Web Penetration Testing with Kali Linux - Second Edition

Nonfiction, Computers, Operating Systems, Linux, Networking & Communications, Computer Security
Cover of the book Web Penetration Testing with Kali Linux - Second Edition by Juned Ahmed Ansari, Packt Publishing
View on Amazon View on AbeBooks View on Kobo View on B.Depository View on eBay View on Walmart
Author: Juned Ahmed Ansari ISBN: 9781783554003
Publisher: Packt Publishing Publication: June 26, 2016
Imprint: Packt Publishing Language: English
Author: Juned Ahmed Ansari
ISBN: 9781783554003
Publisher: Packt Publishing
Publication: June 26, 2016
Imprint: Packt Publishing
Language: English

Build your defense against web attacks with Kali Linux 2.0

About This Book

  • Gain a deep understanding of the flaws in web applications and exploit them in a practical manner
  • Get hands-on web application hacking experience with a range of tools in Kali Linux 2.0
  • Develop the practical skills required to master multiple tools in the Kali Linux 2.0 toolkit

Who This Book Is For

If you are already working as a network penetration tester and want to expand your knowledge of web application hacking, then this book tailored for you. Those who are interested in learning more about the Kali Sana tools that are used to test web applications will find this book a thoroughly useful and interesting guide.

What You Will Learn

  • Set up your lab with Kali Linux 2.0
  • Identify the difference between hacking a web application and network hacking
  • Understand the different techniques used to identify the flavor of web applications
  • Expose vulnerabilities present in web servers and their applications using server-side attacks
  • Use SQL and cross-site scripting (XSS) attacks
  • Check for XSS flaws using the burp suite proxy
  • Find out about the mitigation techniques used to negate the effects of the Injection and Blind SQL attacks

In Detail

Kali Linux 2.0 is the new generation of the industry-leading BackTrack Linux penetration testing and security auditing Linux distribution. It contains several hundred tools aimed at various information security tasks such as penetration testing, forensics, and reverse engineering.

At the beginning of the book, you will be introduced to the concepts of hacking and penetration testing and will get to know about the tools used in Kali Linux 2.0 that relate to web application hacking. Then, you will gain a deep understanding of SQL and command injection flaws and ways to exploit the flaws. Moving on, you will get to know more about scripting and input validation flaws, AJAX, and the security issues related to AJAX.

At the end of the book, you will use an automated technique called fuzzing to be able to identify flaws in a web application. Finally, you will understand the web application vulnerabilities and the ways in which they can be exploited using the tools in Kali Linux 2.0.

Style and approach

This step-by-step guide covers each topic with detailed practical examples. Every concept is explained with the help of illustrations using the tools available in Kali Linux 2.0.

View on Amazon View on AbeBooks View on Kobo View on B.Depository View on eBay View on Walmart

Build your defense against web attacks with Kali Linux 2.0

About This Book

Who This Book Is For

If you are already working as a network penetration tester and want to expand your knowledge of web application hacking, then this book tailored for you. Those who are interested in learning more about the Kali Sana tools that are used to test web applications will find this book a thoroughly useful and interesting guide.

What You Will Learn

In Detail

Kali Linux 2.0 is the new generation of the industry-leading BackTrack Linux penetration testing and security auditing Linux distribution. It contains several hundred tools aimed at various information security tasks such as penetration testing, forensics, and reverse engineering.

At the beginning of the book, you will be introduced to the concepts of hacking and penetration testing and will get to know about the tools used in Kali Linux 2.0 that relate to web application hacking. Then, you will gain a deep understanding of SQL and command injection flaws and ways to exploit the flaws. Moving on, you will get to know more about scripting and input validation flaws, AJAX, and the security issues related to AJAX.

At the end of the book, you will use an automated technique called fuzzing to be able to identify flaws in a web application. Finally, you will understand the web application vulnerabilities and the ways in which they can be exploited using the tools in Kali Linux 2.0.

Style and approach

This step-by-step guide covers each topic with detailed practical examples. Every concept is explained with the help of illustrations using the tools available in Kali Linux 2.0.

More books from Packt Publishing

Cover of the book Spring Data by Juned Ahmed Ansari
Cover of the book Code-First Development with Entity Framework by Juned Ahmed Ansari
Cover of the book WordPress 3 Site Blueprints by Juned Ahmed Ansari
Cover of the book Building RESTful Web Services with .NET Core by Juned Ahmed Ansari
Cover of the book Learning DHTMLX Suite UI by Juned Ahmed Ansari
Cover of the book Instant PageSpeed Optimization by Juned Ahmed Ansari
Cover of the book Hands-On Enterprise Automation with Python by Juned Ahmed Ansari
Cover of the book Cinema 4D Beginner's Guide by Juned Ahmed Ansari
Cover of the book Instant Liferay Portal 6 Starter by Juned Ahmed Ansari
Cover of the book iOS Development using MonoTouch Cookbook by Juned Ahmed Ansari
Cover of the book Agile IT Security Implementation Methodology by Juned Ahmed Ansari
Cover of the book Haskell Cookbook by Juned Ahmed Ansari
Cover of the book Creating Universes with SAP BusinessObjects by Juned Ahmed Ansari
Cover of the book AngularJS Test-driven Development by Juned Ahmed Ansari
Cover of the book EVE Online: ISK Strategy Guide by Juned Ahmed Ansari
We use our own "cookies" and third party cookies to improve services and to see statistical information. By using this website, you agree to our Privacy Policy