К содержимому
learnspaceYOUR NEXT CHAPTER
ПРОСТРАНСТВО ОБУЧЕНИЯ
ГлавнаяКаталог курсовМоё обучениеCoursera

Знания без границ

Учитесь у лучших университетов и компаний мира.

Открыть Coursera
Интеграция
Пространство университета
Моё пространствоСтраница курса
↵
ЯЛичный кабинетСтудент
© 2026 LearnSpaceКаждый день — возможность узнать больше.Помощь
Web Hacking Expert - Full-Stack Exploitation Mastery · LearnSpace
Назад в каталог
courseraПрограммирование

Web Hacking Expert - Full-Stack Exploitation Mastery

Курс от Packt
Средний≈ 7.9 чАнглийский
О курсеНавыкиПрограммаПреподаватели

О курсе

Updated in May 2025. This course now features Coursera Coach! A smarter way to learn with interactive, real-time conversations that help you test your knowledge, challenge assumptions, and deepen your understanding as you progress through the course. This course takes you through the complex world of full-stack web exploitation, focusing on real-world attack vectors used in modern web applications. You will begin with an overview of web security challenges and progress to advanced techniques such as bypassing Content Security Policy (CSP) with various methods. Each section provides practical demonstrations that showcase vulnerabilities found in popular web frameworks and libraries. As the course progresses, you'll delve into exploiting web applications through PDFs, images, and links, including XSS attacks and token hijacking. You'll also explore AngularJS vulnerabilities, such as template injection and scope hacking, which are often exploited in Single Page Applications (SPAs). Detailed case studies and examples provide a deep understanding of how these attacks are executed and prevented in real-world applications. Finally, the course covers full-stack attacks, including HTTP parameter pollution, subdomain takeover, and race condition exploits. Through hands-on labs, you'll get the chance to apply your knowledge and explore cutting-edge exploitation techniques. By the end of the course, you’ll have developed the ability to identify, exploit, and mitigate a wide range of web application vulnerabilities. This course is designed for web developers, security professionals, and penetration testers looking to enhance their expertise in web application security. Prior knowledge of basic web technologies, HTTP, and JavaScript is recommended. Familiarity with core concepts of web security is beneficial but not required.

Навыки, которые вы освоите

Exploitation techniquesWeb ApplicationsApplication SecurityJavascriptFull-Stack Web DevelopmentSecure CodingPenetration TestingAngularVulnerability AssessmentsAjax

Программа курса

6 модулей · 39 учебных материалов

01Introduction to the Course1 материалов

Introduction to the Course

IntroductionВидео
02Bypassing Content Security Policy in Modern Web Applications6 материалов

Bypassing Content Security Policy in Modern Web Applications

Introduction to the SectionВидеоBypassing CSP through ajax.googleapis.comВидеоBypassing CSP through Flash FileВидео

Учитесь у экспертов

Packt - Course Instructors

Преподаватель курса

Web Hacking Expert - Full-Stack Exploitation Mastery
В каталоге вашей программы

Инвестируйте в себя

Новые знания — в удобное для вас время.

Начать на Coursera

Обучение откроется на Coursera
в новой вкладке

Обучение на Coursera

≈ 7.9 ч

6 модулей

Язык: Английский

Часть программы вашего университета
Bypassing CSP through Polyglot FileВидео
Bypassing CSP through AngularJSВидео
Understanding CSP Bypasses Using AJAXDIALOGUE
03Hacking Web Applications through PDFs, Images, and Links9 материалов

Hacking Web Applications through PDFs, Images, and Links

Introduction to the SectionВидеоToken Hijacking through PDF - Part 1ВидеоToken Hijacking through PDF - Part 2ВидеоXSS through Image - Part 1ВидеоXSS through Image - Part 2ВидеоUser Redirection through window.opener Tabnabbing - Part 1ВидеоUser Redirection through window.opener Tabnabbing - Part 2ВидеоProtecting Web Applications from Malicious File ExploitsDIALOGUEAssessment 1Задание
04Hacking AngularJS Applications7 материалов

Hacking AngularJS Applications

Introduction to the SectionВидеоAngularJS: Template Injection and $scope Hacking - Part 1ВидеоAngularJS: Template Injection and $scope Hacking - Part 2ВидеоAngularJS: Going Beyond the $scopeВидеоAngularJS: Hacking a Static TemplateВидеоSummary - Hacking AngularJS ApplicationsВидеоHacking AngularJS Applications: Security VulnerabilitiesDIALOGUE
05Exploiting Race Conditions in Web Applications6 материалов

Exploiting Race Conditions in Web Applications

Introduction to the SectionВидеоExploiting Race Conditions - Case 1 (Part1)ВидеоExploiting Race Conditions - Case 1 (Part2)ВидеоExploiting Race Conditions - Case 2ВидеоCase Studies of Award-Winning Race Condition AttacksВидеоExploiting Race Conditions in Web ApplicationsDIALOGUE
06Full-Stack Attacks on Modern Web Applications10 материалов

Full-Stack Attacks on Modern Web Applications

Introduction to the SectionВидеоHTTP Parameter Pollution - Part 1ВидеоHTTP Parameter Pollution - Part 2ВидеоSubdomain Takeover - Part 1ВидеоSubdomain Takeover - Part 2ВидеоAccount Takeover through Clickjacking - Part 1ВидеоAccount Takeover through Clickjacking - Part 2ВидеоAssessment 2ЗаданиеFull Course Practice AssessmentЗаданиеFull Course AssessmentЗадание