
Each chapter in Hacking Exposed:
Web Applications contains a wealth of links to Internet resources related
to the topic of Web security. We've included a sampling of those links here.
We're in the process of organizing this information (and much more from
the rest of the book) into broad topic areas. If you have a suggestion for
this page (vendor-neutral only suggestions, please), send them to joel@webhackingexposed.com.
For a listing of tools and techniques described throughout Hacking Exposed:
Web Applications, see our Tools page.
From Chapter 1: Hacking Web Apps 101
IE Extensions for HTTP Analysis
TamperIE
IEWatch
IE Headers
IE
Developer Toolbar
IE
5 Powertoys for WebDevs
Firefox Extensions for HTTP Analysis
LiveHTTP Headers
Tamper Data
Modify Headers
HTTP/S Proxy Tools
Paros Proxy
WebScarab
Fiddler HTTP Debugging Proxy
Burp Intruder
WatchFire
PowerTools
Command-line Tools
cURL
Netcat
Sslproxy
Openssl
Stunnel
Sample Applications
Bayden Systems' "sandbox"
online shopping application
Foundstone
Hacme Bank and Hacme Books
Specifications
RFC Index Search Engine
HTTP 1.0 RFC 1945
HTTP 1.1 RFC 2616
W3C HyperText Markup Language Home
Page
Uniform Resource Identifiers
(URI): Generic Syntax
HTTPS
SSL (Secure Sockets Layer)
TLS (Transport Layer Security)
eXtensible Markup Language (XML)
WSDL
UDDI
SOAP
General References
OWASP Top 10
Microsoft
ASP
Microsoft ASP.NET
Hypertext Preprocessor (PHP)
Microsoft IIS
Apache
Java
JavaScript
IE
Explorer Bar
Open HTTP/S Proxies
Web Browsers
Internet Explorer
Firefox
|