К содержимому
learnspaceYOUR NEXT CHAPTER
ПРОСТРАНСТВО ОБУЧЕНИЯ
ГлавнаяКаталог курсовМоё обучениеCoursera

Знания без границ

Учитесь у лучших университетов и компаний мира.

Открыть Coursera
Интеграция
Пространство университета
Моё пространствоСтраница курса
↵
ЯЛичный кабинетСтудент
© 2026 LearnSpaceКаждый день — возможность узнать больше.Помощь
OWASP Web Application Security · LearnSpace
Назад в каталог
courseraПрограммирование

OWASP Web Application Security

Курс от Edureka
Начальный≈ 7.5 чАнглийский
О курсеНавыкиПрограммаПреподаватели

О курсе

This course introduces the world of web application security using the OWASP framework, helping you understand how applications are attacked and how to defend them using secure coding and security best practices. You’ll begin by exploring how modern web applications are structured and how attackers identify and exploit vulnerabilities. The course familiarizes you with the OWASP Top 10 risk categories, common attack patterns, and real-world security challenges. From there, you’ll move into the practical side of security analysis, examining vulnerabilities such as SQL injection, cross-site scripting (XSS), authentication flaws, and misconfigurations. You’ll learn how these vulnerabilities arise and how they impact application behavior, data security, and user trust. You will also gain hands-on exposure to dynamic security testing using OWASP ZAP, enabling you to analyze running applications, intercept traffic, and identify vulnerabilities through automated and real-time testing. The course then shifts to mitigation and defense. You’ll learn how to apply secure coding practices, implement proper input validation and output handling, and strengthen authentication, session management, and configuration security to reduce risk. By the end of this course, you will be able to: • Explain the fundamentals of web application security and the OWASP risk model. • Analyze common vulnerabilities such as injection attacks, XSS, and authentication flaws. • Identify how attackers exploit application weaknesses and assess their impact. • Perform dynamic vulnerability analysis using OWASP ZAP. • Apply secure coding techniques to prevent common web vulnerabilities. • Implement configuration hardening and defensive security practices. • Evaluate application risks and recommend structured mitigation strategies. Designed for aspiring application security professionals, developers, cybersecurity learners, and IT practitioners, this course provides a practical foundation for understanding and securing modern web applications. To be successful in this course, learners should have a basic understanding of web technologies and programming concepts. Start your journey into application security and learn how to identify, analyze, test, and defend against real-world web threats.

Навыки, которые вы освоите

Open Web Application Security Project (OWASP)Application SecuritySecure CodingAuthenticationsSecurity TestingSecurity AwarenessRisk MitigationRisk AnalysisCyber Security AssessmentVulnerability ManagementSecurity ManagementLinux CommandsSoftware DevelopmentVulnerability ScanningCyber Security StrategySecurity EngineeringWeb ApplicationsCyber AttacksComputer SecurityLinux

Программа курса

3 модулей · 58 учебных материалов

01OWASP Risk Model and Core Web Vulnerabilities29 материалов

Interpreting OWASP and Web Application Security

Specialization IntroductionВидеоCourse IntroductionВидеоCourse OverviewЧтениеUnderstanding OWASP and the Top 10 Risk CategoriesВидео

Учитесь у экспертов

Edureka

Преподаватель курса

OWASP Web Application Security
В каталоге вашей программы

Инвестируйте в себя

Новые знания — в удобное для вас время.

Начать на Coursera

Обучение откроется на Coursera
в новой вкладке

Обучение на Coursera

≈ 7.5 ч

3 модулей

Язык: Английский

Часть программы вашего университета
Applying OWASP Risk Thinking to Real Attack ScenariosВидео
Web Application Architecture and Security FundamentalsВидео
Foundations of OWASP Risk Thinking in Web SecurityЧтение
Demonstration: Analyzing OWASP Risks Through a Controlled Login SimulationВидео
Demonstration: Inspecting Web Application Architecture and Security ControlsВидео
How Web Applications are Targeted by Attackers?Чтение
Test Your Knowledge: Interpreting OWASP and Web Application SecurityЗадание

Examining Injection Vulnerabilities in Web Applications

Exploring Injection Vulnerabilities Across Web ApplicationsВидеоAnalyzing SQL Injection and Malicious Query ExecutionВидеоExamining Advanced SQL Injection Techniques and VariantsВидеоSecurity Risks of Insecure Defaults and Poor Configuration ManagementЧтениеDemonstration: Simulating SQL Injection Exploitation in a Vulnerable ApplicationВидеоDemonstration: Mitigating Injection Vulnerabilities Using Secure Coding ControlsВидеоPractical Impact of Injection Attacks in Real-World ApplicationsЧтениеTest Your Knowledge: Examining Injection Vulnerabilities in Web ApplicationsЗадание

Securing Authentication and Session Management

Examining Broken Authentication and Identity FailuresВидеоAnalyzing Session Hijacking and Session Fixation AttacksВидеоIdentity as a Primary Attack Surface in Web ApplicationsЧтениеDemonstration: Simulating Session Hijacking in a Controlled EnvironmentВидеоDemonstration: Implementing Secure Authentication and Session Protection ControlsВидеоUnderstanding the Security Risks of Serialization and Object ProcessingЧтениеTest Your Knowledge: Securing Authentication and Session ManagementЗадание

Module Wrap-Up and Assessment

Module Summary: OWASP Risk Model and Core Web VulnerabilitiesЧтениеReflecting on OWASP Risk Modeling and Core Web VulnerabilitiesDIALOGUEKnowledge Check: OWASP Risk Model and Core Web VulnerabilitiesЗадание
02Client-Side and Configuration-Based Vulnerabilities24 материалов

XML and Configuration-Based Vulnerabilities

Understanding XML External Entities (XXE) and Attack MechanicsВидеоXXE Attack Variants, Detection and PreventionВидеоIdentifying Security Misconfigurations and Hardening TargetsВидеоWhy Misconfigurations are a Major Attack Vector?ЧтениеDemonstration: Exploiting XXE in a Vulnerable XML ParserВидеоDemonstration: Hardening XML Processing and Identifying Security MisconfigurationsВидеоStructured Data Processing and Hidden Risks in XML HandlingЧтениеTest Your Knowledge: XML and Configuration-Based VulnerabilitiesЗадание

Client-Side Injection and Deserialization Risks

Exploring Cross-Site Scripting (XSS) AttacksВидеоAnalyzing XSS Attack Variants and Mitigation StrategiesВидеоExamining Insecure Deserialization VulnerabilitiesВидеоThe Impact of Cross-Site Scripting (XSS)ЧтениеDemonstration: Performing XSS Exploitation in a Web ApplicationВидеоDemonstration: Exploiting and Securing Insecure Deserialization FlowsВидео

Dynamic Security Testing Using OWASP ZAP

Introducing OWASP ZAP and Its Role in Web Application SecurityВидеоAdvanced Proxy-Based Testing and OWASP ZAP ArchitectureЧтениеDemonstration: Installing and Navigating the OWASP ZAP InterfaceВидеоDemonstration: Performing Automated Vulnerability Scanning Using OWASP ZAPВидеоTest Your Knowledge: Dynamic Security Testing Using OWASP ZAPЗадание

Module Wrap-Up and Assessment

Module Summary: Client-Side and Configuration-Based VulnerabilitiesЧтениеReflecting on Client-Side and Configuration-Based Security RisksDIALOGUEKnowledge Check: Client-Side and Configuration-Based VulnerabilitiesЗадание
03Course Wrap-Up and Assessments5 материалов

Course Wrap-Up and Assessment

Practice Project: Web Application Vulnerability Analysis and MitigationЧтениеInterview: Web Application Security and OWASP Risk AssessmentDIALOGUEEnd Course Knowledge Check: OWASP and Web Application SecurityЗаданиеWeb Application Vulnerability Assessment and OWASP-Based Remediation StrategyЗаданиеCourse SummaryВидео
Techniques for Optimizing AI Pipelines for Performance and AccuracyЧтение
Test Your Knowledge: Client-Side Injection and Deserialization RisksЗадание