SEC 101 Web Application Vulnerabilities

This course covers the most common vulnerabilities found in web applications, how the vulnerabilities can be exploited by hackers and how they can be avoided by developers.

Title Web Application Vulnerabilities
Code SEC 101
Topics Injection
SQL injection
Cross site scripting (XSS)
Broken authentication
Broken session management
Insecure direct object references
Security misconfiguration
Sensitive data exposure
Missing function level access control
Cross site request forgery (CSRF)
Using vulnerable third-party components
Unvalidated redirects and forwards
Duration 4 hours for the condensed version and 8 hours for full course
Audience Software developers
Software architects
Quality assurance engineers
Delivery managers
Product owners