The Web Application Hacker's Handbook Discovering and Exploiting Security Flaws

Authors: Dafydd Stuttard Marcus Pinto

Pages: 771

Publisher: Wiley

ISBN13: 9789780470173

Our primary debt is to the directors and our other colleagues at Next Genera-
tion Security Software, who have provided a creative working environment,
promoted sharing of knowledge, and supported us during the months spent producing this book. In particular, we received direct assistance from Chris
Anley, Dave Armstrong, Dominic Beecher, David Litchfield, Adam Matthews,Dave Spencer, and Peter Winter-Smith.

In addition to our immediate colleagues, we are greatly indebted to the
wider community of researchers who have shared their ideas and contributed
to the collective understanding of web application security issues that exists
today. Because this is a practical handbook rather than a work of scholarship,
we deliberately avoided filling it with a thousand citations of influential arti-cles, books, and blog postings which spawned the ideas involved. We hope
that people whose work we discuss anonymously are content with the general
credit given here.

We are grateful to the people at Wiley, in particular to Carol Long for enthusi-
astically supporting our project from the outset, to Adaobi Obi Tulton for helping to polish our manuscript and coaching us in the quirks of “American English,”and to Christine O’Connor’s team for delivering a first-rate production.

A large measure of thanks is due to our respective partners, Becky and
Susan, for tolerating the significant distraction and time involved in producing
a book of this size. Both authors are indebted to the people who led us into our unusual line of work. Dafydd would like to thank Martin Law. Martin is a great guy who first taught me how to hack, and encouraged me to spend my time developing techniques and tools for attacking applications. Marcus would like to thank his parents for a great many things, a significant one being getting me into computers.

I’ve been getting into computers ever since.