b/bonnybooks by cuongnhung1234

Node.js Secure Coding: Mitigate and Weaponize Code Injection Vulnerabilities

Node.js Secure Coding: Mitigate and Weaponize Code Injection Vulnerabilities

English | 2024 | ISBN: NA | 126 Pages | PDF | 16.1 MB

Master the Art of Code Injection in JavaScript by learning

Master the Art of Code Injection in JavaScript by learning
Learn AppSec jargon: RCE, ACE, Arbitrary Code Injection, CVE, CWE, Exfiltration, Exploitation, Attack Vectors and more

How attacks exploit JavaScript applications through insecure Code Injection sinks and sources

Why, how and when eval() and new Function() are a breeding ground for Code Injection attacks

How to exploit require and import as security sinks and gain code execution at runtime in JavaScript SSR and Node.js

How to avoid weak code injection patterns

How JavaScript serialization are often exploited

Demystifying JavaScript sandboxing with Node.js vm module and other vulnerable APIs and how attackers bypass them

Burst the bubble of false sense of security in npm dependencies that promise an isolated sandbox environment for JavaScript

Analyze real-world Code Injection vulnerabilities found in npm packages and how to fix them

Gain security expertise and adopt secure coding best practices in building JavaScript and Node.js applications