A Heaven for Hackers - Breaking Web Security Virtual Appliance
Offered By: NahamSec via YouTube
Course Description
Overview
Explore a comprehensive conference talk from NahamCon2020 that delves into breaking web security through a virtual appliance. Learn about hacking methodologies, case studies, and practical techniques for enumerating services and defining attack vectors. Discover how to target admin UIs, understand proxy services, and exploit vulnerabilities like CVE-2017-3163. Gain insights into leaking active session IDs and creating exploitation chains. Perfect for cybersecurity enthusiasts and ethical hackers looking to enhance their web security testing skills.
Syllabus
Intro
Case Study
Methodology
Free Trial
Access to the Terminal
3 - Breaking Hardenings
Product Features
Enumerate Services
Define Attack Vectors
Targeting Admin UI
7- Find a Vulnerability
7.1 - Understanding Proxy
7.1 Reversing Proxy Service
7.1 - Reversing Proxy Service
7.1 - Accessing to the SOLR Admin
CVE-2017-3163 - Arbitrary file read via path traversal attack in ReplicationHandler
Leaking Active Session ID
Exploitation Chain
Taught by
NahamSec
Related Courses
Ethical HackingIndian Institute of Technology, Kharagpur via Swayam Investigación en Informática Forense y Ciberderecho
University of Extremadura via Miríadax MSc Cyber Security
Coventry University via FutureLearn Network Security - Introduction to Network Security
New York University (NYU) via edX Network Security - Advanced Topics
New York University (NYU) via edX