Web Application Penetration Testing Professional: WAPTP v3.1

Web Application Penetration Testing Professional: WAPTP v3.1

8 Hours
Deal Price$29.00
Suggested Price
$299.00
You save 90%
Web Application Penetration Testing Professional: WAPTP v3.1
$29.00$299.0090% OFF
Web Application Penetration Testing Professional: WAPTP v3.1

64 Lessons (8h)

  • INTRODUCTION
    About course2:47
  • BE PREPARED
    Web attack simulation Lab11:38
  • WEB APPLICATION TECHNOLOGIES 101
    Web application technologies 101 - PDF
    HTTP Protocol Basics10:48
    Encoding Schemes13:07
    Same Origin Policy - SOP6:18
    HTTP Cookies10:59
    Cross-origin resource sharing4:53
    Web application proxy - Burp suite9:10
    Web application architecture - PDF
    HTTP State Management Mechanism - RFC6265
    DNSSEC- RFC_3008
    Domain names concepts - rfc1034
  • INFORMATION GATHERING - MAPPING THE APPLICATIONS
    Fingerprinting web server5:25
    DNS Analysis - Enumerating subdomains3:53
    Metasploit for web application attacks12:06
    Identifying Load Balancers15:19
    Web technologies analysis in real time2:45
    Outdated web application to server takeover7:35
    BruteForcing Web applications5:57
    Shodan HQ7:11
    Harvesting the data5:02
    Finding link of target with Maltego CE8:41
  • CROSS-SITE SCRIPTING ATTACKS - XSS
    Cross Site Scripting- XSS - PDF
    Cross site scripting 1017:26
    Reflected XSS13:43
    Persistent XSS11:05
    DOM-based XSS10:09
    Website defacement through XSS9:22
    Generating XSS attack payloads12:46
    XSS in PHP, ASP & JS Code review13:23
    Cookie stealing through XSS12:23
    Advanced XSS phishing attacks7:37
    Advanced XSS with BeEF attacks9:34
    Advanced XSS attacks with Burp suite8:20
  • SQL INJECTION ATTACKS - EXPLOITATIONS
    SQL Injection attacks - PDF
    Introduction to SQL Injection16:20
    Dangers of SQL Injection4:47
    Hunting for SQL Injection vulnerabilities19:53
    In-band SQL Injection attacks26:32
    Blind SQL Injection attack in-action9:44
    Exploiting SQL injection - SQLMap8:46
    Fuzzing for SQL Injection - Burp Intruder13:41
    Druppageddon attack -Resources
  • CROSS SITE REQUEST FORGERY - XSRF
    CSRF or XSRF attack methods12:21
    Anti-CSRF Token methods15:19
    Anti-CSRF token stealing-NOT easy11:18
    CSRF Prevention
  • AUTHENTICATION & AUTHORIZATION ATTACKS
    Authentication bypass-hydra11:02
    HTTP Verb Tampering8:49
    HTTP parameter pollution - HPP6:01
    Authentication Cheet sheet - OWASP
  • CLIENT SIDE SECURITY TESTING
    Client side control bypass9:36
    Web socket-rfc6455
    Cross window messeging - Resource
  • FILE RELATED VULNERABILITIES
    LFI & RFI attacks12:41
    Unrestricted file upload - content type6:29
    Unrestricted file upload - exetension type5:30
    Remote code execution using Shell Uploads9:14
  • XML EXTERNAL ENTITY ATTACKS - XXE
    XML Documents & database13:38
    XXE attacks in action13:52
    Out-of-band XXE - Resource
  • EXTERNAL RESOURCES FOR WEBSITE AUDITING
    Website auditing - Wordpress
    Defence-In-Defth applied to web applications
Web Application Penetration Testing Professional: WAPTP v3.1
$29.00$299.0090% OFF
View similar items
DescriptionInstructorImportant DetailsRelated Products

Attack Web Apps with the Latest Professional Tools & Tricks

Atul Tiwari has more than 7 years of working experience in the information security field. He has trained more than 3,000 students in information security and penetration testing. With his expertise in web application penetration testing, Atul has performed penetration tests, security audits, and security analysis for private enterprise, governments, and security agencies to assist with cyber threats.

Description

WAPTP v3.1 is a highly practical and hands-on training for web application penetration testing that covers the OWASP top 10 vulnerabilities. Starting with various terminologies of web technologies, you'll build towards mapping an application for insecurities, and understanding how to identify and mitigate threats.

  • Access 64 lectures & 8 hours of content 24/7
  • Map an app for insecurities using various tools & tricks, including Burp Suite
  • Explore serious vulnerabilities like SQL injection, cross-site scripting, cross-site request forgery, XXE attacks, & more
  • Find & hunt each vulnerability through the points developers use to secure the web app at the time of development

Specs

Details & Requirements

  • Length of time users can access this course: lifetime
  • Access options: web streaming, mobile streaming
  • Certification of completion not included
  • Redemption deadline: redeem your code within 30 days of purchase
  • Experience level required: all levels

Compatibility

  • Internet required

Terms

  • Unredeemed licenses can be returned for store credit within 30 days of purchase. Once your license is redeemed, all sales are final.
Your Cart
Your cart is empty. Continue Shopping!
Processing order...