SECR-010 Major Vulnerabilities in Web Application Security

SECR-010 Major Vulnerabilities in Web Application Security
24 hours
Online
English
SECR-010
SECR-010 Major Vulnerabilities in Web Application Security
Sign Up
Duration
24 hours
Location
Online
Language
English
Code
SECR-010
Schedule and prices
30.11.2023 - 15.12.2023
€ 600 *
Training for 7-8 or more people? Customize trainings for your specific needs
SECR-010 Major Vulnerabilities in Web Application Security
Sign Up
Duration
24 hours
Location
Online
Language
English
Code
SECR-010
Schedule and prices
30.11.2023 - 15.12.2023
€ 600 *
Training for 7-8 or more people? Customize trainings for your specific needs

Description

This course is built as a detailed description with hands-on experience of today’s most common vulnerabilities: from OWASP Top-10 2021. Trainees will learn methods of static (including SAST) and dynamic (including DAST) identification and the reliable elimination of such vulnerabilities.
After completing the course, a certificate
is issued on the Luxoft Training form

Prerequisites

Participants must be able to work with web browsers, read and write code for modern web applications, and understand the main principles of their operation: HTTP, Cookies, Proxies, etc.

Roadmap

  1. What is Application Security, why and how to use it (0,5 h)
  2. Overview of OWASP TOP 10 (0,5 h)
  3. A01 – Broken Access Control (1 h) + Practical tasks (2 h)
  4. A02 – Cryptographic Failures (1 h) + Practical tasks (1 h)
  5. A03 – Injection (2 h) + Practical tasks (1 h)
  6. A04 – Insecure Design (0.5 h) + Practical tasks (1 h)
  7. A05 – Security Misconfiguration (1 h) + Practical tasks (1 h)
  8. A06 – Vulnerable and Outdated Components (0,5 h) + Practical tasks (1 h)
  9. A07 – Identification and Authentication Failures (2 h) + Practical tasks (2 h)
  10. A08 – Software and Data Integrity Failures + Insecure Deserialization (1 h) + Practical tasks (1 h)
  11. A09 – Security Logging and Monitoring Failures (0,5 h) + Practical tasks (0,5 h)
  12. A10 – Server-Side Request Forgery (0,5 h) + Practical tasks (0,5 h)
  13. A8:2013- Cross-Site Request Forgery (CSRF) (1 h) + Practical tasks (1 h)
Schedule and prices
View:
30.11.2023 - 15.12.2023
10:00-12:00
Location:Online
Duration:24 hours
Language:English
Time:10:00-12:00
Timezone:UTC +2
Trainer: Voloshyn Dmytro
Trainer Voloshyn Dmytro
€ 600
Sign Up
View Entire Schedule
Your benefits
Expertise
Our trainers are industry experts, involved in software development project
Live training
Facilitated online so that you can interact with the trainer and other participants
Practice
A focus on helping you practice your new skills
Still have questions?
Connect with us
Thank you!
The form has been submitted successfully.