Foundations of Security: What Every Programmer Needs to Know

Christoph Kern, Anita Kesavan, Neil Daswani

  • 出版商: Apress
  • 出版日期: 2007-02-15
  • 售價: $2,820
  • 貴賓價: 9.5$2,679
  • 語言: 英文
  • 頁數: 292
  • 裝訂: Paperback
  • ISBN: 1590597842
  • ISBN-13: 9781590597842
  • 相關分類: 資訊安全
  • 海外代購書籍(需單獨結帳)

買這商品的人也買了...

商品描述

Description

Foundations of Security: What Every Programmer Needs to Know teaches new and current software professionals state-of-the-art software security design principles, methodology, and concrete programming techniques they need to build secure software systems. Once you're enabled with the techniques covered in this book, you can start to alleviate some of the inherent vulnerabilities that make today's software so susceptible to attack. The book uses web servers and web applications as running examples throughout the book.

For the past few years, the Internet has had a "wild, wild west" flavor to it. Credit card numbers are stolen in massive numbers. Commercial web sites have been shut down by Internet worms. Poor privacy practices come to light and cause great embarrassment to the corporations behind them. All these security-related issues contribute at least to a lack of trust and loss of goodwill. Often there is a monetary cost as well, as companies scramble to clean up the mess when they get spotlighted by poor security practices.

It takes time to build trust with users, and trust is hard to win back. Security vulnerabilities get in the way of that trust. Foundations of Security: What Every Programmer Needs To Know helps you manage risk due to insecure code and build trust with users by showing how to write code to prevent, detect, and contain attacks.

  • The lead author cofounded the Stanford Center for Professional Development Computer Security Certification.
  •  
  • This book teaches you how to be more vigilant and develop a sixth sense for identifying and eliminating potential security vulnerabilities.
  •  
  • You'll receive hands-on code examples for a deep and practical understanding of security.
  •  
  • You'll learn enough about security to get the job done.

商品描述(中文翻譯)

《安全基礎:每位程式設計師都需要了解的知識》教授新舊軟體專業人員最先進的軟體安全設計原則、方法論和具體的程式編寫技巧,以建立安全的軟體系統。一旦您掌握了本書介紹的技巧,您就可以開始減輕使當今軟體易受攻擊的固有弱點。本書在整本書中使用網頁伺服器和網頁應用程式作為運行示例。

過去幾年,互聯網呈現出一種「西部荒野」的風格。信用卡號碼大量被盜取。商業網站被互聯網蠕蟲關閉。糟糕的隱私保護措施曝光,給背後的公司帶來巨大尷尬。所有這些與安全相關的問題至少都導致了信任的缺乏和商譽的損失。通常還會有一定的經濟成本,因為公司在被揭示糟糕的安全措施時,必須匆忙清理混亂。

建立與用戶的信任需要時間,而且很難重新贏回。安全漏洞妨礙了這種信任。《安全基礎:每位程式設計師都需要了解的知識》通過展示如何編寫代碼以防止、檢測和遏制攻擊,幫助您管理因不安全代碼而產生的風險,並與用戶建立信任。


  • 主要作者是斯坦福大學專業發展計劃計算機安全認證的創始人之一。

  • 本書教您如何更加警覺,培養識別和消除潛在安全漏洞的第六感。

  • 您將獲得實用的代碼示例,深入了解並實踐安全。

  • 您將學到足夠的安全知識來完成工作。