Skip to main content
O'Reilly home
    • Sign In
    • Try Now
    • Teams
      • For business
      • For government
      • For higher ed
    • Individuals
    • Features
      • All features
      • Courses
      • Certifications
      • Interactive learning
      • Live events
      • Answers
      • Insights reporting
    • Blog
    • Content sponsorship

Web Application Security, A Beginner's Guide by Bryan Sullivan, Vincent Liu

Get full access to Web Application Security, A Beginner's Guide and 60K+ other titles, with a free 10-day trial of O'Reilly.

There are also live events, courses curated by job role, and more.

Start your free trial

Contents

ACKNOWLEDGMENTS

INTRODUCTION

PART I Primer

1 Welcome to the Wide World of Web Application Security

Misplaced Priorities and the Need for a New Focus

Network Security versus Application Security: The Parable of the Wizard and the Magic Fruit Trees

Real-World Parallels

Thinking like a Defender

The OWASP Top Ten List

#1. Injection

#2. Cross-Site Scripting (XSS)

#3. Broken Authentication and Session Management

#4. Insecure Direct Object References

#5. Cross-Site Request Forgery

#6. Security Misconfiguration

#7. Insecure Cryptographic Storage

#8. Failure to Restrict URL Access

#9. Insufficient Transport Layer Protection

#10. Unvalidated Redirects and Forwards

Wrapping Up the OWASP Top Ten

Secure Features, Not Just Security Features

Final ...

Get Web Application Security, A Beginner's Guide now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.

Start your free trial

About O’Reilly

  • Teach/write/train
  • Careers
  • Press releases
  • Media coverage
  • Community partners
  • Affiliate program
  • Submit an RFP
  • Diversity
  • O’Reilly for marketers

Support

  • Contact us
  • Newsletters
  • Privacy policy
linkedin-logo youtube-logo

International

  • Australia & New Zealand
  • Hong Kong & Taiwan
  • India
  • Indonesia
  • Japan

Download the O’Reilly App

Take O’Reilly with you and learn anywhere, anytime on your phone and tablet.

Apple app store Google play store

Watch on your big screen

View all O’Reilly videos, Superstream events, and Meet the Expert sessions on your home TV.

Roku Payers and TVs Amazon appstore

Do not sell my personal information

O'Reilly home

© 2023, O’Reilly Media, Inc. All trademarks and registered trademarks appearing on oreilly.com are the property of their respective owners.

Terms of service • Privacy policy • Editorial independence

Don’t leave empty-handed

Get Mark Richards’s Software Architecture Patterns ebook to better understand how to design components—and how they should interact.

It’s yours, free.

Get it now
Cover of Software Architecture Patterns

Check it out now on O’Reilly

Dive in for free with a 10-day trial of the O’Reilly learning platform—then explore all the other resources our members count on to build skills and solve problems every day.

Start your free trial Become a member now