4.91
(32 تقييمات)
eWPTv2 Prep
تصنيفات: اختبار اختراق الويب
عن الدورة
شهادة eWPT المقدمة من INE،من أشهر الشهادات التي تركز بشكل خاص على اختبار اختراق تطبيقات الويب، والذي يتضمن تقييم أمان تطبيقات الويب من خلال تحديد نقاط الضعف ونقاط الضعف التي يمكن استغلالها من قبل المهاجمين الضارين.
الجروب الدراسي للنقاش والاستفسارات الخاصة بالدورة
ماذا سوف تتعلم؟
- Web Application Architecture & Components
- Web Proxies
- Cross-Site Scripting (XSS)
- SQL Injection
- Sensitive Data Exposure
- Injection & Input Validation
- File & Resource Attacks
- Web Services
- Encoding & Filtering
محتوى الدورة
كل سلايدات الدورة فى رابط واحد مجمع
-
Course Slides
00:00
مكتمل – Section 1- Learning Path Introduction
مكتمل – Section 2- Introduction to Web Application Security Testing
-
02.1.1- Introduction to Web App Security Testing – Part 1
41:10 -
02.1.2- Introduction to Web App Security Testing – Part 2
34:21 -
02.1.3- Introduction to Web App Security Testing – Part 3
22:48 -
02.1.4- Introduction to Web App Security Testing – Part 4
25:10 -
02.2- Web Application Architecture and Components
45:48 -
02.3.1- HTTP Protocol Fundamentals – Part 1
51:20 -
02.3.2- HTTP Protocol Fundamentals – Part 2
20:39 -
02.3.3- HTTP Protocol Fundamentals – Part 3
25:36 -
02.3.4- HTTP Protocol Fundamentals – Part 4
02:49 -
02.3.5- HTTP Protocol Fundamentals – Part 5 (HTTP Method Enumeration Lab)
01:02:06 -
02.4- Web Application Penetration Testing Lifecycle
01:04:00
مكتمل – Section 3- Information Gathering
-
03.1- Information Gathering – Part 1
01:05:00 -
03.2- Information Gathering – Part 2
36:00 -
03.3- Information Gathering – Part 3
42:15 -
03.4- Information Gathering – Part 4
46:32 -
03.5- Information Gathering – Part 5
08:35 -
03.6- Information Gathering – Part 6 (Passive Crawling with Burp Suite Lab)
09:10 -
03.7- Information Gathering – Part 7 (Apache Recon – Basics Lab)
20:00 -
03.8- Information Gathering – Part 8
11:12 -
03.9- Information Gathering – Part 9 (DNS – Zone Transfer Enabled Lab)
23:06 -
03.10- Information Gathering – Part 10
23:10 -
03.11- Information Gathering – Part 11 (Scanning Web Application with Nikto Lab)
35:07 -
03.12- Information Gathering – Part 12 (Directory Enumeration with Gobuster Lab)
21:48
مكتمل – Section 4- Web Proxies
-
04.1- Web Proxies – Part 1
33:00 -
04.2- Web Proxies – Part 2
53:00 -
04.3- Web Proxies – Part 3
23:00 -
04.4- Web Proxies – Part 4 (Passive Crawling with Burp Suite Lab)
09:00 -
04.5- Web Proxies – Part 5 (Directory Enumeration with Burp Suite Lab)
15:00 -
04.6- Web Proxies – Part 6 (Attacking Basic Auth with Burp Suite Lab)
19:00 -
04.7- Web Proxies – Part 7 (Vulnerable Online Calculator – Code Injection Lab)
31:00 -
04.8- Web Proxies – Part 8
42:00 -
04.9- Web Proxies – Part 9 (Directory Enumeration with ZAProxy Lab)
17:00 -
04.10- Web Proxies – Part 10 (Scanning Web Application with ZAProxy Lab)
31:00 -
04.11- Web Proxies – Part 11 (Active Crawling with ZAProxy Lab)
07:00 -
04.12- Web Proxies – Part 12 (Attacking HTTP Login Form with ZAProxy Lab)
08:00
مكتمل – Section 5- Cross-Site Scripting
-
05.1- Cross-Site Scripting (XSS) – Part 1
43:00 -
05.2- Cross-Site Scripting (XSS) – Part 2
01:18:00 -
05.3- Cross-Site Scripting (XSS) – Part 3 ( Anatomy of a Cross-Site Scripting Attack Lab)
31:00 -
05.4- Cross-Site Scripting (XSS) – Part 4 ( Reflected XSS Lab)
11:00 -
05.5- Cross-Site Scripting (XSS) – Part 5 ( CVE-2018-9034 Lab)
19:00 -
05.6- Cross-Site Scripting (XSS) – Part 6
13:00 -
05.7- Cross-Site Scripting (XSS) – Part 7 (ApPHP MicroBlog Lab)
18:00 -
05.8- Cross-Site Scripting (XSS) – Part 8 (MyBB Downloads Plugin Lab)
12:00 -
05.9- Cross-Site Scripting (XSS) – Part 9
26:00 -
05.10- Cross-Site Scripting (XSS) – Part 10 (Exploiting DOM-Based XSS Vulnerabilities Lab)
18:00 -
05.11- Cross-Site Scripting (XSS) – Part 11
06:00 -
05.12- Cross-Site Scripting (XSS) – Part 12 (XSS Attack with XSSer Lab)
21:00
جاري التسجيل – Section 6- SQL Injection
-
06.1- SQL Injection – Part 1
48:00 -
06.2- SQL Injection – Part 2
38:00 -
06.3- SQL Injection – Part 3
48:00 -
06.4- SQL Injection – Part 4
01:14:00 -
06.5- SQL Injection – Part 5
01:09:00 -
06.6.1- SQL Injection – Part 6 (SQL Basics Lab)
01:00:00 -
06.6.2- SQL Injection – Part 7 (SQL Basics Lab)
21:00 -
06.7- SQL Injection – Part 8
56:00 -
06.8- SQL Injection – Part 9 (Mutillidae 2 Lab)
30:00 -
06.9- SQL Injection – Part 10
23:00 -
06.10- SQL Injection – Part 11 (PHPMyRecipes Lab)
52:00 -
06.11- SQL Injection – Part 12
19:00 -
06.12- SQL Injection – Part 13 (Vulnerable Results Portal – Union Based SQLi Lab)
37:00 -
06.13- SQL Injection – Part 14
33:00 -
06.14- SQL Injection – Part 15 (OpenSupports Lab)
14:00
مكتمل – Section 7- Common Attacks
-
07.1- Common Attacks – Part 1
17:00 -
07.2- Common Attacks – Part 2 (HTTP Method Enumeration Lab)
01:02:00 -
07.3- Common Attacks – Part 3
24:00 -
07.4- Common Attacks – Part 4 (Attacking Basic Auth with Burp Suite Lab)
19:00 -
07.5- Common Attacks – Part 5 (Attacking HTTP Authentication with Hydra Lab)
22:00 -
07.6- Common Attacks – Part 6
10:00 -
07.7- Common Attacks – Part 7 (Vulnerable Apache III Lab)
14:00 -
07.8- Common Attacks – Part 8
12:00 -
07.9- Common Attacks – Part 9 (Vulnerable Bank Portal – Dictionary Attack Lab)
15:00 -
07.10- Common Attacks – Part 10 (Unlimited Attempts Lab)
18:00 -
07.11- Common Attacks – Part 11
36:00 -
07.12- Common Attacks – Part 12
18:00 -
07.13- Common Attacks – Part 13 (Improper Session Management III Lab)
16:00 -
07.14- Common Attacks – Part 14
15:00 -
07.15- Common Attacks – Part 15 (Advanced Electron Forum Lab)
14:00 -
07.16- Common Attacks – Part 16
14:00 -
07.17- Common Attacks – Part 17 (Vulnerable File Backup Utility – Command Injection Lab)
22:00 -
07.18- Common Attacks – Part 18 (PHP Code Injection Lab)
12:00 -
07.19- Common Attacks – Part 19 (RCE via MySQL Lab)
17:00
مكتمل – Section 8- File & Resource Attacks
-
08.1- File and Resource Attacks – Part 1
15:00 -
08.2- File and Resource Attacks – Part 2 (Vulnerable Apache IV Lab)
27:00 -
08.3- File and Resource Attacks – Part 3 (Vulnerable Nginx II Lab)
10:00 -
08.4- File and Resource Attacks – Part 4 (Vulnerable Apache VI Lab)
07:00 -
08.5- File and Resource Attacks – Part 5 (WordPress wpStoreCart Lab)
25:00 -
08.6- File and Resource Attacks – Part 6
35:00 -
08.7- File and Resource Attacks – Part 7 (Directory Traversal Lab)
09:00 -
08.8- File and Resource Attacks – Part 8 (CVE-2018-15140 Lab)
28:00 -
08.9- File and Resource Attacks – Part 9
26:00 -
08.10- File and Resource Attacks – Part 10 (Local File Inclusion Lab)
10:00 -
08.11- File and Resource Attacks – Part 11 (WordPress IMDb Widget Lab)
26:00 -
08.12- File and Resource Attacks – Part 12
11:00 -
08.13- File and Resource Attacks – Part 13 (Remote File Inclusion I Lab)
16:00
مكتمل – Section 9- Web Services
-
09.1- Web Services – Part 1
36:00 -
09.2- Web Services – Part 2
19:00 -
09.3- Web Services – Part 3
23:00 -
09.4- Web Services – Part 4 (Web Services Lab)
01:00:00
مكتمل – Section 10- CMS Pentesting
-
10.1- CMS Pentesting – Part 1
43:00 -
10.2- CMS Pentesting – Part 2
16:00 -
10.3- CMS Pentesting – Part 3 (WordPress AdRotate Lab)
13:00 -
10.4- CMS Pentesting – Part 4 (CVE-2017-5487 Lab)
11:00 -
10.5- CMS Pentesting – Part 5 (CVE-2018-8719 Lab)
10:00 -
10.6- CMS Pentesting – Part 6 (CVE-2015-6522 Lab)
10:00 -
10.7- CMS Pentesting – Part 7 (WordPress Plugin Lab)
15:00 -
10.8- CMS Pentesting – Part 8 (CVE-2020-9371 Lab)
06:00 -
10.9- CMS Pentesting – Part 9 (WordPress Black-Box Pentest Lab)
35:00
مكتمل – Section 11- Encoding & Filtering
-
11.1- Encoding and Filtering – Part 1
42:00 -
11.2- Encoding and Filtering – Part 2
37:00 -
11.3- Encoding and Filtering – Part 3
16:00 -
11.4- Encoding and Filtering – Part 4 (Mutillidae 2 Lab)
31:00 -
11.5- Encoding and Filtering – Part 5 (Damn Vulnerable Web Application Lab)
15:00 -
11.6- Encoding and Filtering – Part 6 (Chamilo LMS Lab)
06:00 -
11.7- Encoding and Filtering – Part 7
17:00 -
11.8- Encoding and Filtering – Part 8 (Squid Browser Based Restriction Lab)
08:00
احصل على شهادة اتمام الدورة بعد الإنتهاء
أضف هذه الشهادة إلى سيرتك الذاتية لإثبات مهاراتك وزيادة فرصك في الحصول علي وظيفة.

تقييمات ومراجعات الطلاب
4.9
الإجمالي 32 تقييمات
5
التقييمات: 29
4
التقييمات: 3
3
التقييمات: 0
2
التقييمات: 0
1
التقييمات: 0
دورة جيدة جدا لكن في بعض الدروس ناقصة تحديدا بال SQL part :)
الدورة جمممممميلة جدا ،، كالعاده أبدع المهندس الاسطوري أحمد سلطان
الحمدلله حبيت الدورة والكورس كامل وطريقة الشرح وكل شي ..
10/10
الحمدلله حبيت الدورة والكورس كامل وطريقة الشرح وكل شي ..
10/10
نعم جدا
بارك الله فيك استاذ احمد ونفع الله بك
بداية ممتازة لو عاوز تفم الويب صح
فوق الممتاز و شكرا علي الشرح المفصل
ممتاز
VERY GOOD
انصح فيها بشدة لبناء اساس قوي في اختبار ثغرات الويب