TOP
英國出版界指標大獎肯定!A.F. Steadman 獲年度作家,《史坎德》系列帶你踏上熱血奇幻旅程
Web Application Penetration Testing: Hacking Modern Web Apps with OWASP, Burp Suite, RCE, SQLi, and XSS in Practice
滿額折

Web Application Penetration Testing: Hacking Modern Web Apps with OWASP, Burp Suite, RCE, SQLi, and XSS in Practice

商品資訊

定價
:NT$ 816 元
無庫存,下單後進貨(到貨天數約30-45天)
下單可得紅利積點 :24 點
商品簡介

商品簡介

RedOps Toolkit: Web Application Penetration Testing
Hacking Modern Web Apps with OWASP, Burp Suite, RCE, SQLi, and XSS in Practice

Master modern web application hacking through real-world techniques, powerful tools, and step-by-step labs.

This hands-on guide is your practical roadmap to web application penetration testing using the most relevant tools, frameworks, and exploit techniques today. Designed for security testers, bug bounty hunters, and ethical hackers, this book walks you through the process of discovering and exploiting real-world web vulnerabilities-just like the professionals do.

What You'll Learn:
  • How to identify and exploit vulnerabilities in modern web apps

  • Effective use of Burp Suite Pro, sqlmap, XSStrike, ffuf, and kiterunner

  • Advanced testing for authentication bypass, IDOR, SSRF, and JWT manipulation

  • Exploiting the OWASP Top 10, including SQL Injection, XSS, Broken Access Control, and RCE

  • Building and using a personal lab with DVWA, Juice Shop, and Docker

  • Writing professional vulnerability reports and handling responsible disclosure


Tools & Techniques Covered:
  • Burp Suite Pro (macros, Collaborator, extensions like Logger++ and Autorize)

  • Fuzzing endpoints, headers, and parameters

  • Manual and automated SQL injection (sqlmap)

  • Remote Code Execution via command injection and SSTI

  • Session hijacking, token tampering, and deserialization attacks


Realistic Case Studies Included:
  • Multi-step SQLi exploitation in DVWA

  • Full attack path in Juice Shop-from recon to RCE

  • Chaining bugs: auth bypass + IDOR + stored XSS

This book is tailored for security professionals, penetration testers, and bug bounty practitioners looking to enhance their skills in a focused, modern, and lab-based way. Whether you're just transitioning into web app security or sharpening your red team skills, this book equips you with the workflows and mindset of an offensive security expert.

Sharpen your skills. Hack like a pro. Learn what really works in the field.
Get your copy of Web Application Penetration Testing and join the RedOps revolution.

購物須知

外文書商品之書封,為出版社提供之樣本。實際出貨商品,以出版社所提供之現有版本為主。部份書籍,因出版社供應狀況特殊,匯率將依實際狀況做調整。

無庫存之商品,在您完成訂單程序之後,將以空運的方式為你下單調貨。為了縮短等待的時間,建議您將外文書與其他商品分開下單,以獲得最快的取貨速度,平均調貨時間為1~2個月。

為了保護您的權益,「三民網路書店」提供會員七日商品鑑賞期(收到商品為起始日)。

若要辦理退貨,請在商品鑑賞期內寄回,且商品必須是全新狀態與完整包裝(商品、附件、發票、隨貨贈品等)否則恕不接受退貨。

定價:100 816
無庫存,下單後進貨
(到貨天數約30-45天)

暢銷榜

客服中心

收藏

會員專區