Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
Learn the essentials of bug bounty hunting and web security
1 students

Learn the essentials of bug bounty hunting and web security

Learn to identify bugs and vulnerabilities like a pro | OWASP Top 13 and beyond | No prior knowledge needed.
Created byIMAD MOUFAKIR
Last updated 10/2024
Arabic

What you'll learn

  • HTML Injection : في صفحات الويب "HTML" ستتعلم كيفية حقن أكواد
  • SSRF (Server-Side Request Forgery) : ستتعلم كيفية استغلال طلبات الخادم الجانبية
  • SQL Injection : ستتعلم كيفية استغلال ثغرات قواعد البيانات
  • Cross-Site Scripting (XSS) : ستتعلم كيفية حقن أكواد "جافا سكريبت" في صفحات الويب
  • Insecure Direct Object References (IDOR) : ستتعلم كيفية الوصول إلى بيانات غير مصرح بها
  • Clickjacking : ستتعلم كيفية خداع المستخدمين للنقر على روابط غير مرئية
  • Burp Suite : لاختبار الأمان "Burp Suite" ستتعلم كيفية استخدام أدوات
  • URL Redirection : ستتعلم كيفية إعادة توجيه الروابط إلى مواقع غير آمنة
  • Brute Forcing : ستتعلم كيفية تخمين كلمات المرور
  • Sub Domain Information Disclosure : ستتعلم كيفية اكتشاف معلومات النطاقات الفرعية
  • Bugs : في هذه الفقرة، سنستعرض ترتيب المخاطر في عملية اكتشاف الثغرات
  • DDOS (Denial of Service) : ستتعلم كيفية تنفيذ هجمات حجب الخدمة الموزعة
  • Session Expiration : ستتعلم كيفية استغلال الجلسات

Course content

13 sections39 lectures3h 4m total length
  • HTML Injection شرح9:30

    هذا سيكون اول دروسنا لهذه الدورة | This will be our first lesson of this course

Requirements

  • No Operating System specific
  • Internet connection
  • No prior experience in bug hunting, hacking, or programming is needed
  • Computer with 8 Go RAM recommended
  • A level of skill is not recommended.

Description


Welcome to Our Bug Bounty Course!


Dear learners,


I am thrilled to welcome you to this exciting journey where you will uncover the secrets of bug hunting. Whether you are a beginner or have some knowledge in cybersecurity, this course is designed to guide you step by step towards mastering bug bounty techniques.


Why is this course for you?


• No prior experience required: You don’t need any knowledge in programming, hacking, or bug hunting to start. We begin with the basics and gradually move towards advanced skills.

• Practical learning: Through hands-on exercises and real-world scenarios, you will learn to identify and exploit vulnerabilities ethically.

• Personalized support: You will receive personalized support throughout your journey, with Q&A sessions and feedback on your progress.

What you will learn:

• The fundamentals of cybersecurity and bug bounty

• The tools and techniques used by professional bug hunters

• How to analyze and report vulnerabilities effectively

• Best practices for succeeding in the bug bounty field

Specific Courses:

• HTML Injection: You will learn to identify and exploit vulnerabilities where malicious HTML code can be injected into a web page, enabling attacks like cookie theft or page modification.

• SQL Injection: We will explore how attackers can inject malicious SQL commands into database queries, allowing unauthorized access to sensitive data.

• Server-Side Request Forgery (SSRF): You will understand how attackers can exploit SSRF vulnerabilities to send requests to internal or external servers, often bypassing firewalls and other security measures.

• Cross-Site Scripting (XSS): You will learn to detect and prevent XSS attacks, where malicious scripts are injected into web pages to steal information or manipulate content.

• Insecure Direct Object References (IDOR): We will explore how attackers can access objects or data they shouldn’t by manipulating direct references.

• Click Jacking: You will discover how attackers can trick users into clicking on hidden elements overlaid on web pages, leading them to perform unintended actions.

• Burp Suite: You will learn to use this essential tool for web application security testing, exploring its features to identify and exploit vulnerabilities.

• URL Redirection: We will see how unsecured redirects can be exploited to direct users to malicious sites.

• Brute Forcing: You will learn the techniques used to guess passwords or encryption keys through successive attempts.

• DDoS Attack: We will explore how distributed denial-of-service attacks can overwhelm a website or online service, making it inaccessible.

• Session Expiration: You will understand the importance of session management and how attackers can exploit unsecured sessions.

• Subdomain Enumeration: You will learn to discover and analyze subdomains of a website, often a crucial step in vulnerability reconnaissance.



If you ever have any questions or encounter any problems, feel free to text me directly. I’m here to help you succeed!

I am excited to see your progress and help you become experts in bug bounty. Together, we will contribute to making the web safer.


Welcome aboard and happy bug hunting



Who this course is for:

  • Any audience even if you don't have good computer skills