Pro Advanced
Certificate
Advanced Web Security
The harder classes of web vulnerability — deserialisation, request smuggling, prototype pollution and chained logic abuse.
2.1 hr
6 lectures
5 lab ranges
5 weeks
Description
For people who are already competent with the standard vulnerability classes and want the ones that require real depth.
Each module is a single technique explored properly, with labs that will take you hours rather than minutes.
Who is this course for?
- Working penetration testers
- Security engineers
- Red and blue team practitioners
- Consultants delivering client work
What you will learn
Insecure deserialisation across languages
HTTP request smuggling and desync attacks
Prototype pollution and client-side chains
Advanced SSRF and cloud metadata access
Template injection, server and client side
Web cache poisoning and deception
Chaining low-severity issues into critical impact
Course curriculum
Core module 6 lessons
Lesson 1
25 min
Lesson 2
25 min
Lesson 3
25 min
Lesson 4
25 min
Lesson 5
25 min
Lesson 6
25 min
Lab ranges included
Domain Escalation Lab
Hard
Capture the Flag: Chained
Hard
Active Directory Attack Path Range
Hard
Cloud Misconfiguration Range
Hard
Secure Code Review Range
Hard