1 Welcome to the Wide World of Web Application Security
Misplaced Priorities and the Need for a New Focus
Network Security versus Application Security: The Parable of the Wizard and the Magic Fruit Trees
#2. Cross-Site Scripting (XSS)
#3. Broken Authentication and Session Management
#4. Insecure Direct Object References
#5. Cross-Site Request Forgery
#7. Insecure Cryptographic Storage
#8. Failure to Restrict URL Access
#9. Insufficient Transport Layer Protection
#10. Unvalidated Redirects and Forwards
Secure Features, Not Just Security Features
Get Web Application Security, A Beginner's Guide now with the O’Reilly learning platform.
O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.