Skip to content
Advanced Intermediate Certificate

Web Application Security

Find, verify and fix the vulnerability classes that actually appear in web applications.

0.4 hr 1 lectures 5 lab ranges 6 weeks

Description

The most immediately employable course in the catalogue. Web applications are where most real-world security work happens, and this course is built around the classes of flaw we find in engagements.

Every module ends with the remediation, not the exploit. You are graded on the fix.

Who is this course for?

  • SOC analysts
  • Security testers
  • Network engineers
  • Incident responders

What you will learn

Injection across SQL, NoSQL, command and template contexts Cross-site scripting in all three variants Broken access control and IDOR Authentication and session management flaws CSRF, SSRF and request forgery generally File upload and deserialisation issues Business logic abuse Writing a professional web application report

Course curriculum

The curriculum for this course is being published. It will appear here shortly.

Lab ranges included

Compromised Host Triage Medium
Segmented Network Range Medium
Web Application Assessment Range Medium
API Security Range Medium
Incident Response Range Medium