 程式的 59 個具體做法 (Effective Python: 59 Specific Ways to Write Better Python)$450$356 -
完整學會 Git, GitHub, Git Server 的24堂課$360$284 -
黑帽 Python | 給駭客與滲透測試者的 Python 開發指南 (Black Hat Python: Python Programming for Hackers and Pentesters)$400$316 -
王者歸來─599 個 C# 企業專案開發完整範例集, 3/e$860$731
相關主題
商品描述
Proven Methods for Building Secure Java-Based Web Applications
Develop, deploy, and maintain secure Java applications using the expert techniques and open source libraries described in this Oracle Press guide. Iron-Clad Java presents the processes required to build robust and secure applications from the start and explains how to eliminate existing security bugs. Best practices for authentication, access control, data protection, attack prevention, error handling, and much more are included. Using the practical advice and real-world examples provided in this authoritative resource, you'll gain valuable secure software engineering skills.
- Establish secure authentication and session management processes
- Implement a robust access control design for multi-tenant web applications
- Defend against cross-site scripting, cross-site request forgery, and clickjacking
- Protect sensitive data while it is stored or in transit
- Prevent SQL injection and other injection attacks
- Ensure safe file I/O and upload
- Use effective logging, error handling, and intrusion detection methods
- Follow a comprehensive secure software development lifecycle
"In this book, Jim Manico and August Detlefsen tackle security education from a technical perspective and bring their wealth of industry knowledge and experience to application designers. A significant amount of thought was given to include the most useful and relevant security content for designers to defend their applications. This is not a book about security theories, it’s the hard lessons learned from those who have been exploited, turned into actionable items for application designers, and condensed into print." ―From the Foreword by Milton Smith, Oracle Senior Principal Security Product Manager, Java
商品描述(中文翻譯)
#### 建立安全的 Java 基礎網路應用程式的有效方法
開發、部署和維護安全的 Java 應用程式,使用本 Oracle Press 指南中描述的專家技術和開源庫。《Iron-Clad Java》介紹了從一開始就建立穩健和安全應用程式所需的過程,並解釋如何消除現有的安全漏洞。書中包含了身份驗證、存取控制、數據保護、攻擊防範、錯誤處理等最佳實踐。透過這本權威資源提供的實用建議和真實案例,您將獲得寶貴的安全軟體工程技能。
- 建立安全的身份驗證和會話管理流程
- 為多租戶網路應用程式實施穩健的存取控制設計
- 防範跨站腳本攻擊、跨站請求偽造和點擊劫持
- 在存儲或傳輸過程中保護敏感數據
- 防止 SQL 注入和其他注入攻擊
- 確保安全的檔案 I/O 和上傳
- 使用有效的日誌記錄、錯誤處理和入侵檢測方法
- 遵循全面的安全軟體開發生命週期
「在這本書中,Jim Manico 和 August Detlefsen 從技術角度探討安全教育,並將他們豐富的行業知識和經驗帶給應用程式設計師。書中花了大量心思來包含對設計師最有用和相關的安全內容,以保護他們的應用程式。這不是一本關於安全理論的書,而是從那些曾遭受攻擊者利用的經驗中提煉出的寶貴教訓,轉化為應用程式設計師可行的行動項目,並濃縮成書。」——摘自 Oracle 高級首席安全產品經理、Java 的 Milton Smith 前言
