Back

Web Security Fundamentals

With practical tools, hands-on experience, and a focus on real-world security practices, this course ensures that students can confidently embark on their journey to becoming web security professionals.

Tarek

Lead Trainer

5 hr

Description
Coming soon

Course Curriculum

Web Foundations

7 lessons

1. 1- Internet and Web Fundamentals

00:00

2. Web application technologies

3. Burp Suite Lab

4. Understanding the web

5. Websites and web pages

6. Static & dynamic websites

7. Servers & clients

Understanding Web Architectures

5 lessons

8. Typical web architecture

9. DNS servers

10. Web servers, database servers

11. Load balancers, CDNs

12. Practical example: Cloudflare

Understanding HTTP/S

4 lessons

13. Protocol foundations

14. Different HTTP methods

15. Requests and responses

16. Practical Labs

Understanding Cookies (not the yummy type)

3 lessons

17. Why cookies

18. Properties of cookies

19. Practical Lab

Intro to OWASP Top 10

3 lessons

20. OWASP Top 10 crash course

21. Changes in OWASP

22. Practical Labs

Web Application Firewalls

4 lessons

23. Why are firewalls not enough

24. What are WAFs

25. What WAFs can and cannot do

26. WAF bypass examples

Web Application Vulnerability Scanning

3 lessons

27. SAST and DAST

28. How vulnerability scanners work

29. Advantages and disadvantages of different scanning types

Web Security Best Practices

6 lessons

30. Secure code review

31. Encryption best practices

32. Authentication and authorization best practices

33. Error handling and logging best practices

34. Vulnerability management best practices

35. WAF best practices