Web Application Security by Mario Heiderich
[The book](http://php-ids.org/2008/12/11/it-has-landed/) is in german and called “Sichere Webanwendungen” and Mario is not the only author, but having been one of the key people at Ormigo, I thought I’d mention that a book he co-wrote is out. Other authors include fukami, Christian Matthies and Johannes Dahse.
And if somebody knows what web site security is about, then Mario is the man. So much so that he can get on your nerves some times and I say that as the higest form of flattery ;). On a side note, he developed PHPIDS at Ormigo.

