Web Hacking Black Belt Edition is an advanced application security course focused on identifying and testing vulnerabilities in modern web applications, APIs, and related endpoints.
The course concentrates on specific areas of application security, advanced vulnerability discovery, and exploitation techniques. Participants will examine security issues that have affected real-world products, appeared in bug bounty programs, and are often missed by modern automated scanners.
The training includes a wide range of current and unconventional web security scenarios. Participants also benefit from access to a state-of-the-art Hacklab throughout the course, allowing the concepts to be reinforced through practical exercises.
Key topics include modern JWT, SAML, and OAuth weaknesses, core business logic issues, cryptographic flaws, RCE scenarios involving serialization and template injection, exploitation over DNS channels, advanced SSRF, HPP, XXE, and SQL Injection topics, serverless security issues, web caching vulnerabilities, and attack chaining based on real-world examples.
Participants are encouraged to become familiar with Burp Suite before attending in order to gain maximum value from the course.
























