Web Security
Nowadays the web applications are playing an important role in our IT world, that’s why securing the web applications and its environment in now more important than ever, the course helps students to understand the technologies that are being used under the different services and systems so that they are able to make informed decisions when choosing a cloud vendor. The course also covers the different types of cloud products, their working, their benefits and the migration process to the cloud. The Web Application security course enables the students to establish industry acceptable auditing standards with current best practices and policies specifically for the web applications and cloud environment. The students are able to learn, implement and penetration test the concepts taught in this course in real-world scenarios.
Course syllabus:
-
Overview of web technologies
-
Web application architecture
-
Attack trends
-
Authentication vulnerabilities
-
Authorization vulnerabilities
-
SSL vulnerabilities and testing
-
Session vulnerabilities
-
Cross-site request forgery
-
Input-related flaws
-
SQL injection
-
Cross-site scripting
-
Web services config security
-
Vulnerability detection in web application
-
Incident handling
-
XML security
-
AJAX technologies
-
AJAX common attacks
-
Invalid redirect and forwards
-
Insecure direct object references