- Web Penetration Testing with Kali Linux(Third Edition)
- Gilberto Najera Gutierrez Juned Ahmed Ansari
- 232字
- 2021-06-24 18:44:50
Reasons to guard against attacks on web applications
Some of the most compelling reasons to guard against attacks on web applications are as follows:
- Protecting customer data
- Compliance with law and regulation
- Loss of reputation
- Revenue loss
- Protection against business disruption.
If the web application interacts with and stores credit card information, then it needs to be in compliance with the rules and regulations laid out by Payment Card Industry (PCI). PCI has specific guidelines, such as reviewing all code for vulnerabilities in the web application or installing a WAF in order to mitigate the risk.
When the web application is not tested for vulnerabilities and an attacker gains access to customer data, it can severely affect the brand of the company if a customer files a lawsuit against the company for not adequately protecting their data. It may also lead to revenue losses, since many customers will move to competitors who might assure better security.
Attacks on web applications may also result in severe disruption of service if it's a DoS attack, if the server is taken offline to clean up the exposed data, or for a forensics investigation. This might be reflected negatively in the financial statements.
These reasons should be enough to convince the senior management of your organization to invest resources in terms of money, manpower, and skills in order to improve the security of your web applications.
- Linux運維實戰:CentOS7.6操作系統從入門到精通
- Linux實戰
- 高性能Linux服務器構建實戰:運維監控、性能調優與集群應用
- 玩到極致 iPhone 4S完全攻略
- Kali Linux 2018:Windows Penetration Testing
- 注冊表應用完全DIY
- Application Development in iOS 7
- Linux服務器配置與管理
- Mastering Windows 8 C++ App Development
- Java EE 7 Developer Handbook
- VMware Horizon Mirage Essentials
- OpenSolaris紅寶書
- Unity AR/VR開發:實戰高手訓練營
- SAP后勤模塊實施攻略:SAP在生產、采購、銷售、物流中的應用
- OpenSolaris系統管理