Advanced Web Hacking

Date: 

Sunday, June 27, 2021 - 00:00 to Tuesday, June 29, 2021 - 00:00

Venue: 

Hack in Paris

Event type: 

  • Live Online Training

Overview:
This class teaches you a wealth of hacking techniques to compromise modern-day web applications, APIs and associated end-points. This class focuses on specific areas of appsec and on advanced vulnerability identification and exploitation techniques. The class allows you to learn and practice some neat, new and ridiculous hacks which affected real-life products and have found a mention in real bug-bounty programs.

The vulnerabilities selected, either typically go undetected by modern scanners or the exploitation techniques are not so well known.

You will also benefit from a state-of-art Hacklab and we will be providing FREE 30 days lab access after the class to allow attendees more practice time.

Some of the highlights of the class include:

Modern JWT, SAML, OAuth bugs
Core business logic issues
Practical cryptographic flaws.
RCE via Serialisation, Object, OGNL and template injection.
Exploitation over DNS channels
Advanced SSRF, HPP, XXE and SQLi topics.
Serverless exploits
Web Caching issues
Attack chaining and real-life examples.

Register to join, we look forward to talking to you.

Click to register