Skip to content
Pro Advanced Certificate

Advanced Web Security

The harder classes of web vulnerability — deserialisation, request smuggling, prototype pollution and chained logic abuse.

2.1 hr 6 lectures 5 lab ranges 5 weeks

Description

For people who are already competent with the standard vulnerability classes and want the ones that require real depth.

Each module is a single technique explored properly, with labs that will take you hours rather than minutes.

Who is this course for?

  • Working penetration testers
  • Security engineers
  • Red and blue team practitioners
  • Consultants delivering client work

What you will learn

Insecure deserialisation across languages HTTP request smuggling and desync attacks Prototype pollution and client-side chains Advanced SSRF and cloud metadata access Template injection, server and client side Web cache poisoning and deception Chaining low-severity issues into critical impact

Course curriculum

Core module 6 lessons
Lesson 1 25 min
Lesson 2 25 min
Lesson 3 25 min
Lesson 4 25 min
Lesson 5 25 min
Lesson 6 25 min

Lab ranges included

Domain Escalation Lab Hard
Capture the Flag: Chained Hard
Active Directory Attack Path Range Hard
Cloud Misconfiguration Range Hard
Secure Code Review Range Hard