OWASP Top 10: Discovering & Exploiting Web App Vulnerabilities
OWASP
| Intermediate
- 14 videos | 1h 18m 36s
- Includes Assessment
- Earns a Badge
There are almost two billion web sites in the world today. Many of these sites are not sufficiently protected against attacks. In this course, you'll begin by learning how to install a sample vulnerable web application. Next, you'll explore how to use reconnaissance methods, such as nmap scanning and web app scanning using OWASP ZAP, to discover HTTP hosts and vulnerable applications. You'll learn how to execute attacks including XSS, CSRF, file injection, and denial of service. You'll move on to examine how to capture user keystrokes using a hardware keylogger and capture cleartext HTTP transmissions. Lastly, you'll learn how to forge fake TCP/IP packets and then deploy and secure a cloud-hosted web application.
WHAT YOU WILL LEARN
-
Discover the key concepts covered in this courseDownload and enable the free metasploitable virtual machine for testing web application vulnerabilitiesDiscover network hosts running a web applicationDownload, install, and use the free owasp zap tool to identify web application vulnerabilitiesExecute a denial of service (dos) attack against a web applicationExecute a cross-site scripting (xss) attack against a vulnerable web applicationExecute a cross-site request forgery (csrf) attack against a vulnerable web application
-
Execute a sql injection attack against a vulnerable web applicationExecute a file inclusion attack against a vulnerable web applicationCapture user keystrokes using a hardware keyloggerCapture cleartext http credentials using wiresharkAssemble fake tcp/ip packets using hping3Deploy a web app in the microsoft azure cloudSummarize the key concepts covered in this course
IN THIS COURSE
-
1m 40s
-
5m 51s
-
5m 39s
-
8m 18s
-
4m 39s
-
7m 57s
-
7m 54s
-
5m 23s
-
4m 51s
-
5m 27s
-
4m 35s
-
6m 4s
-
8m 52s
-
1m 25s
EARN A DIGITAL BADGE WHEN YOU COMPLETE THIS COURSE
Skillsoft is providing you the opportunity to earn a digital badge upon successful completion on some of our courses, which can be shared on any social network or business platform.
Digital badges are yours to keep, forever.