This amazing handbook will teach you a particular type of race condition vulnerabilities in web applications called 'TOCTOU.' By the end of this hand guide, you will have the industry's best tools and techniques to exploit TOCTOU issues. This handbook is for you if you: Have been thinking of TOCTOU issues as a security issue that happens only with money transfer pages Think finding and exploiting TOCTOU issues require sophisticated tools If you are entirely new to the concept of TOCTOU issue OR If you are entirely new to the web application security The entire hand guide walks you through an open-source project from OWASP called 'TimeGap Theory.' Since the TimeGap Theory project is a capture-the-flag hacking game, you can go through this hand guide like a typical CTF walkthrough. On top of that, the entire book is Dinosaur themed, and it is quite easy to follow.
Read More
Specifications
Book Details
Publication Year
2020 August
Contributors
Author Info
Abhi M Balakrishnan is a security engineer from Silicon Valley. This book is about his latest work - OWASP TimeGap Theory. You must have heard about Abhi's other projects like OWASP Mantra, Matriux, ExploitMe REST, Alert Labs, OWASP Bricks, Snow, Brick Town, and 'web app security testing with browsers.'