UrbanPro
true

Application Security Testing

LIVE
2 reviews
30 Hours

Course offered by Gunwant Singh

2 reviews

About the Course
Application Security training program is designed to make participants aware of common web application vulnerabilities and the impact they can have on businesses. The course also incorporates effective defense mechanisms and the use of Best Practices to mitigate the risk of attacks. The course focuses on the latest hacking attacks targeted to different platforms & networks and covers countermeasures to secure IT infrastructure. The course focuses on OWASP Top 10 and SANS Top 25 vulnerabilities and risks.

Topics Covered
Topic 1: Introduction
• Welcome
• Motivation
• Course Objectives
• Course Overview
• The Software Development Lifecycle (SDLC)
• Security in the SDLC
• The Importance of Security Requirements
• Application Security in Context
• Lab Exercise: Requiring Security
• Quiz


Topic 2: A Taxonomy of Web Application Vulnerabilities
• Debug Info in Prod
• Denial of Service
• Failure to Respond to Attack
• Failure to Verify Integrity
• HTTP
• Information Leakage
• Injection
• Insecure Coding
• Insecure I/O
• Insecure Platform
• Intentional
• Poor Access Control
• Poor Certificate Management
• Poor Input Validation
• Poor Password Management
• Poor Session Management
• Race Condition
• Replay
• Sensitive Info Exposure
• Trusting DNS
• Lab Exercise: The OWASP Top 10
• Quiz


Topic 3: Using a Web Proxy
• Viewing Web Page Source
• Example: Tamper Data
• Violating Designer Assumptions
• Errors vs. Unexpected Behavior
• Crafting Malicious Input
• Example: Burp Proxy
• Example: OWASP ZAP
• Lab Exercise: Injection Rejection
• Quiz

Topic 4: Detecting XSS
• What is Cross-site Scripting ?
• Example: Cross-site Scripting
• Detecting XSS Vulnerabilities
• Case Study: But I don’t Like Spam
• Lab Exercise: XSS Attacks
• Quiz


Topic 5: Detecting SQL Injection
• What is SQL Injection ?
• Case Study: I Still Don’t Like Spam
• Detecting SQLi Vulnerabilities
• Lab Exercise: SQLi Attacks
• Quiz

Topic 6: Detecting Command Injection
• What is Command Injection ?
• Case Study: Do the Math
• Detecting Command Injection Vulnerabilities
• Other Injection Attacks
• Lab Exercise: Taking Command
• Quiz


Topic 7: Detecting Access Control Vulnerabilities
• Password Strength & Management
• Testing for Account Enumeration
• Navigate Your Way
• Testing for Client Side Access Control
• Roles, Accounts, and Permissions
• Testing for Cross-site Request Forgery
• Testing for Path Traversal
• Testing for Horizontal Escalation
• Testing for Replay
• Testing for Session Fixation
• Testing for Session Termination
• Lab Exercise: Out of Control
• Quiz

Topic 8: Detecting Other Vulnerabilities
• Parameter Mayhem
• Sensitive Information Exposure
• Event Timing
• File Uploads and Transfers
• Testing for Denial of Service
• Lab Exercise: Go Get ‘Em
• Quiz

Topic 9: Miscellaneous Topics
• Application Security in Perspective
• Security Manager Design Pattern
• Avoiding Common Vulnerabilities
• Security in the SDLC
• The Security Design Review
• The OWASP ESAPI

Who should attend
- IT/Security professionals - Developers/Code reviewers - Security Testers/Ethical Hackers - Security Analysts - Security Enthusiasts/Students

Pre-requisites

- Basic understanding of computing - Know-how of web applications - Networking Know-how - Open mind

What you need to bring

PC/Laptop with a high-speed Internet Connection.""

Key Takeaways

- Course Materials (soft copies) - Videos/Lectures/PDFs - Security Tools - Practice Questions/material

About the Trainer

5 Avg Rating

2 Reviews

4 Students

2 Courses

Gunwant Singh

Specialization in Application Security

CtrlAltSecure has experienced trainers with years of industrial experience with specialization in application security. We have tested and secured a number of government and corporate applications and software used by several Fortune 500 companies in the world. Our trainers hold the industry's best security certifications like CISSP, GMOB, GXPN, PMP.

We also host blogs for students and we have written whitepapers and articles for several companies. We have also actively involved in OWASP local and international chapters.

Students also enrolled in these courses

LIVE
7 reviews
3 Hours

Course offered by Palvinder Singh

106 reviews
LIVE
7 reviews
3 Hours

Course offered by Palvinder Singh

106 reviews
LIVE

Course offered by JITENDRA KUMAR PATEL

1 review
LIVE
18 Hours

Course offered by Varun M Deshpande

0 review

Reviews (2)

5 out of 5 2 reviews

CtrlAltSecure https://www.urbanpro.com/assets/new-ui/institute-100X100.png Bellandur
5.0052
CtrlAltSecure
K

Application Security Testing

"Gunwant is one of the best tutor that I have come across. He explained every concept with relevant examples. That helps me to pass my exam with good marks in application security. He has great patience to listen my doubts and clarified them. Thank you very much Gunwant. "

CtrlAltSecure
G

Application Security Testing

""I would say, this FIVE star may be less for the teaching efforts he does for you. He has GREAT Experience towards Application Security/pen-testing. I definitely recommend Gunwant for the people who looking for a perfect TRAINER with GREAT EXPLANATION and briefing skills and to get cleared from all your doubts. You will also gain something interesting from his vast experience. PUT your EFFORT from your END and GAIN the BEST from his END. Just Go and enroll for it. Good Luck. Looking forward to seeing you in our InfoSec community very soon. " "

View All
Have you attended any class with Varun?

Tutor has not setup batch timings yet. Book a Demo to talk to the Tutor.

Different batches available for this Course

5 out of 5 2 reviews

CtrlAltSecure https://www.urbanpro.com/assets/new-ui/institute-100X100.png Bellandur
5.0052
CtrlAltSecure
K

Application Security Testing

"Gunwant is one of the best tutor that I have come across. He explained every concept with relevant examples. That helps me to pass my exam with good marks in application security. He has great patience to listen my doubts and clarified them. Thank you very much Gunwant. "

CtrlAltSecure
G

Application Security Testing

""I would say, this FIVE star may be less for the teaching efforts he does for you. He has GREAT Experience towards Application Security/pen-testing. I definitely recommend Gunwant for the people who looking for a perfect TRAINER with GREAT EXPLANATION and briefing skills and to get cleared from all your doubts. You will also gain something interesting from his vast experience. PUT your EFFORT from your END and GAIN the BEST from his END. Just Go and enroll for it. Good Luck. Looking forward to seeing you in our InfoSec community very soon. " "

Have you attended any class with Varun?

Reply to 's review

Enter your reply*

1500/1500

Please enter your reply

Your reply should contain a minimum of 10 characters

Your reply has been successfully submitted.

Certified

The Certified badge indicates that the Tutor has received good amount of positive feedback from Students.

Different batches available for this Course

tickYou have successfully registered

Application Security Testing by Gunwant Singh

CtrlAltSecure picture
LIVE
(2 reviews)

Class
starts in

01

Hour

01

Min

01

Sec

Select One

Register Now

Do you want to Register for this Free class?

Yes, Register No, not right now

Tell us a little more about yourself

Application Security Testing by Gunwant Singh

CtrlAltSecure picture
LIVE
(2 reviews)

Class
starts in

01

Hour

01

Min

01

Sec

Please enter Student name

Please enter your email address.

Please enter phone number.

Verify Your Mobile Number

Please verify your Mobile Number to book this free class.

Update

Please enter 10 digit phone number.

Please enter your phone number.

Please Enter a valid Mobile Number

This number is already in use.

Resend

Please enter OTP.

Or, give a missed call and get your number verified

080-66-0844-42

This website uses cookies

We use cookies to improve user experience. Choose what cookies you allow us to use. You can read more about our Cookie Policy in our Privacy Policy

Accept All
Decline All

UrbanPro.com is India's largest network of most trusted tutors and institutes. Over 55 lakh students rely on UrbanPro.com, to fulfill their learning requirements across 1,000+ categories. Using UrbanPro.com, parents, and students can compare multiple Tutors and Institutes and choose the one that best suits their requirements. More than 7.5 lakh verified Tutors and Institutes are helping millions of students every day and growing their tutoring business on UrbanPro.com. Whether you are looking for a tutor to learn mathematics, a German language trainer to brush up your German language skills or an institute to upgrade your IT skills, we have got the best selection of Tutors and Training Institutes for you. Read more