Introduces XSS, including discovery, exploitation, and case studies. Teaches how attackers inject malicious code into web pages to hijack user sessions, steal sensitive data, or deface websites. Covers identification and exploitation of XSS vulnerabilities and understanding different types of XSS attacks.
02
Cross-Site Request Forgery (CSRF)
Uncovers how attackers trick authenticated users into performing unintended actions on web applications. Teaches identification and exploitation of CSRF vulnerabilities and explores practical mitigation techniques to protect against these attacks. Covers the impact of CSRF on user trust and data integrity.
03
Exploiting CORS Misconfigurations
Teaches the security risks of Cross-Origin Resource Sharing (CORS) misconfigurations and how attackers exploit these vulnerabilities to bypass access controls and access sensitive data. Covers identification and fixing of CORS misconfigurations for secure cross-origin communication.
04
Database Enumeration
Masters techniques to gather sensitive information about a web application’s database structure and content. Teaches how attackers use this information for targeted attacks and explores methods to implement countermeasures.
05
SQL Injection (SQLi)
Teaches how to exploit vulnerabilities in web applications that interact with databases, potentially leading to data compromise or unauthorized access. Covers different types of SQL Injection attacks and their impact on security. Explores techniques for preventing and mitigating SQL Injection vulnerabilities.
Your plan caps how many capabilities are shown — upgrade to see the full list