Web Security, Privacy & Commerce, Second Edition
By Simson Garfinkel
With
Gene Spafford
November 2001
Pages: 786
ISBN 10: 0-596-00045-6 |
ISBN 13: 9780596000455




(Average of 3 Customer Reviews)


Book description
This much expanded new edition explores web security risks and how to minimize them. Aimed at web users, administrators, and content providers, Web Security, Privacy & Commerce covers cryptography, SSL, the Public Key Infrastructure, digital signatures, digital certificates, privacy threats (cookies, log files, web logs, web bugs), hostile mobile code, and web publishing (intellectual property, P3P, digital payments, client-side digital signatures, code signing, PICS).
Full Description
Since the first edition of this classic reference was published, World Wide Web use has exploded and e-commerce has become a daily part of business and personal life. As Web use has grown, so have the threats to our security and privacy--from credit card fraud to routine invasions of privacy by marketers to web site defacements to attacks that shut down popular web sites.
Web Security, Privacy & Commerce goes behind the headlines, examines the major security risks facing us today, and explains how we can minimize them. It describes risks for Windows and Unix, Microsoft Internet Explorer and Netscape Navigator, and a wide range of current programs and products. In vast detail, the book covers:
- Web technology--The technological underpinnings of the modern Internet and the cryptographic foundations of e-commerce are discussed, along with SSL (the Secure Sockets Layer), the significance of the PKI (Public Key Infrastructure), and digital identification, including passwords, digital signatures, and biometrics.
- Web privacy and security for users--Learn the real risks to user privacy, including cookies, log files, identity theft, spam, web logs, and web bugs, and the most common risk, users' own willingness to provide e-commerce sites with personal information. Hostile mobile code in plug-ins, ActiveX controls, Java applets, and JavaScript, Flash, and Shockwave programs are also covered.
- Web server security--Administrators and service providers discover how to secure their systems and web services. Topics include CGI, PHP, SSL certificates, law enforcement issues, and more.
- Web content security--Zero in on web publishing issues for content providers, including intellectual property, copyright and trademark issues, P3P and privacy policies, digital payments, client-side digital signatures, code signing, pornography filtering and PICS, and other controls on web content.
Nearly double the size of the first edition, this completely updated volume is destined to be the definitive reference on Web security risks and the techniques and technologies you can use to protect your privacy, your organization, your system, and your network.
Browse within this book
Cover
| Table of Contents
| Colophon
Featured customer reviews

Web Security, Privacy & Commerce, 2nd Edition Review,
June 11 2003
Submitted by Charlie Russell
[
Respond |
View]
Simson,
You have no idea who I am, but let's say that I'm a computer security
practitioner who has over 20 years in this business of protecting
customer's data, which I call computer security. I'm writing to
compliment you on your book noted in the title of this email. It is a
masterful work that has helped me considerably in understanding the
web environment moreso than ever before. I have recommended it to
many of my associates and friends who are in this business.
Thanks also to Mr. Gene Spafford for his notable contribution.
Speaking for those of us who are trying to help our clientele
understand not only the Web with regard to security practices and
principles, but also to those who do not understand how PKI helps move
this along: thank you!
You both have collaborated to produce a work that is considerably
greater than the 1st Edition. My compliments to others, especially
Ms. Deborah Russell. For what it's worth, I have little time to
understand many of the details that my customers ask of me. It is
through these books that I learn and understand more of the
underpinnings of solutions. Fortunately, developing solutions along
the lines you suggest really works. We are not yet 'there' but when we
are, I will be happy to confirm that your recommendations applied.
If you would be so kind, please pass along my thanks to both Gene
Spafford and Deborah Russell, I would appreciate it (not having their
email address).
Web Security, Privacy & Commerce, 2nd Edition Review,
May 03 2002
Submitted by John D. Alexander
[
Respond |
View]
This is an excellent reference book. It covers security & privacy at several levels 1)The Administrative Level 2) The User Level 3) The Technological Level.
The definitions are very easy to understand. Concise examples are provided. All the major aspects security & privacy are covered including an Appendix with a large ammount of reference material.
Web Security, Privacy & Commerce, 2nd Edition Review,
February 02 2002
Submitted by Anonymous
[
Respond |
View]
Good security source. Real "hands on the job" experience. I would have taken the "Web" out of the title, it goes beyond Web security.
Read all reviews
Media reviews
"This well organized and clearly written book is an essential resource for those concerned with security and privacy issues."
--William Sees, Managing Information, Oct 2002
"Book of the month. This well organized and clearly written book is an essential resource for those concerned with security and privacy issues."
--William Sees, Managing Information, October 2002
"Before you read anything else about Internet security, read this book. Anyone considering use of the Web for commercial purposes, no matter how large or small, should study it. Highly Recommended."
--Major Keary, PC Update, July 2002
Read all reviews