<?xml version="1.0" encoding="UTF-8"?>
<mods xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://www.loc.gov/mods/v3" version="3.1" xsi:schemaLocation="http://www.loc.gov/mods/v3 http://www.loc.gov/standards/mods/v3/mods-3-1.xsd">
  <titleInfo>
    <nonSort>The </nonSort>
    <title>web application hacker's handbook</title>
    <subTitle>finding and exploiting security flaws</subTitle>
  </titleInfo>
  <name type="personal">
    <namePart>Stuttard, Dafydd</namePart>
    <namePart type="date">2011</namePart>
    <role>
      <roleTerm authority="marcrelator" type="text">creator</roleTerm>
    </role>
  </name>
  <name type="personal">
    <namePart>Pinto, Marcus</namePart>
    <namePart type="date">2011</namePart>
  </name>
  <typeOfResource>text</typeOfResource>
  <originInfo>
    <place>
      <placeTerm type="code" authority="marccountry">inu</placeTerm>
    </place>
    <place>
      <placeTerm type="text">Indianapolis, IN</placeTerm>
    </place>
    <place>
      <placeTerm type="text">Chichester</placeTerm>
    </place>
    <publisher>Wiley</publisher>
    <publisher>John Wiley [distributor]</publisher>
    <dateIssued>c2011</dateIssued>
    <dateIssued encoding="marc">2011</dateIssued>
    <edition>2nd ed.</edition>
    <issuance>monographic</issuance>
  </originInfo>
  <language>
    <languageTerm authority="iso639-2b" type="code">eng</languageTerm>
  </language>
  <physicalDescription>
    <form authority="marcform">print</form>
    <extent>xxxiii, 878 p. : ill. ; 24 cm.</extent>
  </physicalDescription>
  <abstract>Provides information on how to discover security flaws in Web applications to defend against hackers.</abstract>
  <tableOfContents>Web application (in) security -- Core defense mechanisms -- Web application technologies -- Mapping the application -- Bypassing client-side controls -- Attacking authentication -- Attacking session management -- Attacking access controls -- Attacking data stores -- Attacking back-end components -- Attacking application logic -- Attacking users : cross-site scripting -- Attacking users : other techniques -- Automating customized attacks -- Exploiting information disclosure -- Attacking native compiled applications -- Attacking application architecture -- Attacking the application server -- Finding vulnerabilities in source code -- A web application hacker's toolkit -- A web application hacker's methodology.</tableOfContents>
  <note type="statement of responsibility">Dafydd Stuttard, Marcus Pinto.</note>
  <note>Previous ed.: 2008.</note>
  <note>Includes index.</note>
  <subject authority="lcsh">
    <topic>Internet</topic>
    <topic>Security measures</topic>
  </subject>
  <subject authority="lcsh">
    <topic>Computer security</topic>
  </subject>
  <subject authority="sears">
    <topic>Internet</topic>
    <topic>Security measures</topic>
  </subject>
  <subject authority="sears">
    <topic>Computer security</topic>
  </subject>
  <classification authority="lcc">TK5105.875.I57 S852 2011</classification>
  <classification authority="ddc" edition="22">005.8 STU</classification>
  <identifier type="isbn">9781118026472 (pbk.)</identifier>
  <identifier type="isbn">1118026470 (pbk.)</identifier>
  <identifier type="isbn" invalid="yes"/>
  <identifier type="isbn" invalid="yes"/>
  <identifier type="isbn" invalid="yes"/>
  <identifier type="lccn">2011934639</identifier>
  <recordInfo>
    <recordContentSource authority="marcorg">UKMGB</recordContentSource>
    <recordCreationDate encoding="marc">110719</recordCreationDate>
    <recordChangeDate encoding="iso8601">20240717141334.0</recordChangeDate>
    <recordIdentifier source="KCU">16878626</recordIdentifier>
    <languageOfCataloging>
      <languageTerm authority="iso639-2b" type="code">eng</languageTerm>
    </languageOfCataloging>
  </recordInfo>
</mods>
