Advanced Intermediate
Certificate
Web Application Security
Find, verify and fix the vulnerability classes that actually appear in web applications.
0.4 hr
1 lectures
5 lab ranges
6 weeks
Description
The most immediately employable course in the catalogue. Web applications are where most real-world security work happens, and this course is built around the classes of flaw we find in engagements.
Every module ends with the remediation, not the exploit. You are graded on the fix.
Who is this course for?
- SOC analysts
- Security testers
- Network engineers
- Incident responders
What you will learn
Injection across SQL, NoSQL, command and template contexts
Cross-site scripting in all three variants
Broken access control and IDOR
Authentication and session management flaws
CSRF, SSRF and request forgery generally
File upload and deserialisation issues
Business logic abuse
Writing a professional web application report
Course curriculum
The curriculum for this course is being published. It will appear here shortly.
Lab ranges included
Compromised Host Triage
Medium
Segmented Network Range
Medium
Web Application Assessment Range
Medium
API Security Range
Medium
Incident Response Range
Medium