نام کتاب
Defending APIs

Uncover advanced defense techniques to craft secure application programming interfaces

Colin Domoney

Paperback384 Pages
PublisherPackt
Edition1
LanguageEnglish
Year2024
ISBN9781804617120
1K
A5072
انتخاب نوع چاپ:
جلد سخت
643,000ت
0
جلد نرم
583,000ت
0
طلق پاپکو و فنر
593,000ت
0
مجموع:
0تومان
کیفیت متن:اورجینال انتشارات
قطع:B5
رنگ صفحات:دارای متن و کادر رنگی
پشتیبانی در روزهای تعطیل!
ارسال به سراسر کشور

#Application_programming_interfaces

#APIs

#Security

توضیحات

Get up to speed with API security using this comprehensive guide full of best practices for building safer and secure APIs


Key Features

  • Develop a profound understanding of the inner workings of APIs with a sharp focus on security
  • Learn the tools and techniques employed by API security testers and hackers, establishing your own hacking laboratory
  • Master the art of building robust APIs with shift-left and shield-right approaches, spanning the API lifecycle


Book Description

Along with the exponential growth of API adoption comes a rise in security concerns about their implementation and inherent vulnerabilities. For those seeking comprehensive insights into building, deploying, and managing APIs as the first line of cyber defense, this book offers invaluable guidance. Written by a seasoned DevSecOps expert, Defending APIs addresses the imperative task of API security with innovative approaches and techniques designed to combat API-specific safety challenges.


The initial chapters are dedicated to API building blocks, hacking APIs by exploiting vulnerabilities, and case studies of recent breaches, while the subsequent sections of the book focus on building the skills necessary for securing APIs in real-world scenarios.


Guided by clear step-by-step instructions, you'll explore offensive techniques for testing vulnerabilities, attacking, and exploiting APIs. Transitioning to defensive techniques, the book equips you with effective methods to guard against common attacks. There are plenty of case studies peppered throughout the book to help you apply the techniques you're learning in practice, complemented by in-depth insights and a wealth of best practices for building better APIs from the ground up.


By the end of this book, you'll have the expertise to develop secure APIs and test them against various cyber threats targeting APIs.


What you will learn

  • Explore the core elements of APIs and their collaborative role in API development
  • Understand the OWASP API Security Top 10, dissecting the root causes of API vulnerabilities
  • Obtain insights into high-profile API security breaches with practical examples and in-depth analysis
  • Use API attacking techniques adversaries use to attack APIs to enhance your defensive strategies
  • Employ shield-right security approaches such as API gateways and firewalls
  • Defend against common API vulnerabilities across several frameworks and languages, such as .NET, Python, and Java


Who this book is for

This book is for application security engineers, blue teamers, and security professionals looking forward to building an application security program targeting API security. For red teamers and pentesters, it provides insights into exploiting API vulnerabilities. API developers will benefit understanding, anticipating, and defending against potential threats and attacks on their APIs. While basic knowledge of software and security is required to understand the attack vectors and defensive techniques explained in the book, a thorough understanding of API security is all you need to get started.


Table of Contents

  1. What Is API Security?
  2. API Access Control
  3. Understanding Common API Vulnerabilities
  4. Case Studies of Recent Breaches
  5. Foundations of Attacking APIs
  6. Discovering APIs
  7. Attacking APIs
  8. Shift-Left for API Security
  9. Defending against Common Vulnerabilities
  10. Securing Your Frameworks and Languages
  11. Shield-Right for APIs with Runtime Protection
  12. Securing Microservices
  13. Implementing an API Security Strategy


About the Author

Colin Domoney (BSc. MSc. CSSLP, CEH) is an API Security Research Specialist and Developer Advocate with deep expertise in the development of secure software. As VP of AppSec, he took on the challenge of securing software on a large scale and running the global AppSec program at Deutsche Bank. At Veracode, as an evangelist, he produces countless webinars, and blog posts, and speak globally at conferences. Currently, he has embraced the challenge of securing APIs with 42Crunch where he has produced the API industry's first security maturity model and contributed to numerous webinars, talks, and blogs. Currently, he is working on the industry's first defensive API developer training course. He is also the curator of the APISecurity weekly newsletter.

دیدگاه خود را بنویسید
نظرات کاربران (0 دیدگاه)
نظری وجود ندارد.
کتاب های مشابه
React
2,112
Full Stack FastAPI, React, and MongoDB
597,000 تومان
Python
1,334
Python API Development Fundamentals
570,000 تومان
Flask
1,004
Building REST APIs with Flask
390,000 تومان
API
3,505
Designing Web APIs with Strapi
563,000 تومان
API
1,504
Defending APIs
583,000 تومان
API
1,059
API Analytics for Product Managers
528,000 تومان
API
1,659
Hands-On RESTful API Design Patterns and Best Practices
562,000 تومان
Python
1,337
Building Python Microservices with FastAPI
706,000 تومان
Design Patterns
580
RESTful API Design Patterns and Best Practices
607,000 تومان
هک و امنیت
1,518
API Security in Action
955,000 تومان
قیمت
منصفانه
ارسال به
سراسر کشور
تضمین
کیفیت
پشتیبانی در
روزهای تعطیل
خرید امن
و آسان
آرشیو بزرگ
کتاب‌های تخصصی
هـر روز با بهتــرین و جــدیــدتـرین
کتاب های روز دنیا با ما همراه باشید
آدرس
پشتیبانی
مدیریت
ساعات پاسخگویی
درباره اسکای بوک
دسترسی های سریع
  • راهنمای خرید
  • راهنمای ارسال
  • سوالات متداول
  • قوانین و مقررات
  • وبلاگ
  • درباره ما
چاپ دیجیتال اسکای بوک. 2024-2022 ©