Advanced Web Application Security
The advertisement posted in this page is already inactive and it is possible that the details here are already invalid. Content posted in this page is only provided for reference and does not constitute fact. Please be guided accordingly.
Advanced Web Application Security
This advertisement is already inactive- Date Posted: January 25, 2011
- Address: Unit 1603 Cityland 10 Tower 2 H.V. Dela Costa St. Salcedo Village, Makati City
- Classification: Free
- Location: Makati City, Metro Manila
-
- Ad ID: 3124172
- Date Updated: July 23, 2012
- Category: Talks, Workshops, and Seminars
- Short URL:
- Contact Numbers:
- +63-926-XXX-XXXX+63-926-106-9134 (GLOBE)
- 02-571-XXXX02-571-3681
- Feedback Score:
- Member Address: western bicutan taguig city
- Last Access From:Philippines
-
- Registered: Dec 7, 2010
- Last Sign In: 23 hours ago
- View other ads of judsecuritytraining.
Description
Advanced Web Application Security
This course introduces you to Web application security. It presents today's most critical Web application security vulnerabilities, as well as principles for secure coding and solutions for fixing such vulnerabilities. The course also introduces some best practices for taking Web application security into account during the Software Development Life-Cycle (SDLC).
The speaker will explain and demonstrate the different exploitation techniques, in order to show the attendees the real risks related to these vulnerabilities.
Participants will be exposed to the common web application vulnerabilities, testing techniques and tools by a professional security tester.
Who Should Attend:
-
Faculties
-
System Administrators
-
IT Managers
-
Web developers
-
Web managers
-
Quality assurance personnel
-
Interested individuals
COURSE OUTLINE:
- 1. Application Security Fundamentals and Principles
- The evolution of applications
- Threats to an application
- Application security trends
- The spectrum of application security attacks
- 2. Application Components and Protocols
- Understanding multilayered application architecture
- Programming languages used in applications - J2EE, .NET, PHP, etc.
- Inside HTTP, HTML forms and browser interaction
- Introduction to tools useful for testing applications
- Web Server configuration
- Web server vulnerabilities
- Fingerprinting web servers and application servers
- Security controls pertaining to web servers and their deployment
- 3. Application Footprinting, discovery and profiling applications
- Host and Domain discovery
- Discovering web applications and interfaces
- Discovering the functional structure of applications - the hacker's viewpoint
- Advanced techniques - discovering Web services and Web applications
- Profiling Web services and applications
- Ajax fingerprinting
- Profiling Ajax applications
- Server-side entry point detection
- 4. Application Attack Vectors
- Mapping assets to attacks
- Sifting through HTML source
- Forcing application layer errors
- Information leakage through error messages
- Source code disclosure
- Input tampering and input validation attacks
- SQL injection and attacks on the database
- Injecting malicious code and remote command exec
- Accessing the underlying file system
- Brute forcing HTTP authentication
- Brute forcing HTML form authentication
- Session Hijacking
- Cross Site Scripting (XSS) attacks
- Cross Site Request Forgery (XSRF) attacks
- 5. Threat Modelling
- Threat analysis
- Architecture review
- Technologies and Source Code
- Threat matrix
- Security controls for code
- Design analysis and review
- 6. Assessment methods
- 7. Application Attack countermeasures
- 8. An Introduction to Advanced Application Architectures
- 9. Advanced Web attacks
- 10. Securing Code and Defense
- 11. XML and Web Services
- 12. Web Fuzzing and Exploits
- 13. Client side coding
Seminar Package: Materials, Certificate, AM/PM and Lunch
Duration: 1 Day (9:00 AM – 5:00 PM)
Venue: Unit 1110 Cityland Shaw Tower. St. Francis Street corner Shaw Blvd. Mandaluyong City
If you have other concerns, please do not hesitate to contact us and we will be glad to assist you.
Limited Seats Only!
Please call us for reservation / inquiry
Tel. (362)654.9537
Or text / call + 639 2610.69134
Look for Jud
Seller Contact Details
judsecuritytraining
Judy Ann Raon- +63-926-XXX-XXXX+63-926-106-9134 (GLOBE)
- 02-571-XXXX02-571-3681
Other Ads by judsecuritytraining
- Information Security Conference Topic: Network and Web Application Vulnerability Assessment and Penetration Testing Inclusive of Certificates and Softcopy of Handouts Who...Information Security Conference (Student Edition)
- Linux Systems Administration and Security Workshop Who should Attend : This 2-days workshop is designed for students and professionals who is currently working on...Linux Systems Administration and Security Workshop
- Catch the Bitshield s launching of mile2 s CPTE course.Don t miss it! It only happens NOW! The course delivers advanced and cutting edge...CPTE Class Certified Penetration Testing Engineer
- Code Course Jan Feb March April May June July Aug. Sept. Oct. Nov. Dec. Duration ...2013 Training Calendar
- WEB APPLICATION VULNERABILITY ASSESSMENT PENETRATION TESTING WORKSHOP DESCRIPTION Web Application Vulnerability Assessment and...Web Application Vulnerability Assessment and Pe...
- CISSP - Certified Information Systems Security Professional The CISSP certification is recognized worldwide and was the first certification in the field of information...CISSP/CISSO Training
Comments
Leave a message for the advertisement owner here (for members only). Follow this ad's comments via RSS
- Page:
- 1
- Page:
- 1
web design seminar Ads
- INFOGUIDE KNOWLEDGE AND TRAINING CENTER INC. Finding ways for a better future... In order to be successful in life you need the appropriate training, you need the discipline, you...Business Seminars by INFOGUIDE KNOWLEDGE AND TR...
- Related Ads
- Related Ads
- Related Ads
- Related Ads
- Related Ads
Need help?