OWASP Top 10 Web Application Security Risks for ASP.NET
Offered By: Pluralsight
Course Description
Overview
Learn about the OWASP Top 10 Web Application Security Risks and learn how to layer security in ASP.NET.
Web applications today are being hacked with alarming regularity by hacktivists, online criminals and nation states. Very frequently, it is the same prevalent security risks being exploited which is why the Open Web Application Security Project (OWASP) developed their list of Top 10 Most Critical Web Application Security Risks to help developers build more secure software. This course helps developers apply the Top 10 in ASP.NET using both web forms and MVC by walking through an overview of the risk, demonstrating how it can be exploited in .NET and then delving into the various approaches available to mitigate it by applying security in depth.
Web applications today are being hacked with alarming regularity by hacktivists, online criminals and nation states. Very frequently, it is the same prevalent security risks being exploited which is why the Open Web Application Security Project (OWASP) developed their list of Top 10 Most Critical Web Application Security Risks to help developers build more secure software. This course helps developers apply the Top 10 in ASP.NET using both web forms and MVC by walking through an overview of the risk, demonstrating how it can be exploited in .NET and then delving into the various approaches available to mitigate it by applying security in depth.
Syllabus
- Introduction 17mins
- Injection 49mins
- Cross Site Scripting (XSS) 59mins
- Broken Authentication and Session Management 28mins
- Insecure Direct Object References 35mins
- Cross Site Request Forgery (CSRF) 38mins
- Security Misconfiguration 47mins
- Insecure Cryptographic Storage 65mins
- Failure to Restrict URL Access 42mins
- Insufficient Transport Layer Protection 72mins
- Unvalidated Redirects and Forwards 30mins
Taught by
Troy Hunt
Related Courses
Learning the OWASP Top 10LinkedIn Learning OWASP Top 10: #5 Broken Access Control and #6 Security Misconfiguration
LinkedIn Learning Advanced Cyber Security Training: OWASP Top 10 and Web Application Fundamentals
EC-Council via FutureLearn Pentesting with Daniel Slater (Ethical Hacking/Web Security)
Udemy OWASP Top 10: API Security Playbook
Pluralsight