|
所在平台: Coursera |
课程主页: https://www.coursera.org/learn/owasp-risks-6-10
课程评论:没有评论
课程名称:OWASP Top 10 - 风险 6-10 概述:本课程将深入探讨五个重要的安全风险,包括脆弱和过时的组件、身份识别和认证失败、软件及数据完整性失败、安全日志和监控失败,以及服务器端请求伪造(SSRF)。通过演示、图形和真实案例,我们将帮助您理解每个风险的细节。 课程大纲: 1. 脆弱和过时的组件 - 介绍相关风险与应对策略。 2. 身份识别和认证失败 - 探讨可能导致身份盗用和访问权限泄露的薄弱环节。 3. 软件及数据完整性失败 - 讲解软件和数据在传输和存储中的完整性问题及相关防护措施。 4. 安全日志和监控失败 - 讨论日志记录的重要性及常见的监控失败情形。 5. 服务器端请求伪造(SSRF) - 深入分析此类攻击的方式及其潜在影响。 本课程旨在通过实际示例和深入的分析,使学员能够理解和应对当前主流的安全威胁。
Name:Vulnerable and Outdated Components
Description:
Name:Identification and Authentication Failures
Description:
Name:Software and Data Integrity Failures
Description:
Name:Security Logging and Monitoring Failures
Description:
Name:Server-Side Request Forgery (SSRF)
Description:
In this course, we will examine Vulnerable and Outdated Components, Identification and Authentication Failures, Software and Data Integrity Failures, Security Logging and Monitoring Failures, and Server-Side Request Forgery (SSRF). We’ll use demos, graphics and real-life examples to help you understand the details of each of these risks.