| Web Vulnerability Assessment |
|
|
Automated Tools |
|
|
Archani, Owasp Zap etc |
|
|
Analyzing HTTP Requests using burp |
|
|
Google Dorks |
|
|
Manual Testing |
|
|
OWASP Top 10 |
| Penetration testing |
|
|
Setting up ASL Hackme Series (ASL Hackme Series) |
|
|
Installation and getting started |
|
|
Manual VS Automated |
| Sql injections introduction |
|
|
Sql Injection Login Bypass |
|
URL based sql injection (string and integer) |
|
Union Based Sql Injection in mysql |
|
Double query sql injection in mysql |
|
Update XML and Xpath sql injection |
|
Mysql and postgres sql injection syntax |
|
Browser based Sqli |
|
Cookie based injection |
|
Blind injection |
|
Web Application Firewall bypass techniques |
|
Automated tools |
|
Countermeasures |
| Cross Site Scripting |
|
|
Reflective and persistent XSS |
|
|
Manual Testing |
|
|
Various vectors |
|
|
IE 8,9 Filter Bypassing |
|
|
URL and Referral based XSS |
|
|
Useful tools |
|
|
Payloads (cookie stealing, redirection etc) |
|
|
XSS frameworks |
|
|
Countermeasures |
| Cross Site Request Forgery |
|
|
Introduction |
|
|
Detection and Attacking |
|
|
Useful tools |
|
|
Countermeasures |
| File Include vulnerabilities |
|
|
Local File Inclusion |
|
|
Remote FIle Inclusion |
|
|
PHP Wrapper Injections |
|
|
Web Application Firewall Bypassing |
|
|
Useful Tools |
|
|
Countermeasures |
| Configuration Flaws |
|
|
Weak Passwords |
|
|
Log Poisoning |
|
|
Command Execution Flaws |
|
|
Full path Disclosure attacks |
|
|
Unencrypted authentication files |
|
|
Session Hijackings |
|
|
Web based backdoors (webshells) |
|
|
Malicious File uploads |
|
|
Shell upload on phpmyadmin |
|
|
HTTP put method |
|
|
Uploading backdoors on common applications (Joomla and Wordpress) |
|
|
Countermeasures |
| Threats on shared hosting |
|
|
Finding sites hosted on same servers |
|
|
Using dorks to find vulnerable sites fast |
|
|
Privilege Escalation Windows |
|
|
Privilege Escalation Linux |
|
|
Local root exploits |
|
|
Gaining access to other sites on same server using symbolic links |
|
|
Brute forcing Joomla and Wordpress sites on shared server |
|
|
Countermeasures |