25.6.13
This website uses cookies to ensure you get the best experience on our website. Learn more

Cross-site Scripting (XSS) with Cybr Micro-badge

Program Summary

Cybr’s Cross-site Scripting (XSS): The 2021 Guide is an activity-based course designed to help increase awareness of XSS vulnerabilities and attacks, as well as help build the XSS skills needed to prevent, identify and fix XSS flaws in web applications. Through skill-building exercises with 30+ video lessons, which include step-by-step tutorials to complete in safe lab environments, the course teaches both offensive and defensive XSS techniques and concepts so that students can learn how to find and fix XSS vulnerabilities with both manual and automated approaches.

Outcomes/Objectives
Upon completion students will learn:

  • What XSS is and how it works

  • The 3 main types of XSS attacks: Reflected, Stored and DOM-based

  • The real-world dangers of XSS in action

  • Effective (and ineffective) defenses against XSS

  • How XSS attacks by hand and with automated tools work

  • Real-world application through case studies of XSS vulnerabilities at Facebook, Gmail, Twitter, Tesla, and Airbnb

  • Rules to follow in order to prevent XSS vulnerabilities for all 3 types of attacks

  • Recommended testing guides

Deliverable

Program Duration

4.5 hours

Skills / Knowledge

  • XSStrike
  • XSSer
  • Kali Linux
  • XSS injections
  • XSS
  • OWASP ZAP
  • BeEF
  • Manual Payloads
  • Automated Payloads