EH Ch - 4

Chapter 4: WEB SECURITY


Web application attacks exploit weaknesses in websites to compromise data, sessions, or availability.
Understanding common attack types helps organizations protect users, systems, and services.


Website Defacement


DoS / DDoS Attack


HTTP Response-Splitting Attack — Summary


Cross-Site Request Forgery (CSRF) — Summary


Deep Linking Vulnerability — Summary


Man-in-the-Middle (MitM) / Sniffing Attack — Summary


Cookie Tampering — Summary


Cookie-Based Session Attacks — Summary


Cross-Site Scripting (XSS) — Summary