White Hat Talk Safety study Note (a): World view Security

Source: Internet
Author: User
The first World view Security 1th Chapter My security worldview security three elements: confidentiality, completeness and availability 1. 2. Classification of assets; 3. Threat analysis; 4. Risk analysis; Confirm the solution; Threat Analysis: Risk analysis-dread Model: White Hat Art of War: 1. Security by default blacklist, whitelist principle, minimum privilege principle, 2. Defense-in-depth defense principle in different aspects and different levels; right place to do the right thing; 3. Data is separated from code 4. The principle of unpredictability makes it impossible for an attacker to effectively execute an attack the second Client Script security 2nd Chapter Browser Security Chapter 3rd cross-site Scripting Attack (XSS) Chapter 4th cross sites request forgery (CSRF) 5th Chapter Click Hijack (ClickJacking) 6th Chapter HTML 5 Security Third Server-side Application Security 7th Injection Attack Chapter 8th File Upload Vulnerability 9th Chapter Certification Session Management 10th Chapter access control 11th encryption algorithm and random number 12th Chapter Web Framework Security 13th Chapter Application Layer Denial of Service attack 14th Chapter PHP Security 15th Chapter Web Server Configuration security Fourth article Internet Company Security Operations 16th Chapter Internet Business Security 17th Chapter Security Development Process (SDL) Chapter 18th Security Operations

White Hat Talk Safety study Note (a): World view Security

Contact Us

The content source of this page is from Internet, which doesn't represent Alibaba Cloud's opinion; products and services mentioned on that page don't have any relationship with Alibaba Cloud. If the content of the page makes you feel confusing, please write us an email, we will handle the problem within 5 days after receiving your email.

If you find any instances of plagiarism from the community, please send an email to: info-contact@alibabacloud.com and provide relevant evidence. A staff member will contact you within 5 working days.

A Free Trial That Lets You Build Big!

Start building with 50+ products and up to 12 months usage for Elastic Compute Service

  • Sales Support

    1 on 1 presale consultation

  • After-Sales Support

    24/7 Technical Support 6 Free Tickets per Quarter Faster Response

  • Alibaba Cloud offers highly flexible support services tailored to meet your exact needs.