Advanced Web Hacking course from not_so_secure

baker

Заглянувший
Заглянувший
B

baker

Заглянувший
Заглянувший
Сообщения
8
Реакции
9

This is our 5-day Advanced-level web application security testing course.
Much like our popular Advanced Infrastructure Hacking class, this class talks about a wealth of hacking techniques to compromise web applications, APIs, cloud components and other associated end-points. This class focuses on specific areas of appsec and on advanced vulnerability identification and exploitation techniques (especially server side flaws). The class allows attendees to practice some neat, new and ridiculous hacks which affected real life products and have found a mention in real bug-bounty programs. The vulnerabilities selected for the class either typically go undetected by modern scanners or the exploitation techniques are not so well known.

For security and IT decision makers
What's the real impact of training your team through NotSoSecure?
Harden your perimeter, lower the risk of compromise, and make your organization a less attractive target for attackers by building a team that can identify, test, and guide developers to secure web-based vulnerabilities. Trained delegates can:
  • Perform security testing to identify and safely exploit complex web vulnerabilities that get missed by scanners and other automated tools – this can help you detect vulnerabilities and recommend patching accordingly.
  • Design this testing around real-world attacker behavior and tooling, making it relevant to the threats facing your organization.
  • Customize offensive tooling to generate tailored (rather than “out of the box”) payloads that lead to more advanced testing.
  • Recommend measures to circumvent any conditions that could lead to the emergence of vulnerabilities.
  • Understand the business impact of web vulnerabilities and articulate this to key stakeholders.
  • Take on greater responsibility in the team and become an advocate of security in the wider business.
 

Сверху Снизу