Jetzt eintauschen
und EUR 0,10 Gutschein erhalten
Eintausch
Möchten Sie verkaufen? Hier verkaufen
Der Artikel ist in folgender Variante leider nicht verfügbar
Keine Abbildung vorhanden für
Farbe:
Keine Abbildung vorhanden

 
Den Verlag informieren!
Ich möchte dieses Buch auf dem Kindle lesen.

Sie haben keinen Kindle? Hier kaufen oder eine gratis Kindle Lese-App herunterladen.

Secure PHP Development: Building 50 Practical Applications [Englisch] [Taschenbuch]

Mohammed J. Kabir


Erhältlich bei diesen Anbietern.



Kurzbeschreibung

23. Mai 2003
The personal home page (PHP) server-side scripting language is particularly well adapted to connecting HTML-based web pages to a backend database for dynamic content. This book explains the entire nuts-and-bolts process of the PHP application life cycle: requirements, design, development, maintenance and tuning. It shows how PHP can be used to design and develop highly manageable and secure applications to solve practical problems.

Produktinformation


Mehr über den Autor

Entdecken Sie Bücher, lesen Sie über Autoren und mehr

Produktbeschreibungen

Synopsis

The personal home page (PHP) server-side scripting language is particularly well adapted to connecting HTML-based web pages to a backend database for dynamic content. This book explains the entire nuts-and-bolts process of the PHP application life cycle: requirements, design, development, maintenance and tuning. It shows how PHP can be used to design and develop highly manageable and secure applications to solve practical problems.

Buchrückseite

Your in-depth guide to designing and developing secure PHP applications

It’s a hacker’s dream come true: over one million Web sites are now vulnerable to attack through recently discovered flaws in the PHP scripting language. So how do you protect your site? In this book, bestselling author Mohammed Kabir provides all the tools you’ll need to close this security gap. He presents a collection of 50 secure PHP applications that you can put to use immediately to solve a variety of practical problems. And he includes expert tips and techniques that show you how to write your own secure and efficient applications for your organization.

You’ll learn how to:

  • Implement the featured applications in business environments such as intranets, Internet Web sites, and system administrations
  • Develop e-mail and intranet solutions using PHP
  • Determine the importance of certain coding practices, coding styles, and coding security requirements
  • Follow the entire process of each PHP application life cycle from requirements, design, and development to maintenance and tuning.
  • Use PHP in groupware, document management, issue tracking, bug tracking, and business applications
  • Mature as a PHP developer by using software practices as part of your design, development, and software life cycle decisions
  • Improve the performance of PHP applications

The companion CD-ROM contains:

  • 50 ready-to-use PHP applications
  • Searchable e-version of the book
  • The latest versions of PHP, Apache, and MySQL™

In diesem Buch (Mehr dazu)
Einleitungssatz
PHP BEGAN AS A PERSONAL home page scripting tool. Lesen Sie die erste Seite
Mehr entdecken
Wortanzeiger
Ausgewählte Seiten ansehen
Buchdeckel | Copyright | Inhaltsverzeichnis | Auszug | Stichwortverzeichnis | Rückseite
Hier reinlesen und suchen:

Eine digitale Version dieses Buchs im Kindle-Shop verkaufen

Wenn Sie ein Verleger oder Autor sind und die digitalen Rechte an einem Buch haben, können Sie die digitale Version des Buchs in unserem Kindle-Shop verkaufen. Weitere Informationen

Kundenrezensionen

Es gibt noch keine Kundenrezensionen auf Amazon.de
5 Sterne
4 Sterne
3 Sterne
2 Sterne
1 Sterne
Die hilfreichsten Kundenrezensionen auf Amazon.com (beta)
Amazon.com: 1.9 von 5 Sternen  14 Rezensionen
25 von 26 Kunden fanden die folgende Rezension hilfreich
1.0 von 5 Sternen A truly appalling book 15. Juli 2004
Von Geoff Caplan - Veröffentlicht auf Amazon.com
Format:Taschenbuch
I normally like to be charitable, but this publication really has nothing to recommend it. Don't touch it with a bargepole.
It's a book about secure, object orientated PHP applications by a guy who doesn't understand security, doesn't understand OOP and can't write.
Despite the title "Secure PHP", there are whole classes of security exploits which are not even mentioned. There is no comprehensive and authoritative discussion of security at any point.
The code samples are poorly laid out, riddled with errors, littered with notes to the author from the technical reviewer, and astonishingly repetitive. You will often get large chunks of code repeated many times just to show changes in a couple of lines buried somewhere in the middle.
Not that the code is worth the effort of reading. The design is often naive, the organisation unclear and the coding practices poor.
For example, he uses a naming convention for constants ($MY_CONSTANT) rather than defining proper constants as provided for by the PHP language via define().
Another example: on page 41 he exhorts his readers to use good naming standards. Yet the abstract application class that forms the core of the book is full of method names such as: name() number() currency() show_status()... I could go on. There are dozens of other equally cryptic examples.
The copy editing and proofreading is the worst I have ever seen in a technical book: it is a disgrace to the profession. There is a grammatical error in the second sentence! Here is a sample of what you can expect, from the 3rd page:
"Next, you need to consider how user interfaces will be presented and how can you allow for maximum customization that can be done without changing your core code. This is typically done by introducing external HTML templates for interface."
Even the section headings are ungrammatical: "Using relational database" (p21)
The 16 editors and proofreaders credited in the frontmatter should hang their heads in shame. This has severly damaged my confidence in Wiley as a brand - they clearly have no concept of quality control. I will be very wary of buying their products in future. The cover strapline "Timely. Practical. Reliable." is a sick joke...
14 von 15 Kunden fanden die folgende Rezension hilfreich
1.0 von 5 Sternen Only 20 pages of "secure development techniques" 3. Juni 2003
Von "grumpychris" - Veröffentlicht auf Amazon.com
Format:Taschenbuch
When I saw this book at the local bookstore (one of only 10 PHP related books in stock), I thought, "Awesome! I've been looking for some more securing applications techniques." It turned out to be a big let down.
The book is roughtly 750 pages (large print), the first 50 or so was an introduction and gave a few bad examples vs. good examples of code (which was good, and actually made me think the rest of the book was going to be good), then jumped directly into "here's 650 pages worth of class based applications for you to use". The last 40-50 pages of the book was a chapter called something to the effect of "Optimizing and Securing PHP". Of the whole book, this was the most dissapointing aspect, split equally between the 2 topics. I thought the whole book was going to be about writing secure PHP, not just 20 pages.
Even the sample code they gave was in my opinion, poor. The author encouraged a strong misuse of OOP, having every single script have its own class dedicated to it. For example, one of the 50 "ready to use applications" was for handling users for their intranet. They wrote a class with methods for updating the user's information, adding a user, selecting the user's email address from the database, etc. The goal of OOP is to be abstract so that it can be used in more than one area, something the author didn't bother to learn before he wrote this book.
Even the optimizing portion of the last chapter was a big let down. It felt like there was really only one example of code optimization. The rest of the pages explained how to make a particular PEAR script do a speed test on your code. How is that supposed to help me if I'm not even certain how to write it more efficiently?
I'm not interested in a book that shovels me a bunch of code the author wrote. If I wanted free code, there's tons of sites out there for that. I want a book that's going to teach me how to think more securely and write more securely and think about the best/most optimized way to write a particular portion of code. Sadly, this book isn't it.
9 von 9 Kunden fanden die folgende Rezension hilfreich
1.0 von 5 Sternen Not a good book 21. Juni 2004
Von Andre Audet - Veröffentlicht auf Amazon.com
Format:Taschenbuch
I read the first Chapter of this book and that was enough to know that this book is no good. The examples are not well explained and when it comes to try the code, it doesn't work. Don't waste your money on this!
8 von 8 Kunden fanden die folgende Rezension hilfreich
1.0 von 5 Sternen What's up with the Restrictive Software License? 26. Mai 2003
Von John A. ODONOVAN - Veröffentlicht auf Amazon.com
Format:Taschenbuch
This looks like a good object-oriented framework for building PHP apps, but what is up with the restrictive license that accompanies the programming examples in the book? (see the back page of the book, and the license.txt file on the disk)
"You may not (i) rent or lease the Software, (ii) copy or reproduce the software through a LAN or other network system or through any computer subscriber system or bulletin- board system, or (iii) modify, adapt, or create derivative works based on the Software."
I've never seen a book try to restrice the programming examples in this way.
Stay away if you intend to build professional products. There are many other frameworks available for PHP OOP.
11 von 12 Kunden fanden die folgende Rezension hilfreich
1.0 von 5 Sternen Spend your money on dinner instead of this headache 15. Juni 2004
Von Ein Kunde - Veröffentlicht auf Amazon.com
Format:Taschenbuch
The horror. The horror. This book is just a big disappointment. After 2 weeks of giving it a chance, I found out that there are several security holes in the php scripts. I will not reveal them here, but I will give you one hint: javascript. "Secure PHP Development"...yeah right. This book contains mostly cut and paste scripts that haven't even been reviewed. Lots of redundent functions and script errors. Even worse, it violates the most fundamental rule in programming. That is documentation. There are no documentation in the scripts. You will have to enter them yourself. Oh, by the way, this framework he designed doesn't run on windows. It is written for Linux, although when you buy it there are no obviouse hints to tell you this.
God help you if you buy it.
Waren diese Rezensionen hilfreich?   Wir wollen von Ihnen hören.
ARRAY(0xab36266c)

Kunden diskutieren

Das Forum zu diesem Produkt
Diskussion Antworten Jüngster Beitrag
Noch keine Diskussionen

Fragen stellen, Meinungen austauschen, Einblicke gewinnen
Neue Diskussion starten
Thema:
Erster Beitrag:
Eingabe des Log-ins
 

Kundendiskussionen durchsuchen
Alle Amazon-Diskussionen durchsuchen
   


Ähnliche Artikel finden


Ihr Kommentar