Hack Proofing XML
'ken'@FTU, Everett F. Carter, Curtis Franklin, Larry Loeb, Jeremy Faircloth
Résumé
XML is quickly becoming the universal protocol for transferring information from site to site via HTTP. Whereas HTML will continue to be the language for displaying documents on the Internet, developers will find new and interesting ways to harness the power of XML to transmit, exchange, and manipulate data using XML. Validation of the XML document and of the messages going to that document is the first line of defense in hack proofing XML. The same properties that make XML a powerful language for defining data across systems make it vulnerable to attacks. More important, since many firewalls will pass XML data without filtering, a poorly constructed and invalidated document can constitute a serious system-level vulnerability. Hack Proofing® XML will show you the ins and outs of XML and .NET security.
Contents- Chapter 1 The Zen of Hack Proofing
- Chapter 2 Classes of Attack
- Chapter 3 Reviewing the Fundamentals of XML
- Chapter 4 Document Type: The Validation Gateway
- Chapter 5 XML Digital Signatures
- Chapter 6 Encryption in XML
- Chapter 7 Role-Based Access Control
- Chapter 8 Understanding .NET and XML Security
- Chapter 9 Reporting Security Problems
L'auteur - 'ken'@FTU
'ken'@FTU has helped suppliers to conduct B2B XML transactions with large e-commerce portals including Ariba, as well as others. He is also credited with discovering security vulnerabilities in software products by major vendors such as Microsoft and IBM. Currently he works at a bank doing technical auditing and penetrating testing of their networks, systems and applications.
L'auteur - Everett F. Carter
Dr. Everett F. (Skip) Carter, Jr. is President of Taygeta Network Security Services (a division of Taygeta Scientific Inc.). He is also CEO/CTO of CaphNet, Inc. Skip holds both a Ph.D. and master's in Applied Physics from Harvard University. Skip has authored several articles for Dr. Dobb's Journal, and Computer Language magazines as well a numerous scientific articles and is a past columnist for Forth Dimensions magazine.
L'auteur - Curtis Franklin
Curtis Franklin, Jr. is President and Editorial Director of CF2 Group. CF2 Group is a technology assessment and communications firm headquartered in Gainesville, FL. Curtis is the Founder of two major industry testing labs, the BYTE Testing Lab and Client/Server Labs. He has published over 1,400 articles in his career, and has led performance and technology assessment projects for clients including IBM, Intel, Microsoft
L'auteur - Larry Loeb
technical editor
Caractéristiques techniques
PAPIER | |
Éditeur(s) | Syngress |
Auteur(s) | 'ken'@FTU, Everett F. Carter, Curtis Franklin, Larry Loeb, Jeremy Faircloth |
Parution | 28/08/2002 |
Nb. de pages | 378 |
Format | 18,8 x 23,6 |
Couverture | Broché |
Poids | 705g |
Intérieur | Noir et Blanc |
EAN13 | 9781931836500 |
ISBN13 | 978-1-931836-50-0 |
Avantages Eyrolles.com
Consultez aussi
- Les meilleures ventes en Graphisme & Photo
- Les meilleures ventes en Informatique
- Les meilleures ventes en Construction
- Les meilleures ventes en Entreprise & Droit
- Les meilleures ventes en Sciences
- Les meilleures ventes en Littérature
- Les meilleures ventes en Arts & Loisirs
- Les meilleures ventes en Vie pratique
- Les meilleures ventes en Voyage et Tourisme
- Les meilleures ventes en BD et Jeunesse
- Informatique Bureautique Réseaux Sécurité
- Informatique Développement d'applications Conception et développement web
- Informatique Développement d'applications Conception et développement web Services Web
- Informatique Développement d'applications Langages HTML
- Informatique Développement d'applications Langages XML
- Informatique Développement d'applications Langages XSLT
- Informatique Réseaux et télecommunications Sécurité réseau Sécurité internet