The Mobile Application Hacker’s Handbook

移动应用黑客手册

计算机应用

售   价:
505.00
发货周期:预计3-5周发货
作      者
出  版 社
出版时间
2015年02月13日
装      帧
平装
ISBN
9781118958506
复制
页      码
816
语      种
英文
综合评分
暂无评分
我 要 买
- +
库存 49 本
  • 图书详情
  • 目次
  • 买家须知
  • 书评(0)
  • 权威书评(0)
图书简介
The book will contain a number of sections addressing mobile application security issues on the Apple iOS, Google Android, Blackberry 10 and Windows Mobile platforms. In addition to this we propose to include sections on cross-platform Mobile Enterprise Application Platform Apps and a generic mobile application testing methodology. Insecure data storage - understanding the different types of client-side storage for each platform and how these can be identified. This will include source code demonstrating insecure implementations and case studies of real world Apps. Broken cryptography - understanding how poorly implemented cryptography can be defeated. This will include source code examples of insecure implementations. Insufficient transport layer protection - detailing how to identify insecure transport security and perform practical attacks against it. This will include practical examples on how to setup an environment for identifying such insecurities, insecure code examples and advice on implementing protection mechanisms. Data leakage -  understanding the types of different unintentional data leakages that can arise on each of the different platforms, including caches, keystrokes, logging, images and browser data stores. Injection attacks - detailing the various injection attacks that can occur in mobile Apps, including but not limited to SQL injection, Cross-Site Scripting, XML injection and file inclusion vulnerabilities. This will include practical examples of how to perform these attacks, case studies of real world Apps and advice on remedial action. Bypassing security controls - detailing how to bypass various security controls such as but not limited to jailbreak/root detection, tamper detection, runtime protection and anti-debugging. Practical examples of how to develop extensions to perform these attacks, including detailed instructions on how to use existing tools. Cross Platform Apps - providing detailed information on how cross platform Apps work, the different attack categories that apply to these Apps and detailing practical steps to evaluate and exploit these vulnerabilities. This will include case studies from various MEAP applications and source code examples for various exploit payloads. Mobile App Testing Methodology - describing a detailed and proven methodology that introduces a thorough and comprehensive guide to assessing the security of mobile applications.
本书暂无推荐
本书暂无推荐
看了又看
  • 上一个
  • 下一个