Next Gen Web Pen Testing - Handling Modern Applications in a Penetration Test
Offered By: YouTube
Course Description
Overview
Explore advanced web penetration testing techniques for modern applications in this 52-minute conference talk from Derbycon 2016. Dive into crucial topics such as WebSocket security, Origin Policy, Course Policy, and Global Policy considerations. Learn how to effectively test RESTful APIs and utilize Advanced REST Client tools. Discover key elements to look for during penetration testing and understand the importance of Content Security Policy. Gain insights into Samurai WTF, Samurai VM, and MOBA Sec tools for enhancing your web security testing capabilities.
Syllabus
Intro
Welcome
Kevin Johnson
WebSocket
Chorus
Origin Policy
Course Policy
Global Policy
Considerations
RESTful API
Advanced REST Client
What should we look for
Content Security Policy
Samurai WTF
Samurai VM
MOBA Sec
Related Courses
Configuring Security Headers in ASP.NET and ASP.NET Core ApplicationsPluralsight Modern Browser Security Reports
Pluralsight PHP Web Application Security
Pluralsight Magento 2 Quick Tips
YouTube OWASP Top 10: #7 XSS and #8 Insecure Deserialization
LinkedIn Learning