Hacking Web Applications via PDFs, Images, and Links

所在平台: Udemy

课程主页: https://www.udemy.com/course/hacking-web-applications-via-pdfs-images-and-links/

课程评论:没有评论

第一个写评论        关注课程

课程简介

课程名称:通过PDF、图像和链接黑客攻击Web应用程序 课程概述:现代Web应用程序每天都在处理用户数据,PDF、图像和链接的使用更加普遍。然而,这些元素也可能被用作攻击Web应用程序的工具,这当然是我们不希望发生的。在本课程中,您将学习如何通过PDF、图像和链接对Web应用程序进行攻击,并了解如何检查您的Web应用程序是否容易受到这些攻击的影响。 课程首先将展示攻击者如何通过PDF盗取用户的敏感数据,接着介绍攻击者如何利用图像进行跨站脚本(XSS)攻击,最后将演示攻击者如何通过链接发起用户重定向攻击(利用window.opener的标签劫持技术)。对于每一种攻击方式,课程中都有演示,让您逐步了解这些攻击在实践中的运作方式。此外,您还可以了解如何通过漏洞赏金计划获得这些漏洞的报酬。 期待在课程中见到您!

课程评论(0条)

课程详情

User data is processed every single day by modern web applications. Think about PDFs, images, and links. They are everywhere. What's more - they can be used to hack your web applications and obviously you don't want that to happen.In this course you will learn how your web applications can be hacked via PDFs, images, and links. You will also learn how to check if your web applications are vulnerable to these attacks. First, I'll show you how an attacker can steal a user's sensitive data via a PDF. Next, I'll present how the attacker can launch an XSS attack via an image. Finally, I'll demonstrate how the attacker can launch a user redirection attack via a link (using window.opener tabnabbing).For every single attack there is a DEMO so that you can see, step-by-step, how these attacks work in practice. I hope this sounds good to you and I can't wait to see you in the class.Note: you can get paid for these bugs in bug bounty programs.

课程标签

0人关注该课程

主题相关的课程