CYBER SECURITY
            RESEARCH CENTRE

CSRC Logo

News

HOME LATEST >> PROJECTS EDUCATION & AWARENESS >> TECHNICAL DOCS >> GLOBAL EVENTS>> CONTACT US PEOPLE TOOLS >> SUGGESTIONS

 
common.JPG

Module - 10 Web Application Security Audit

 

Level : Advanced

Learn about how to conduct a web application audit – starting from drawing up the plan, creating the checklist, running the tools and recommending the corrective steps.

Who should attend?

  • IS Auditors
  • IT Security Professionals
  • Software developers/IT managers working on Web applications

Why to attend?

This course equips you to check the security of your software. At the end, you would take away a checklist of tests, tools and techniques with the thorough understanding to use them for your application. The course begins with a detailed look at HTTP protocol, its features and limitations. This will help you better understand the vulnerabilities and risks. You will learn all the known methods of compromising a web application, from SQL injection to session hijacking. You will work on sample web applications custom developed to help you gain a better understanding of real life scenarios.

 

Topics at a glance

 

  • HTTP and HTML
  • Session Management
  • Caching controls
  • SQL injection
  • Cross site scripting
  • Input validation
  • Cookies

Hands on sessions

  • Web application assessment proxy
  • Audit a sample web application

Duration: 3 days