Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



WebApp Sec: Any details on this book?

Any details on this book?

From: Mads Rasmussen <mads_at_opencs.com.br>
Date: Wed, 07 Jul 2004 14:28:08 -0300

Maybe Michael Howard can shed more light on the contents of this
upcoming (August according to Amazon) book:

(the microsoft link for the book doesn't work though and searching for
it at microsoft doesn't bring any meaningful results)

http://cyberforge.com/weblog/aniltj/archive/2003/11/15/167.aspx

Web Application Security Assessment
http://www.microsoft.com/MSPress/books/7194.asp

Examine Microsoft’s structured methodology for reviewing Web
applications for security bugs—from design to deployment—and apply
proven practices and code to your own development efforts. Now you can
benefit from the many lessons Microsoft has learned about testing Web
applications for security bugs. A must-have reference for every Web
developer and tester, this book presents a comprehensive, structured
methodology for identifying and addressing the most common, real-world
security issues for Web applications throughout the development process.
Written by the principal, front-line Web security assessment team at
Microsoft, this guide walks you through each of the critical stages for
effective security testing, including designing for and assessing
security features; identifying security vulnerabilities and executing
the assessment; and enhancing infrastructure security before application
deployment, including best practices for locking down Microsoft® Windows
Server™ 2003, Microsoft Internet Information Services (IIS), and
Microsoft SQL Server. Get the entire book’s sample code via the Web—and
easily apply this expert author team’s techniques and tools to your own
programs.

-- 
Mads Rasmussen, M.Sc.
Open Communications Security
www.opencs.com.br
+55 11 3345 2525
Received on Jul 07 2004
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]