|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/mobile-application-hacking-and-penetration-testing-android-security/
课程评论:没有评论
课程名称:移动应用黑客与渗透测试(Android) 课程概述:本课程提供了进入网络安全领域所需的全部信息,旨在教你如何对Android移动应用程序进行全面的渗透测试。 课程亮点: - 从Android架构基础开始学习。 - 涵盖移动应用程序的逆向工程。 - 在真实的移动应用程序上进行实践。 - 建立自己的移动应用安全实验室。 - 提供实施移动应用渗透测试所需的技能。 课程大纲: 1. 移动应用简介 2. 移动应用安全 3. 移动应用渗透测试 4. 移动应用数据存储的常见区域 5. Android架构 6. 应用程序沙箱与权限模型 7. AndroidManifest.xml 文件 8. Android编译过程 9. Android启动过程 10. Android应用程序组件 11. 设置测试环境 12. Android调试桥(ADB) 13. 深入挖掘Android(ADB工具) 14. 拦截和分析网络流量 15. 逆向分析Android应用程序 16. OWASP十大移动应用安全漏洞 17. 安装DIVA(极不安全和易受攻击的应用) 18. 不安全的日志问题 19. 不安全的数据存储 20. 数据库不安全存储 21. 临时文件中的不安全数据存储 22. 硬编码问题 23. 输入验证问题 - SQL注入 24. 输入验证问题 - 利用Webview漏洞 课程附带24/7支持,如果你有任何问题,可以在问答区提出,我们将在10小时内回复你。 注意:本课程仅供教育目的。
This course includes all necessary information to start your carrier in Cyber Security field. This course aims to teach you how to perform full penetration testing on Android Mobile applications.Course at a glance:- Start from Android architectures basics.- Covers Mobile applications reverse engineering.- Practice on real world mobile applications.- Build your own home lab on mobile application security.- Provides you the skills necessary to perform Penetration tests of mobile applications.Syllabus:Introduction To Mobile Apps.Mobile Application Security.Mobile Application Penetration Testing.The most common areas where we find mobile application data resides.The Architecture of Android.The App Sandbox and the Permission Model.AndroidManifest.xml File.Android Compilation Process.Android Startup Process.Android Application Components.Setup a testing environment.Android Debug Bridge (adb).Digging deeper into Android (ADB tool).intercept and analyze the network traffic.Reversing an Android application.OWASP top 10 vulnerabilities for mobiles.Install DIVA (Damn insecure and vulnerable App).Insecure Logging Issue.Insecure Data Storage.Database Insecure Storage.Insecure Data Storage Inside Temporary Files.Hardcoding Issues.Input Validation Issues - SQL Injection.Input Validation Issues - Exploiting Webview Vulnerability.With this course you'll get 24/7 support, so if you have any questions you can post them in the Q & A section and we'll respond to you within 10 hours.NOTE: This course is created for educational purposes only.