Securing PHP Apps (eBook)

(Autor)

eBook Download: PDF
2016 | 1st ed.
XIV, 52 Seiten
Apress (Verlag)
978-1-4842-2120-4 (ISBN)

Lese- und Medienproben

Securing PHP Apps -  Ben Edmunds
Systemvoraussetzungen
22,99 inkl. MwSt
  • Download sofort lieferbar
  • Zahlungsarten anzeigen

Secure your PHP-based web applications with this compact handbook. You'll get clear, practical and actionable details on how to secure various parts of your PHP web application. You'll also find scenarios to handle and improve existing legacy issues.

Is your PHP app truly secure? Let's make sure you get home on time and sleep well at night. Learn the security basics that a senior developer usually acquires over years of experience, all condensed down into one quick and easy handbook. Do you ever wonder how vulnerable you are to being hacked? Do you feel confident about storing your users' sensitive information? Imagine feeling confident in the integrity of your software when you store your users' sensitive data. No more fighting fires with lost data, no more late nights, your application is secure.

Well, this short book will answer your questions and give you confidence in being able to secure your and other PHP web apps.

What You'll Learn
Never trust your users - escape all input
  • HTTPS/SSL/BCA/JWH/SHA and other random letters: some of them actually matter
  • How to handle password encryption and storage for everyone
  • What are authentication, access control, and safe file handing and how to implement them
  • What are safe defaults, cross site scripting and other popular hacks 
  • Who This Book Is For

    This book is for experienced PHP coders, programmers, developers.


    Ben Edmunds leads development teams to create cutting-edge web and mobile applications. He is an active leader, developer, and speaker in various development communities, especially the CodeIgniter and Laravel PHP framework communities. He has been developing software professionally for over 10 years and in that time has worked on everything from robotics to government projects.  Lastly, he's a PHP Town Hall podcast co-host. 

    Secure your PHP-based web applications with this compact handbook. You'll get clear, practical and actionable details on how to secure various parts of your PHP web application. You'll also find scenarios to handle and improve existing legacy issues.Is your PHP app truly secure? Let's make sure you get home on time and sleep well at night. Learn the security basics that a senior developer usually acquires over years of experience, all condensed down into one quick and easy handbook. Do you ever wonder how vulnerable you are to being hacked? Do you feel confident about storing your users' sensitive information? Imagine feeling confident in the integrity of your software when you store your users' sensitive data. No more fighting fires with lost data, no more late nights, your application is secure.Well, this short book will answer your questions and give you confidence in being able to secure your and other PHP web apps.What You'll LearnNever trust your users - escape all inputHTTPS/SSL/BCA/JWH/SHA and other random letters: some of them actually matterHow to handle password encryption and storage for everyoneWhat are authentication, access control, and safe file handing and how to implement themWhat are safe defaults, cross site scripting and other popular hacks Who This Book Is ForExperienced PHP coders, programmers, developers.

    Ben Edmunds leads development teams to create cutting-edge web and mobile applications. He is an active leader, developer, and speaker in various development communities, especially the CodeIgniter and Laravel PHP framework communities. He has been developing software professionally for over 10 years and in that time has worked on everything from robotics to government projects.  Lastly, he's a PHP Town Hall podcast co-host. 

    ConstructorFormatErrataSample CodeAbout the AuthorChapter 1 - Never Trust Your Users. Sanitize ALL Input!SQL InjectionMass AssignmentTypecastingSanitizing OutputChapter Two - HTTPS/SSL/BCA/JWH/SHA and Other Random Letters; Some of Them Actually Matter.What is HTTPSLimitationsWhen to use HTTPSImplementing HTTPSPathsChapter 3 - Password Encryption and Storage for EveryoneThe Small PrintWhat is a Hash?Popular AttacksA Pinch of SaltHashing AlgorithmsStorageValidationPutting It All TogetherBrute Force ProtectionUpgrading Legacy SystemsResourcesChapter 4 - Authentication, Access Control, and Safe File HandingAuthenticationAccess ControlValidating RedirectsNever Trust Yourself - Use Safe DefaultsNever Trust Dynamic Typing. It’s Not Your Friend.Cross Site ScriptingAttack Entry PointsCross Site Request ForgeryMultiple Form SubmitsRace ConditionsOutdated Libraries / External ProgramsDestructorAbout the AuthorSecurity Audit / Consulting

    Erscheint lt. Verlag 26.7.2016
    Zusatzinfo XIV, 52 p. 2 illus. in color.
    Verlagsort Berkeley
    Sprache englisch
    Themenwelt Informatik Netzwerke Sicherheit / Firewall
    Mathematik / Informatik Informatik Programmiersprachen / -werkzeuge
    Mathematik / Informatik Informatik Web / Internet
    Schlagworte Apps • PHP • Scripting • secure • security • Web
    ISBN-10 1-4842-2120-6 / 1484221206
    ISBN-13 978-1-4842-2120-4 / 9781484221204
    Haben Sie eine Frage zum Produkt?
    PDFPDF (Wasserzeichen)
    Größe: 4,2 MB

    DRM: Digitales Wasserzeichen
    Dieses eBook enthält ein digitales Wasser­zeichen und ist damit für Sie persona­lisiert. Bei einer missbräuch­lichen Weiter­gabe des eBooks an Dritte ist eine Rück­ver­folgung an die Quelle möglich.

    Dateiformat: PDF (Portable Document Format)
    Mit einem festen Seiten­layout eignet sich die PDF besonders für Fach­bücher mit Spalten, Tabellen und Abbild­ungen. Eine PDF kann auf fast allen Geräten ange­zeigt werden, ist aber für kleine Displays (Smart­phone, eReader) nur einge­schränkt geeignet.

    Systemvoraussetzungen:
    PC/Mac: Mit einem PC oder Mac können Sie dieses eBook lesen. Sie benötigen dafür einen PDF-Viewer - z.B. den Adobe Reader oder Adobe Digital Editions.
    eReader: Dieses eBook kann mit (fast) allen eBook-Readern gelesen werden. Mit dem amazon-Kindle ist es aber nicht kompatibel.
    Smartphone/Tablet: Egal ob Apple oder Android, dieses eBook können Sie lesen. Sie benötigen dafür einen PDF-Viewer - z.B. die kostenlose Adobe Digital Editions-App.

    Buying eBooks from abroad
    For tax law reasons we can sell eBooks just within Germany and Switzerland. Regrettably we cannot fulfill eBook-orders from other countries.

    Mehr entdecken
    aus dem Bereich
    Das Praxishandbuch zu Krisenmanagement und Krisenkommunikation

    von Holger Kaschner

    eBook Download (2024)
    Springer Fachmedien Wiesbaden (Verlag)
    34,99
    Methodische Kombination von IT-Strategie und IT-Reifegradmodell

    von Markus Mangiapane; Roman P. Büchler

    eBook Download (2024)
    Springer Vieweg (Verlag)
    42,99