Burp Suite Certified Practitioner Exam Preparation Training

所在平台: Udemy

课程主页: https://www.udemy.com/course/burp-suite-certified-practitioner-exam-preparation-training/

课程评论:没有评论

第一个写评论        关注课程

课程简介

课程名称:Burp Suite认证实践者考试准备培训 课程概述:该课程旨在帮助学员为具有挑战性的Burp Suite认证实践者考试(BSCP)做好准备。需要注意的是,本课程并不教授Burp Suite的实际使用及其功能,而是提供了一个逐步的实验室 walkthrough,详细解释了如何发现和利用 web 应用程序漏洞。课程中涵盖了31个核心实验室,这些实验内容也包含在我的另一门课程(Burp Suite实践者实验室走查)中,因此在此课程中进行了重复。该课程对希望快速通过BSCP考试的学员尤为适合,而无需经历所有实践者实验室。课程中包含的技巧部分、黄金法则、备忘单、神秘实验室及练习考试等内容均为全新。 讲师介绍:课程讲师马丁·福尔克(Martin Voelk)是一位拥有25年经验的网络安全专家,持有包括CISSP、OSCP、OSWP、Portswigger BSCP、CCIE、PCI ISA和PCIP在内的多项高级认证。他在一家大型科技公司担任顾问,并参与漏洞奖励计划,发现了数千个严重和高危漏洞。 课程特点: - 详细讲解由Portswigger制定的30个核心实验室 - 讲解10个神秘实验室,学习如何在没有实验提示的情况下发现漏洞 - 提供30个漏洞类别的查找缺陷备忘单(不仅适用于考试) - 7个考试黄金提示 - 实践考试1和2的走查,马丁会逐一讲解并提供有用的见解,如何发现和利用这些漏洞 马丁不仅在视频中提供payload插入的讲解,还解释了每一步如何寻找漏洞及其利用方式。视频内容易于跟随和复制,马丁还分享了许多获得Burp Suite认证实践者(BSCP)认证的技巧和窍门。该培训特别推荐给希望在Web应用渗透测试、Web应用漏洞赏金猎人领域成为专业人士,或准备参加Burp Suite认证实践者(BSCP)考试的人员。 注意事项与免责声明:Portswigger实验室是Portswigger提供的公共免费服务,任何人均可使用以提升技能。只需注册一个免费的帐户即可。我会定期更新课程以包含发布的新实验室,并在合理的时间内回答问题。学习Web应用渗透测试/漏洞赏金猎人是一个漫长的过程,请不要因此感到沮丧。尽量使用Google,阅读Hacker One报告,并深入研究每个功能。该课程仅供教育用途,所提供的信息不得用于恶意利用,必须仅在得到攻击许可的目标上使用。

课程评论(0条)

课程详情

Become a Portswigger Burp Suite Certified Practitioner (BSCP)The aim of this course is to help people to prepare for the challenging Burp Suite Certified Practitioner exam. Important notes: This course is NOT teaching the actual usage of Burp Suite and its features. This course is proving a step-by-step walkthrough through labs with detailed explanations on how to find and exploit web app vulnerabilities. The 31 core labs are also covered in my other course (Burp Suite Practitioner Labs Walkthrough) and are therefore duplicated here. This course aims at people who want to fast track the BSCP exam and don't want to go through all practitioner labs! The Tips section, golden rules incl. the cheat sheets, mystery labs, practice exams etc. are all brand new. Your instructor is Martin Voelk. He is a Cyber Security veteran with 25 years of experience. Martin holds some of the highest certification incl. CISSP, OSCP, OSWP, Portswigger BSCP, CCIE, PCI ISA and PCIP. He works as a consultant for a big tech company and engages in Bug Bounty programs where he found thousands of critical and high vulnerabilities.This course features the following:Detailed walkthrough of 30 core labs as outlined by PortswiggerWalkthrough of 10 Mystery Labs where you learn how to find vulnerabilities without lab hintsCheat Sheets on how to find flaws in all 30 vulnerability categories (useful not only for the exam) 7 Golden Tips for the exam Practice Exam 1 and 2 walkthroughMartin is solving them all and giving useful insight on how to find and exploit these vulnerabilities. He is not just inserting the payload but explains each step on finding the vulnerability and why it can be exploited in a certain way. The videos are easy to follow along and replicate. Martin is also dropping a lot of tips and tricks for those who wish to get the Burp Suite Certified Practitioner certification (BSCP). This training is highly recommended for anyone who wants to become a professional in Web Application Penetration Testing, Web Application Bug Bounty Hunting or take the Burp Suite Certified Practitioner certification (BSCP) certification.Notes & DisclaimerPortswigger labs are a public and a free service from Portswigger for anyone to use to sharpen their skills. All you need is to sign up for a free account. I will update this course with new labs as they are published. I will to respond to questions in a reasonable time frame. Learning Web Application Pen Testing / Bug Bounty Hunting is a lengthy process, so please don't feel frustrated if you don't find a bug right away. Try to use Google, read Hacker One reports and research each feature in-depth. This course is for educational purposes only. This information is not to be used for malicious exploitation and must only be used on targets you have permission to attack.

课程标签

0人关注该课程

主题相关的课程