Udemy
    •  
    •  
    •  
    •  
    •  
    •  
    •  
    •  
Turn what you know into an opportunity and reach millions around the world.
Learn More
Your cart is empty.
Keep shopping
Hands-on:Website Hacking/Penetration testing & Bug Bounty™
Rating: 4.9 out of 5(7 ratings)
13 students
Created byCiech Defence
Last updated 10/2020
English

What you'll learn

  • What is Website?
  • How To Hack Website?
  • Setting up Hacking and Penetration testing Environment
  • What is DVWA?
  • Virtual Box and its use
  • Kali Linux 2020
  • Kali linux Uses
  • Kali linux Commands
  • Web Application Technologies
  • Basics of Networking
  • Burp Suit
  • Penetration Testing
  • Mordern way of Performing Brute-Forcing
  • Command Execution Attack
  • SQL Injection Attack
  • Cross-site scripting
  • FIle Upload Vulnerability
  • IDOR Attacks
  • Local FIle Injection
  • Website Information Gathering

Course content

10 sections62 lectures3h 23m total length
  • Multi OS Handler: Virtual Box1:58

    Download and install VirtualBox from the official site to use as a hypervisor, creating a Windows host with guest operating systems for safe, hands-on testing.

  • Kali Linux: Hacking Operating System2:30

    Download Kali Linux, a penetration testing and security auditing distribution, and learn to install its 64-bit image in VirtualBox for hands-on hacking.

  • Getting ready with Kali Linux3:31

    install kali linux in virtualbox by creating a new virtual machine, selecting linux 64-bit, allocating about 20 gb disk space, creating a dynamic hard drive, and booting the installer.

  • sd4:03

Requirements

  • Minimum 4 GB of RAM or higher (8 GB recommended)
  • Strong desire to understand Hacking tools and techniques

Description

Website Hacking/Penetration Testing For Beginners:Bug Bounty

Welcome to this Brand New Website Hacking/Penetration Testing For Beginners:Bug Bounty course which is loaded with real world learning.

Who this course is for:

  • interested in learning web application hacking/penetration testing.

  • Interested in be a bug bounty hunter.

  • Interested web hacking.

  • Interested in learning how to secure websites & web applications from hacker.

Before we begin

  • the practical use of the training you are going to see has been proven by vast group of people  beginners and computer geeks as well.

  • People who make their first steps in computer / network security and professionals: network administrators, programmers, black- and white hat hackers. Please, read carefully what we'd like to share with you.

WHAT YOU WILL LEARN in this Ethical Hacking Training:

  • Module 01. Introduction and environment configuration  you will learn how to configure and prepare your system for the further training.

  • Module 02. Learning the Basics of Kali Linux so that we can familiarize with Kali Linux

  • Module 03.Than its time to see what are the different technologies we use in website to make it working.

  • Module 04.Networking basics so that we can be more comfortable with this course.

  • Module 05.Information gathering this is one on the main set to take on so that we will cover this particular step in very detail.

  • Module 06.Brute-force and dictionary attacks - you will get to know how an attacker could perform a brute-force or a dictionary attack on your website or web application containing a password protected data.

  • Module 07. Cross Site Scripting attack - you will see for yourself why XSS is considered the most popular hackers' target. By the end on this lesson you will intercept a user session.

  • Module 08. File Upload Vulnerability

  • Module 09.SQL injection - one of the TOP3 techniques used by attackers nowadays. Step by step practical demonstration. You can hack the training website yourself.

  • Module 10.Local FIle Inclusion .



    Notes:


    This course is created for educational purposes only and all the attacks are launched in my own lab or against systems that I have permission to test.

    Topics covered:-

    • File upload - This vulnerability allow attackers to upload  files on the target web server, exploiting these vulnerabilities will allow you full control over the target website.

    • Code Execution - This vulnerability allow users to execute system code on the target web server, this can be used to execute malicious code and get a reverse shell access which gives the attacker full control over the target web server.

    • Local File Inclusion - This vulnerability can be used to read any file on the target server, so it can be exploited to read sensitive files, we will not stop at that though, you will learn two methods to exploit this vulnerability to get a reverse shell connection which gives you full control over the target web server.

    • Remote File Inclusion - This vulnerability can be used to load remote files, exploiting this vulnerability properly gives you full control over the target web server.

    • SQL Injection - This is one of the most dangerous vulnerabilities, it is everywhere and can be exploited to do all of the things the above vulnerabilities allow us to do and more, so it allows you to login as admin without knowing the password, access the database and get all data stored there such as usernames, passwords, credit cards ....etc, read/write files and even get a reverse shell access which gives you full control over the target server!

    • Cross Site Scripting (XSS) - This vulnerability can be used to inject javascript code in vulnerable pages, we won't stop at that, you will learn how to steal credentials from users and even gain full access to their computer.

    • Brute Force - In this section you will learn what are these attacks, the difference between them and how to launch them, in successful cases you will be able to guess the password for a target user.

Who this course is for:

  • Ethical hacker curious about Website Hacking
  • Cyber security student
  • Ethical hacker
  • bug bounty hunter
  • Python developers
  • python hacking
  • network security
  • wifi hacker
  • website hacking
  • Information security interested students
  • Bug Bounty hunting