К содержимому
learnspaceYOUR NEXT CHAPTER
ПРОСТРАНСТВО ОБУЧЕНИЯ
ГлавнаяКаталог курсовМоё обучениеCoursera

Знания без границ

Учитесь у лучших университетов и компаний мира.

Открыть Coursera
Интеграция
Пространство университета
Моё пространствоСтраница курса
↵
ЯЛичный кабинетСтудент
© 2026 LearnSpaceКаждый день — возможность узнать больше.Помощь
Hacking and Patching · LearnSpace
Назад в каталог
courseraПрограммирование

Hacking and Patching

Курс от University of Colorado System
Средний≈ 15.3 чАнглийский
О курсеНавыкиПрограммаПреподаватели

О курсе

In this MOOC, you will learn how to hack web apps with command injection vulnerabilities in a web site of your AWS Linux instance. You will learn how to search valuable information on a typical Linux systems with LAMP services, and deposit and hide Trojans for future exploitation. You will learn how to patch these web apps with input validation using regular expression. You will learn a security design pattern to avoid introducing injection vulnerabilities by input validation and replacing generic system calls with specific function calls. You will learn how to hack web apps with SQL injection vulnerabilities and retrieve user profile information and passwords. You will learn how to patch them with input validation and SQL parameter binding. You will learn the hacking methodology, Nessus tool for scanning vulnerabilities, Kali Linux for penetration testing, and Metasploit Framework for gaining access to vulnerable Windows Systems, deploying keylogger, and perform Remote VNC server injection. You will learn security in memory systems and virtual memory layout, and understand buffer overflow attacks and their defenses. You will learn how to clone a Kali instance with AWS P2 GPU support and perform hashcat password cracking using dictionary attacks and known pattern mask attacks.

Навыки, которые вы освоите

Secure CodingMetasploitExploit developmentSQLVulnerability ScanningExploitation techniquesApplication SecurityMemory ManagementPenetration TestingSoftware Design PatternsVulnerability AssessmentsCyber Security AssessmentOperating SystemsAmazon Elastic Compute CloudData ValidationBrute-force attacksSecurity TestingAmazon Web Services

Программа курса

4 модулей · 41 учебных материалов

01Injection Web App Attacks and Their Defenses10 материалов

Course Overview

Course OverviewВидеоGet help and meet other learners. Join your Community!Чтение

Command Injection

Command InjectionВидеоOWASP Command InjectionЧтение

Review Code to Detect Pattern to Defend Command Injection

Учитесь у экспертов

Edward Chow

Professor

Hacking and Patching
В каталоге вашей программы

Инвестируйте в себя

Новые знания — в удобное для вас время.

Начать на Coursera

Обучение откроется на Coursera
в новой вкладке

Обучение на Coursera

≈ 15.3 ч

4 модулей

Язык: Английский

Субтитры: Арабский, Французский, Бенгальский, Украинский, Китайский (Китай), Греческий, Итальянский, Бразильский португальский, Вьетнамский, Нидерландский, Корейский, Немецкий, Пушту, Урду, Русский, Тайский, Индонезийский, Шведский, Турецкий, Азербайджанский, Испанский, Дари, Хинди, Японский, Казахский, Венгерский, Польский

Часть программы вашего университета
Review Code to Detect Pattern to Defend Command InjectionВидео
Detecting Command InjectionЧтение

Apply Security Design Pattern to Defend Command Injection Attack

Apply Security Design Pattern to Defend Command Injection AttackВидеоGood Cybersecurity Design Patterns. What are out there?ОбсуждениеProject 3a Hacking Web Apps with Command Injections and Patching themВзаимная проверкаExam 3.1. Assessing Injection Web App Attacks and Their DefensesЗадание
02Hack SQL Databases and Patch Web Apps with SQL Injection Vulnerabilities13 материалов

SQL Injection Attacks

SQL Injection AttacksВидеоSQL InjectionЧтение

Patching Web App with SQL Injection Vulnerability

Patching Web App with SQL Injection VulnerabilityВидеоSQL Injection Prevention Cheat SheetЧтениеProject 3b. SQL Injection Attacks and DefensesВзаимная проверка

Hacking Methodology

Hacking MethodologyВидеоRed Teaming: The Art of Ethical HackingЧтение

Demystify New OS/PL Will not Have Injection Vulnerabilities

Demystify New OS/PL Will Not Have Injection VulnerabilitiesВидео

Escalate Privileges via Deploying Trojan

Escalate Privileges via Deploying TrojanВидеоUnderstanding Privilege EscalationЧтение

Escalate Privileges by Bringing in Sophisticated Trojan

Escalate Privileges by Bringing in Sophisticated TrojanВидеоNational Vulnerability Database EntryЧтениеExam 3.2. Assessing SQL Injection and Hacking MethodologyЗадание
03Memory Attacks and Defenses7 материалов

Security in Memory Systems and Virtual Memory Layout

Security in Memory Systems and Virtual Memory LayoutВидеоOWASP Memory LeaksЧтение

Variables Allocation in Virtual Memory Layout

Variables Allocation in Virtual Memory LayoutВидео

Buffer Overflow

Buffer OverflowВидеоOWASP Buffer Overflow AttacksЧтение

Buffer Overflow Defense

Buffer Overflow DefenseВидеоExam 3.3. Assessing Buffer Overflow Attacks and DefensesЗадание
04Penetration Testing11 материалов

Vulnerability Scanning with Nessus

Vulnerability Scanning with NessusВидеоNessus TrainingЧтение

Vulnerability and WannaCry Ransomware

Vulnerability and WannaCry RansomwareВидео

Penetration Testing with Kali Linux

Penetration Testing with Kali LinuxВидеоKali Linux & DocumentationЧтениеProject 3c. Cracking Linux password with hashcat using AWS ubuntu t2.micro instance.Взаимная проверка

Metasploit Framework

Metasploit FrameworkВидеоMetasploit ResourcesЧтение

Keylogging

KeyloggingВидео

Remote VNC Server Injection

Remote VNC Server InjectionВидеоExam 3.4. Assessing the Scanning and Penetration Testing SkillsЗадание