YoVDO

A Heaven for Hackers - Breaking Web Security Virtual Appliance

Offered By: NahamSec via YouTube

Tags

NahamCon Courses Ethical Hacking Courses Penetration Testing Courses Web Security Courses

Course Description

Overview

Explore a comprehensive conference talk from NahamCon2020 that delves into breaking web security through a virtual appliance. Learn about hacking methodologies, case studies, and practical techniques for enumerating services and defining attack vectors. Discover how to target admin UIs, understand proxy services, and exploit vulnerabilities like CVE-2017-3163. Gain insights into leaking active session IDs and creating exploitation chains. Perfect for cybersecurity enthusiasts and ethical hackers looking to enhance their web security testing skills.

Syllabus

Intro
Case Study
Methodology
Free Trial
Access to the Terminal
3 - Breaking Hardenings
Product Features
Enumerate Services
Define Attack Vectors
Targeting Admin UI
7- Find a Vulnerability
7.1 - Understanding Proxy
7.1 Reversing Proxy Service
7.1 - Reversing Proxy Service
7.1 - Accessing to the SOLR Admin
CVE-2017-3163 - Arbitrary file read via path traversal attack in ReplicationHandler
Leaking Active Session ID
Exploitation Chain


Taught by

NahamSec

Related Courses

Ethical Hacking
Indian Institute of Technology, Kharagpur via Swayam
Investigación en Informática Forense y Ciberderecho
University of Extremadura via Miríadax
MSc Cyber Security
Coventry University via FutureLearn
Network Security - Introduction to Network Security
New York University (NYU) via edX
Network Security - Advanced Topics
New York University (NYU) via edX