10.07.2015 Views

ASP Security by Soroush Dalili - Intelligent Exploit

ASP Security by Soroush Dalili - Intelligent Exploit

ASP Security by Soroush Dalili - Intelligent Exploit

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

The Web Application Hacker’sشكل 2-2آمار آسيب پذيري هاي برنامه هاي كاربردي تحت وب از كتابHandbookبدين ترتيب مهمترين آسيب پذيري ها با توجه به اين تحقيقات به صورت زير خواهند بود:‏1. Cross Site Scripting (XSS)2. Injection Flaws3. Malicious File Execution4. Insecure Direct Object Reference (Broken Access Control)5. Cross Site Request Forgery (CSRF)6. Information Leakage and Improper Error Handling7. Broken Authentication and Session Management8. Insecure Cryptographic Storage9. Insecure Communications10. Failure to Restrict URL Access (Broken Access Control)كه در ادامه به توضيح آنها مي پردازيم.‏37

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!