
Explore how database threats and breaches emerge from stolen credentials, phishing, sql injection, and insider risks, and learn practical mitigations to protect valuable data.
Understand database inference attacks that misuse data aggregation and data association, and learn how least privilege and auditing guard against misconfigurations, SQL injection, and insider threats.
Audit policies monitor database activity for unauthorized deletions and privilege abuse, while encryption and tokenization minimize data exposure.
Explore defense in depth for database security, including encryption techniques such as homomorphic encryption, data redaction, and key management, plus centralized audit, baselining, and separation of duties.
Demonstrates a simple first order sequel injection by registering a user and bypassing login with an or 1=1 condition in the Bahjat store application.
Demonstrates using the Zed attack proxy to route browser traffic through zap, capture communications, identify SQL injection vulnerabilities, and prepare data for Sequel map testing.
Discover how Shodan catalogs internet of things devices and databases, and learn to search for default credentials within an authorized, ethical pen-testing framework using Tor for anonymity.
Build a secure MySQL lab on Linux by installing MySQL, running mysql_secure_installation, and configuring root access; then use command line and MySQL Workbench to populate a sample movies database.
Examine MySQL security architecture, user privileges, and common exploits; learn enumeration, vulnerability research, and attacker techniques like injection, backdoors, and privilege escalation to compromise databases.
Learn to lockdown MySQL databases through patching, OS-level controls, least privilege, secure configuration, logging, and defense in depth, including non-root operation, remote SSL, and restricted user privileges.
Learn to minimize the attack surface by hardening operating systems, databases, and apps through baselines, baseline checks, and ongoing audits to identify changes and mitigate vulnerabilities.
secure big data ecosystems by enforcing authentication, access controls, encryption in transit and at rest, and comprehensive auditing across Hadoop, NoSQL, and SQL workloads.
Cyberhacker Series: Hacking Databases
This course is for beginners and IT pros looking to get certified and land an entry level Cyber Security position paying upwards of six figures! Each chapter closes with exercises putting your new learned skills into practical use immediately. You will start by understand network anonymity by using tools such as Tor, Tortilla and Proxy Chains.
What are the pre-requisites for this course?
What will you be able to do after taking this course?