|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/learn-web-application-penetration-testing-from-00/
课程评论:没有评论
课程名称:从零开始学习网络应用渗透测试 课程概述:此道德黑客课程将教授如何利用网络应用和网络服务器中的漏洞,遵循全球广泛使用的OWASP测试指南框架进行渗透测试。课程提供一个易受攻击的虚拟机——Web Sec Target Practice,供学员实践渗透测试评估的各个阶段。在整个课程中,我们将主要使用Burp Suite社区版和开源Kali工具,测试网络服务器的基础架构,破解身份验证表单,篡改头部属性,执行跨站脚本(XSS)、SQL注入、命令注入及其他注入变种。此外,我们还将逐步开发一个缓冲区溢出漏洞利用程序。 总之,本课程为希望深入了解网络应用安全和渗透测试的学员提供了全面的知识和实践机会。
In this ethical hacking course you'll learn how to exploit the vulnerabilities found in web applications and web servers following the OWASP Testing Guide framework, used by companies all over the world to perform web penetration testing engagements.A vulnerable virtual machine, Web Sec Target Practice, is provided with the course for you to practice the various phases of the penetration testing assessment. We'll predominantly use the Burp Suite Community edition and open source Kali tools throughout the entire course to test the infrastructure of the web server, brute force authentication forms, tamper with header attributes, perform XSS, SQL, command injections and other injection variants. We'll also develop a buffer overflow exploit step by step.