Real-World Bug Hunting: A Field Guide to Web Hacking
Your guide to discovering, testing, and documenting common web application vulnerabilities
With the news of security breaches and vulnerabilities being exploited every day, enhancing application security through bug bounties has become a critical part of the security economy. This book will show you how you can participate profitably in bug bounty programs.
Starting with an introduction to bug bounty concepts, this book will help you evaluate programs and guide you in preparing for pentesting. You'll then learn about SQLi, NoSQLi, XSS, XXE, and other forms of injecting code. As you progress, you'll create CSRF PoC HTML snippets, discover hidden content (and understand what to do with it once it's found), and develop the tools for automated pentesting work?ows. This book not only covers detailed walk-throughs of discovering and testing vulnerabilities, but also aids in reporting them. You'll learn how to format the information within the context of a bug report that can increase the chances of earning you cash.
By the end of this bug bounty book, you'll have developed the skills you need to identify and participate in the best bug bounty programs and advance in freelance security research.
This book is for developers, hobbyists, pentesters, and anyone with an interest (and some experience) in web application security.
Country | USA |
Brand | Packt Publishing |
Manufacturer | Packt Publishing |
Binding | Paperback |
ReleaseDate | 2018-09-12 |
UnitCount | 1 |
EANs | 9781789344202 |