|
所在平台: Udemy |
课程主页: https://www.udemy.com/course/offensive-security-web-expert-oswe-red-team/
课程评论:没有评论
课程名称:攻击性安全网络专家(OSWE/OSCP)红队渗透测试 课程概述:本课程旨在帮助学员准备通过WEB-300: 高级网页攻击与利用(OffSec Web Expert OSWE)认证,提供高级多项选择题(QCM)练习考试,模拟真实的攻击链并反映WEB-300考试的强度。课程面向那些希望深入了解的学生和专业人士,注重实际操作能力的测试与强化,涵盖手动发现、分类和利用复杂网页应用漏洞的攻击性技术。 课程结构包括六个全面的实践测试,每个测试都与核心的OSWE主题和真实的网页攻击链相一致。这些测试不仅涵盖个别漏洞,还训练学员能在多个层面之间形成漏洞链,发展出适合报告的发现,并理解每个漏洞背后的安全编码影响。 **课程领域划分:** 1. **侦查与源代码分析** - 学习使用网络安全工具和方法论进行黑盒和白盒环境下的漏洞发现。通过分析PHP、JavaScript和.NET代码,寻找逻辑缺陷、不安全的身份验证机制、文件上传绕过等。 2. **注入攻击 - SQLi 与代码执行** - 探索高级手动SQL注入技术,包括基于时间和内容的盲注,关注输入链的完整命令执行,理解ORM配置错误、输入过滤和弱错误处理带来的完全妥协风险。 3. **反序列化和.NET特定攻击** - 学习如何在.NET环境中利用不安全的对象序列化,实践构造ViewState利用、利用BinaryFormatter滥用和构建自定义小工具链以实现远程代码执行。 4. **服务器端请求伪造(SSRF)、数据外泄与内部访问** - 模拟复杂的SSRF场景,导致元数据泄露、云凭证盗取和内部访问。探讨攻击者如何将SSRF升级为文件写入、内部API滥用,最终获取远程访问或敏感信息的外泄。 5. **客户端利用与会话滥用** - 培养利用现代应用程序中的持久性跨站脚本(XSS)漏洞的能力,劫持用户会话、绕过CSP保护和进行权限升级,审视导致完全管理员接管的真实XSS链。 6. **现代JavaScript攻击 - 原型污染** - 深入研究现代JavaScript应用中最被忽视但却强大的前端攻击类,通过原型污染提高权限、绕过客户端逻辑,或与其他缺陷(如XSS或SSRF)形成链。 课程结束时,您将能够更敏锐地识别和利用复杂的网页应用漏洞,增强OSWE考试的准备,并实践进行现实世界攻击性网页安全工作所需的核心技术。
Prepare to conquer the WEB-300: Advanced Web Attacks and Exploitation (OffSec Web Expert OSWE) certification with this advanced QCM (Multiple-Choice) practice exam course, designed to simulate real-world exploitation chains and mirror the intensity of the WEB-300 exam. This course is tailored for students and professionals who want more than just theory - it's built to test and reinforce your ability to manually discover, triage, and exploit complex web application vulnerabilities using offensive techniques.The course is structured into six comprehensive practice tests, each one aligned with core OSWE topics and real-world web attack chains. These tests not only cover individual vulnerabilities but also train you to chain multiple flaws across layers, develop report-ready findings, and understand the secure coding implications behind each exploit.Each domain reflects a unique class of exploitation methodology covered in the OSWE exam:Domain 1: Reconnaissance & Source Code AnalysisTopics:Web Security Tools and MethodologiesSource Code AnalysisMaster the foundational skills required to discover vulnerabilities in both black-box and white-box environments. You'll analyze PHP, JavaScript, and.NET code to uncover logic flaws, insecure authentication mechanisms, file upload bypasses, and more - all using manual tools like Burp Suite and browser dev consoles.Domain 2: Injection Attacks - SQLi & Code ExecutionTopics:Blind SQL InjectionRemote Code ExecutionExplore advanced manual SQL injection techniques, including time-based and content-based blind attacks, with a focus on chaining inputs into full command execution. Understand how ORM misconfigurations, input filtering, and weak error handling can lead to complete compromise.Domain 3: Deserialization &.NET-Specific AttacksTopics:.NET DeserializationRemote Code Execution (via deserialization)Learn to exploit insecure object serialization in.NET environments. Practice crafting ViewState exploits, leveraging BinaryFormatter abuse, and building custom gadget chains that lead to remote code execution in enterprise-grade applications.Domain 4: SSRF, Data Exfiltration & Internal AccessTopics:Advanced Server-Side Request Forgery (SSRF)Data ExfiltrationSimulate complex SSRF scenarios that result in metadata exposure, cloud credential theft, and internal pivoting. Understand how attackers escalate SSRF to file write, internal API abuse, and ultimately remote access or exfiltration of sensitive information.Domain 5: Client-Side Exploitation & Session AbuseTopics:Persistent Cross-Site Scripting (XSS)Session HijackingDevelop the ability to exploit persistent XSS vulnerabilities in modern apps and use them to hijack user sessions, bypass CSP protections, and perform privilege escalation. Examine real-world XSS chains that lead to full admin takeover.Domain 6: Modern JavaScript Attacks - Prototype PollutionTopics:JavaScript Prototype Pollution(Optional chaining with XSS or SSRF)Dive into one of the most overlooked but powerful front-end attack classes in modern JavaScript applications. Learn how to exploit prototype pollution to escalate privileges, bypass client-side logic, or chain it with other flaws like XSS or SSRF.By the end of this course, you'll have sharpened your ability to spot and exploit complex web application vulnerabilities, strengthened your OSWE exam readiness, and practiced the core techniques needed for real-world offensive web security engagements.