Case Studies of Award-Winning XSS Attacks: Part 1

所在平台: Udemy

课程主页: https://www.udemy.com/course/case-studies-of-award-winning-xss-attacks-part-1/

课程评论:没有评论

第一个写评论        关注课程

课程简介

课程名称:获奖XSS攻击案例分析:第一部分 课程概述:跨站脚本攻击(XSS)是现代网络应用程序中最普遍且最危险的漏洞之一。许多黑客在漏洞赏金计划中靠单个XSS漏洞赚取四位数奖金,这令人惊叹。虽然很多人都在寻找XSS漏洞,但成功的人却寥寥无几。成功的秘诀在于他们关注非标准XSS攻击,这正是本课程的主题!作为HackerOne平台上排名前列的黑客(注册黑客超过10万人),我了解如何在这个领域赚钱。如果你想成为成功的XSS猎手,那么这门课程就是为你准备的。 在《获奖XSS攻击案例分析:第一部分》中,你将学习以下非标准XSS攻击方式: 1. 通过图像进行的XSS 2. 通过HTTP响应拆分进行的XSS 3. 通过Cookie进行的XSS 4. 通过AngularJS模板注入进行的XSS 每个漏洞都有演示,以便你逐步了解如何在实践中找到这些漏洞。 准备好成为成功的XSS猎手了吗?快来报名参加这门课程,开始一段激动人心的旅程。如果你对更多获奖的XSS攻击感兴趣,建议你查看后续课程《获奖XSS攻击案例分析:第二部分》。

课程评论(0条)

课程详情

Cross-site scripting (XSS) is one of the most widespread and dangerous vulnerabilities in modern web applications. There are hackers who earn a 4-digit reward ($$$$) per single XSS in bug bounty programs, which is just amazing.There are many people hunting for XSSs, but only a few of them are successful. What makes them successful? They focus on non-standard XSSs and this is exactly what I present in this course!I'm one of the top hackers at HackerOne (among more than 100,000 registered hackers), and I really know how to make money out there. If you want to become a successful XSS hunter, then this course is just for you.In Part 1 of Case-Studies of Award-Winning XSS Attacks, you will learn about the following non-standard XSS attacks:1. XSS via Image2. XSS via HTTP Response Splitting3. XSS via Cookie4. XSS via AngularJS Template InjectionFor every single bug there is a DEMO so that you can see how to find these bugs step-by-step in practice.Are you ready to become a successful XSS hunter? Let's enroll to this course and start an exciting journey. If you are interested in more award-winning XSS attacks, then I also recommend you to see the follow-up course "Case-Studies of Award-Winning XSS Attacks: Part 2".

课程标签

0人关注该课程

主题相关的课程