|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/cptc-certified-penetration-testing-consultant/
课程评论:没有评论
课程名称:CPTC - 认证渗透测试顾问 课程概述:该课程由Mile2®直接提供,包含经授权的考试准备和考试模拟器,供需方请求。此授权的渗透测试顾问课程不偏向任何供应商,专为对渗透测试及操作系统相关技术感兴趣的IT安全专业人士和网络管理员设计。参加本课程后,学员将掌握渗透测试团队的必要技能、利用过程、以及如何创建针对运行在Windows和Linux上的程序的缓冲区溢出,同时规避像DEP和ASLR这样的安全特性。 课程内容包括:如何组建合适的渗透测试团队、利用NMAP进行扫描、进入利用过程、使用Spike进行小规模模糊测试来指导概念验证代码的编写、编写缓冲区溢出、理解OWASP前十大漏洞、创建shell代码以获取远程代码执行权限、基于从exploit-db提取的漏洞构建和理解不同的概念验证代码,并利用调试器进行测试。课程最后将通过一个场景来考察学员作为渗透测试团队的技能。 该课程不仅重点强调了技术能力,还涵盖了报告编写的部分,以帮助学员全面掌握渗透测试的各个方面。
This course is provided directly by Mile2®. This official Mile2® video includes an authorized exam prep and exam simulator, available upon request.The vendor-neutral Certified Penetration Testing Consultant course is designed for IT Security Professionals and IT Network Administrators who are interested in taking an in-depth look into specific Penetration tests and techniques against operating systems. This course will teach you the necessary skills to work as a penetration testing team, the exploitation process, how to create a buffer overflow against programs running on Windows and Linux while subverting features such as DEP and ASLR. This course will guide you through the OWASP Top 10, teach you how to create shellcode to gain remote code execution, as well as, teach you to build and understand different proof of concept code based on exploits pulled from exploit-db and testing using a debugger. The course starts by explaining how to build the right penetration testing team, covers scanning with NMAP, leading into the exploitation process, a little fuzzing with spike to help guide our proof of concept code, writing buffer overflows, understanding OWASP, Linux stack smashing, Windows exploit protection and getting around those protection methods, a section on report writing, and capping off the course with a scenario that will test your skills as a penetration testing team.