<< 1 >>
Rating:  Summary: Hack Proofing What??? Review: 60% of this book has nothing to do with hacking ColdFusion specifically. Most of the chapters are devoted to informing the reader about the basics of Web Server OS hardening; and if you need to learn that I refer you to the Hacking Exposed book series which does a superior job. The parts specific for ColdFusion website hacking basically just talk about , CFID:CFTOKEN values, and the dangerous tags , , , etc... But most of that information is only relative to a Web Host not the CF programmers. The book then tries to do an indepth look at the ColdFusion administrator and setting up Advanced Security, but this is covered much better in the live docs on Macromedia's website.If your expecting this book to be a motherload of Macromedia quaility technical documents, you will be very disappointed. I anticipated that only about %10 of this book would contain good insights and hard to find ColdFusion knowledge and was okay with paying $30-40 bucks for that, but even that proved wrong; it was more like %1.
Rating:  Summary: Too disorganized to be useful Review: I was really looking forward to reading this book. Given the complexity of maintaining a secure web site, a concise organized approach to the securing Cold Fusion web sites sounded like agreat book topic. Unfortunately, this book wasn't the answer. The text appears to be written by multiple authors who weren't interacting with one another and who didn't have an effective editor to channel their ideas into a logical flow of text. Similar topics are covered multiple times throughout the book, and in some cases virtually identical descriptions and disclaimers get repeated. Other times detailed topical points are mentioned briefly only to have the relevant background presented much later in a different context. This book requires frequent usage of the index and table of contents to pull together the information into a useful manner. A very frustrating read. This book is one to pass on. I'd strongly recommend Ben Forta's ColdFusion 5 Web Application Construction Kit and/or The O'Reilly "Programming Cold Fusion".... Both provide logical well organized coverage of security material and also provide a wealth of general Cold Fusion tips and techniques.
Rating:  Summary: A MUST read for CF Developers Review: With the ease of ColdFusion comes many novice developers. This book will help developers find their troubled security issues in their code. Love this book.
<< 1 >>
|