К содержимому
learnspaceYOUR NEXT CHAPTER
ПРОСТРАНСТВО ОБУЧЕНИЯ
ГлавнаяКаталог курсовМоё обучениеCoursera

Знания без границ

Учитесь у лучших университетов и компаний мира.

Открыть Coursera
Интеграция
Пространство университета
Моё пространствоСтраница курса
↵
ЯЛичный кабинетСтудент
© 2026 LearnSpaceКаждый день — возможность узнать больше.Помощь
Complete Ethical Hacking & Bug Bounty Training · LearnSpace
Назад в каталог
courseraПрограммирование

Complete Ethical Hacking & Bug Bounty Training

Курс от Packt
Средний≈ 17.2 чАнглийский
О курсеНавыкиПрограммаПреподаватели

О курсе

This course features Coursera Coach! A smarter way to learn with interactive, real-time conversations that help you test your knowledge, challenge assumptions, and deepen your understanding as you progress through the course. Embark on a journey to master ethical hacking and bug bounty practices, gaining hands-on experience in securing web applications and understanding real-world vulnerabilities. You’ll learn to identify, exploit, and mitigate critical security risks while building practical penetration testing skills. The course starts with foundational concepts, including OWASP Top 10 vulnerabilities, web security principles, and essential tools like Burp Suite. You will explore detailed lab exercises covering authentication bypass, rate-limit attacks, Cross-Site Scripting (XSS), CSRF, CORS, and more, ensuring a deep understanding of exploitation techniques and mitigation strategies. Advanced sections guide you through bug bounty platforms, responsible disclosure practices, and real-world CVE exploitations, including remote code execution and sensitive file manipulation. Interactive labs provide live demonstrations, letting you apply concepts immediately and learn from step-by-step walkthroughs. This course is designed for aspiring ethical hackers, penetration testers, cybersecurity enthusiasts, and IT professionals with a basic understanding of web technologies. No prior advanced security experience is required, making it suitable for beginners to intermediate learners looking to specialize in ethical hacking. By the end of the course, you will be able to identify critical web vulnerabilities, exploit them ethically, use professional tools for penetration testing, and confidently participate in bug bounty programs with actionable reporting skills.

Навыки, которые вы освоите

Exploitation techniquesVulnerability AssessmentsHardeningPenetration TestingSecurity TestingSecurity ControlsWeb ApplicationsOpen Web Application Security Project (OWASP)AuthenticationsEthical Standards And ConductTest ToolsMitigationRisk MitigationVulnerability ManagementBrute-force attacksUser Accounts

Программа курса

12 модулей · 141 учебных материалов

01Course Introduction3 материалов

Course Introduction

Course IntroductionВидеоFull Course ResourceЧтениеDisclaimerВидео
02OWASP Top 1012 материалов

OWASP Top 10

Учитесь у экспертов

Packt - Course Instructors

Преподаватель курса

Complete Ethical Hacking & Bug Bounty Training
В каталоге вашей программы

Инвестируйте в себя

Новые знания — в удобное для вас время.

Начать на Coursera

Обучение откроется на Coursera
в новой вкладке

Обучение на Coursera

≈ 17.2 ч

12 модулей

Язык: Английский

Часть программы вашего университета
What is OWASP and InjectionВидео
What is Broken AuthenticationВидео
What is Sensitive Data ExposureВидео
What is XML External EntitiesВидео
What is Broken Access ControlВидео
What is Security MisconfigurationВидео
What is Cross Site Scripting (XSS)Видео
What is Insecure DeserializationВидео
What is Using Components with Known VulnerabilitiesВидео
What is Insufficient Logging and MonitoringВидео
Introduction to OWASP Top 10 (2013 vs 2017) and Key VulnerabilitiesDIALOGUE
OWASP Top 10 - AssessmentЗадание
03Burp Suite and Lab Setup3 материалов

Burp Suite and Lab Setup

Burp Suite Proxy Lab SetupВидеоSetting Up Burp Suite as a Proxy ToolDIALOGUEBurp Suite and Lab Setup - AssessmentЗадание
04Authentication Bypass16 материалов

Authentication Bypass

Authentication Bypass Exploitation Live - 1ВидеоAuthentication Bypass Exploitation Live – 2ВидеоAuthentication Bypass Exploitation Live - 3ВидеоAuthentication Bypass Exploitation Live - 4ВидеоAuthentication Bypass Exploitation Live - 5ВидеоAuthentication Bypass CaptchaВидеоAuthentication Bypass to Account Takeover Live - 1ВидеоAuthentication Bypass to Account Takeover Live - 2ВидеоAuthentication Bypass due to OTP Exposure Live - 1ВидеоAuthentication Bypass due to OTP Exposure Live - 2ВидеоAuthentication Bypass 2FA Bypass LiveВидеоAuthentication Bypass - Email Takeover LiveВидеоAuthentication Bypass MitigationsВидеоAuthentication Bypass Interview Questions and AnswersВидеоUnderstanding Authentication Bypass VulnerabilitiesDIALOGUEAuthentication Bypass - AssessmentЗадание
05No Rate-Limit Attacks19 материалов

No Rate-Limit Attacks

No Rate-Limit leads to Account Takeover Live Type-1ВидеоNO RL Alternative Tools IntroductionВидеоNo Rate-Limit leads to Account Takeover Live Type-2ВидеоNo Rate-Limit leads to Account Takeover Live Type-3ВидеоNo Rate-Limit leads to Account Takeover Live Type-4ВидеоNo Rate-Limit leads to Account Takeover Live Type-5ВидеоNo Rate-Limit to Account Takeover Live – Type 6ВидеоNo Rate-Limit to Account Takeover Live – Type 7ВидеоNo Rate-Limit Instagram Report BreakdownВидеоNo Rate-Limit Instagram Report Breakdown 2ВидеоNo Rate Limit Bypass Report BreakdownВидеоNo Rate Limit Bypass Report Breakdown 2ВидеоNo Rate-Limit to Tool Fake IP PracticalВидеоNo Rate-Limit test on CloudFareВидеоNo Rate-Limit MitigationsВидеоNo Rate-Limit All Hackerone Reports BreakdownВидеоBurp Alternative: OWASP ZAP Proxy for No RLВидеоUnderstanding and Exploiting No Rate Limit VulnerabilitiesDIALOGUENo Rate-Limit Attacks - AssessmentЗадание
06Cross Site Scripting (XSS)39 материалов

Cross Site Scripting (XSS)

How XSS WorksВидеоReflected XSS on Live 1ВидеоReflected XSS on Live 2ВидеоReflected XSS on Live Manual BalancingВидеоReflected XSS on Live 3 BalancedВидеоXSS on Limited Inputs Live 1ВидеоXSS on Limited Inputs Live 2ВидеоXSS in Request Headers - LiveВидеоReflected XSS Useragent and CachingВидеоReflected XSS Email Validator LiveВидеоReflected XSS Protection Bypass Live 1 - Base64ВидеоReflected XSS Protection Bypass Live - 2ВидеоXSS using SpiderВидеоXSS Bypass Right Click DisabledВидеоBlind XSS ExploitationВидеоStored XSS Exploitation LiveВидеоDOM XSS NameВидеоDOM XSS RedirectВидеоDOM XSS IndexВидеоDOM XSS Automated ScannerВидеоXSS on Live by Adding ParametersВидеоXSS Mouse on LabВидеоXSS Mouse LiveВидеоXSS Mouse Events All TypesВидеоXSS Polyglots LiveВидеоXSS Polyglots BreakdownВидеоXSS Exploitation - URL RedirectionВидеоXSS Exploitation - PhishingВидеоXSS Exploitation Cookie Stealer LabВидеоXSS Exploitation Cookie Stealer LiveВидеоXSS Exploitation File Upload Type - 2ВидеоXSS Exploitation File Upload Type - 3ВидеоXSS Exploitation File Upload Type - 1ВидеоXSS MitigationsВидеоXSS Bonus TIPS and TRICKSВидеоXSS Hackerone ALL Reports BreakdownВидеоXSS Interview Questions and AnswersВидеоMastering Cross-Site Scripting (XSS) Attacks and DefensesDIALOGUECross Site Scripting (XSS) - AssessmentЗадание
07Cross Site Request Forgery (CSRF)19 материалов

Cross Site Request Forgery (CSRF)

How CSRF WorksВидеоCSRF Alternative Tools IntroductionВидеоCSRF on LABВидеоCSRF on LAB - 2ВидеоCSRF on Live - 1ВидеоCSRF on Live - 2ВидеоCSRF Password Change LabВидеоCSRF Funds Transfer LabВидеоCSRF Request Methods Trick - LabВидеоCSRF to Account Takeover Live - 1ВидеоCSRF to Account Takeover Live - 2ВидеоChaining CSRF with XSSВидеоCSRF MitigationsВидеоCSRF BONUS Tips and TricksВидеоCSRF ALL Hackerone Reports BreakdownВидеоCSRF Interview Questions and AnswersВидеоAlternative to Burpsuite for CSRF: CSRF PoC GeneratorВидеоUnderstanding and Testing for CSRF VulnerabilitiesDIALOGUECross Site Request Forgery (CSRF) - AssessmentЗадание
08Cross Origin Resource Sharing (CORS)12 материалов

Cross Origin Resource Sharing (CORS)

How CORS WorksВидеоCORS 3 Test Cases FundamentalsВидеоCORS Exploitation Live – 1 Exfiltration of Account DetailsВидеоCORS Exploitation Live – 2 Exfiltration of Account DetailsВидеоCORS Live Exploitation - 3ВидеоCORS Exploitation Facebook LiveВидеоCORS Live Prefix MatchВидеоCORS Live Suffix MatchВидеоCORS MitigationsВидеоCORS Breakdown of ALL Hackerone ReportsВидеоDiagnosing and Exploiting CORS VulnerabilitiesDIALOGUECross Origin Resource Sharing (CORS) - AssessmentЗадание
09How to Start with Bug Bounty Platforms and Reporting7 материалов

How to Start with Bug Bounty Platforms and Reporting

BugCrowd ROADMAPВидеоHackerOne ROADMAPВидеоOpen Bug Bounty ROADMAPВидеоNCIIPC Govt of India ROADMAPВидеоRVDP All Websites ROADMAPВидеоGetting Started with Bug Bounty PlatformsDIALOGUEHow to Start with Bug Bounty Platforms and Reporting - AssessmentЗадание
10Exploitation of CVE 2020-5902 Remote Code Execution5 материалов

Exploitation of CVE 2020-5902 Remote Code Execution

ExploitationВидеоAssets & ResourcesВидеоFinal WordsВидеоExploiting and Detecting CVE-2020-5902 (BIG-IP TMUI RCE)DIALOGUEExploitation of CVE 2020-5902 Remote Code Execution - AssessmentЗадание
11Exploitation of CVE 2020-3452 File Read3 материалов

Exploitation of CVE 2020-3452 File Read

Exploitation of CVE 2020-3452 File ReadВидеоAnalyzing and Exploiting the Cisco ASA CVE-2023-452 Arbitrary File ReadDIALOGUEExploitation of CVE 2020-3452 File Read - AssessmentЗадание
12Exploitation of CVE 2020-3187 File Delete3 материалов

Exploitation of CVE 2020-3187 File Delete

Exploitation of CVE 2020-3187 File DeleteВидеоFull Course Practice AssessmentЗаданиеFull Course AssessmentЗадание