Hunting security bugs

Bibliographic Details
Main Authors: Gallagher, Tom (Author), Jeffries, Bryan (Author), Landauer, Lawrence (Author)
Format: Book
Language:English
Published: Redmond, WA : Microsoft Press , c2006
Series:Secure software development series
Subjects:

MARC

LEADER 00000cam a2200000 7i4500
001 0000057900
005 20090517093000.0
008 090225s2006 wau eng
020 |a 073562187X ( pbk.) 
020 |a 9780735621879 (pbk.) 
090 0 0 |a QA76.9.A25   |b G356 2006 
100 1 |a Gallagher, Tom ,   |e author 
245 1 0 |a Hunting security bugs   |c Tom Gallagher, Bryan Jeffries and Lawrence Landauer 
260 |a Redmond, WA :   |b Microsoft Press ,   |c c2006 
300 |a xxv, 559 p. :   |b ill. ;   |c 23 cm. 
440 0 |a Secure software development series 
504 |a Includes index 
505 0 |a 1. General approach to security testing -- 2. Using threat models for security testing -- 3. Finding entry points -- 4. Becoming a malicious client -- 5. Becoming a malicious server -- 6. Spoofing -- 7. Information disclosure -- 8. Buffer overflows and stack and heap manipulation -- 9. Format string attacks -- 10. HTML scripting attacks -- 11. XML issues -- 12. Canonicalization issues -- 13. Finding weak permissions -- 14. Denial of service attacks -- 15. Managed code issues -- 16. SQL injection -- 17. Observation and reserve engineering -- 18. ActiveX repurposing attacks -- 19. Additional repurposing attacks -- 20. Reporting security bugs 
650 0 |a Computer networks   |x Security measures 
650 0 |a Computer security 
650 0 |a Computer software   |x Testing 
700 1 |a Jeffries, Bryan ,   |e author 
700 1 |a Landauer, Lawrence ,   |e author 
999 |a 1000119451   |b Book   |c OPEN SHELF (30 DAYS)   |e Tembila Campus