ikepyonのだめ人間日記

セキュリティに関することを書いていく予定。

Professional Pen Testing For Web Applications (Programmer to Programmer)

Professional Pen Testing for Web Applications (Programmer to Programmer)

Professional Pen Testing for Web Applications (Programmer to Programmer)

なんか面白そう。表紙のスキンヘッドのおっちゃんがいいかもw
昨日の本とあわせてポチっとナしようかなぁ?
http://www.neurofuzz.com/modules/content/index.php?id=2
Amazon.com調べたら、ここも参考にしろって書かれてた。
The List of known surnames is here:
http://www.neurofuzz.com/modules/wfdownloads/visit .php?cid=3&lid=6

The "All_attack.txt" Attack Dictionary can be found at:
http://www.neurofuzz.com/modules/wfdownloads/visit .php?cid=2&lid=9

The latest version of "generateDictionary.pl" is here:
http://www.neurofuzz.com/modules/wfdownloads/visit .php?cid=1&lid=7

Finally the webAppHoneypot VMware image can be found @ Wrox/Wiley:

ftp://anonymous:wrox%40wiley.com@downloads.wileypub.com/0471789666/webAppHoneypot.tar.gz

All_atack.txtは結構使えるかも。