How to Hack( Secure) a Web Application- Security Practices
This course for anyone who wants to hack web Apps or secure web Apps or test web apps from scratch, We will start by discus the fundamentals of web development. Then we will start talking about how to gathering Information on the Target to attack. Then we will learn how to Bypass Restriction and validation of input then how to secure our web Apps from the bypassing process. Then we will talk about a number of attacks such as Query String Attack, Cookies Attack, Hidden Field attack, URL Jumping Attack,csrf attack and how to use Session Hijacking to stole user identity. Then we will talk about XSS Attack and how could be used to stole cookies and show ADS or apply pishing, and SQL Injection that could be used to break the Web App database. Then we will talk about Directory Traversal and Denial Of Service. All the practises has real-world exercises
Course sections ( Click on the time frame to go to section)
00:00 Introduction
00:03:12 Client-server communication concept
00:08:32 Opposing Goals
00:12:35 What you need to know before start
00:13:50 POST Vs GET
00:26:19 Cookie vs Session
00:33:36 Attack #1: HTML Attack
00:39:23 Attack #1: HTML Attack solution
00:42:26 Attack #2: ByPass Restriction of input
00:46:56 Attack #2: ByPass Restriction of input solution
00:54:00 Attack #3: Query String Attack
00:56:48 Attack #3: Query String Solution
01:07:46 Attack #4: Cookies Attack
01:15:45 Attack #4: Cookies Attack Solution
01:17:06 Attack #5: Hidden Field attack Solution
01:17:54 Attack #5: Hidden Field attack
01:19:37 Attack #6: URL Jumping
01:20:16 Attack #6: URL Jumping Solution
01:29:41 Attack #7: Session Hijacking attack
01:33:10 Attack #7: Session Hijacking Solution
01:47:59 Attack #8: XSS attack
02:01:40 Attack #8: Black-list vs While-list
02:03:52 Attack #8: XSS attack Solution
02:08:41 Attack #9: SQL Injection
02:13:24 Attack #9: SQL Injection solution
02:15:29 Attack #10: Directory Traversal
02:18:27 Attack #10: Directory Traversal Solution
02:21:41 Attack #11: csrf tocken attack
02:27:36 Attack #11: csrf tocken attack solution
02:39:40 Attack #12: DoS
02:41:27 Attack #13: Server FingerPrint
=======================================
#hacks #securitybreach
Course material
https://github.com/hussien89aa/swa
Что делает видео по-настоящему запоминающимся? Наверное, та самая атмосфера, которая заставляет забыть о времени. Когда вы заходите на RUVIDEO, чтобы посмотреть онлайн «How to Hack( Secure) a Web Application- Security Practices», вы рассчитываете на нечто большее, чем просто загрузку плеера. И мы это понимаем. Контент такого уровня заслуживает того, чтобы его смотрели в HD 1080, без дрожания картинки и бесконечного буферизации.
Честно говоря, Rutube сегодня — это кладезь уникальных находок, которые часто теряются в общем шуме. Мы же вытаскиваем на поверхность самое интересное. Будь то динамичный экшн, глубокий разбор темы от любимого автора или просто уютное видео для настроения — всё это доступно здесь бесплатно и без лишних формальностей. Никаких «заполните анкету, чтобы продолжить». Только вы, ваш экран и качественный поток.
Если вас зацепило это видео, не забудьте взглянуть на похожие материалы в блоке справа. Мы откалибровали наши алгоритмы так, чтобы они подбирали контент не просто «по тегам», а по настроению и смыслу. Ведь в конечном итоге, онлайн-кинотеатр — это не склад файлов, а место, где каждый вечер можно найти свою историю. Приятного вам отдыха на RUVIDEO!
Видео взято из открытых источников Rutube. Если вы правообладатель, обратитесь к первоисточнику.