Notsosecure – Advanced Web Hacking 2022-7

Notsosecure – Advanced Web Hacking 2022-7 Downloadly IRSpace

Notsosecure – Advanced Web Hacking 2022-7
Notsosecure – Advanced Web Hacking 2022-7

Advanced Web Hacking Course. The course covers a wide range of hacking techniques for compromising web applications, APIs, cloud components, and other related endpoints. The course focuses on specific areas of application security and advanced techniques for identifying and exploiting vulnerabilities (especially server-side flaws). The course allows participants to practice some interesting and novel hacks that have impacted real products and have been featured in real bug bounty programs. The vulnerabilities selected for this class are typically not detected by modern scanners or the techniques for exploiting them are not well-known.

What you will learn in this course:

  • Effective data exfiltration using out-of-band techniques for specific vulnerabilities
  • Pentest encrypted parameters to find vulnerabilities
  • Learn how to bypass SSO functions
  • Finding SQL injection vulnerabilities that are not detected by automated tools
  • Breaking weak cryptographic implementations
  • Learn ways to bypass password reset functions

This course is suitable for people who:

  • Web developers
  • SOC Analysts
  • Mid-level penetration testers
  • DevOps Engineers, Network Engineers
  • Security Architects
  • Security enthusiasts
  • Anyone who wants to take their skills to the next level

Getting Started: Azure for Developers course details

  • Publisher: notsosecure
  • Instructor: notsosecure
  • Training level: Beginner to advanced
  • Training duration: 13 hours and 18 minutes

Course headings

  • INTRODUCTION
  • BREAKING CRYPTOGRAPHY
  • ATTACKING THE CLOUD
  • ATTACKING AUTHENTICATION AND SINGLE SIGN ON (SSO)
  • REMOTE CODE EXECUTION (RCE)
  • WEB CACHE ATTACKS
  • PASSWORD RESET ATTACKS
  • CLIENT-SIDE VULNERABILITIES
  • BUSINESS LOGIC FLAWS / AUTHORIZATION FLAWS
  • SQL INJECTION (SQLi) MASTERCLASS
  • API PENTESTING
  • TRICKY FILE UPLOAD
  • VARIOUS CASE STUDIES
  • XML EXTERNAL ENTITY (XXE) ATTACK
  • SERVER SIDE REQUEST FORGERY (SSRF)

Prerequisites

  • Students must bring their own laptop and have admin/root access on it. The laptop must have a virtualization software (virtualbox / VMWare) pre-installed. A customized version of Kali Linux (ova format) containing custom tools, scripts and VPN scripts for the class will be provided to the students. The laptop should have at least 4 GB of RAM and 20 GB of free disk space dedicated for the VM.

Course images

Advanced Web Hacking

Sample course video

Installation Guide

After Extract, view with your favorite player.

Subtitles: None

Quality: 1080p

Download link

Download Part 1 – 2 GB

Download Part 2 – 2 GB

Download Part 3 – 1.4 GB

File(s) password: www.downloadly.ir

File size

5.4 GB