Cross-site Scripting (XSS) with Cybr Micro-badge
Program Summary
Cybr’s Cross-site Scripting (XSS): The 2021 Guide is an activity-based course designed to help increase awareness of XSS vulnerabilities and attacks, as well as help build the XSS skills needed to prevent, identify and fix XSS flaws in web applications. Through skill-building exercises with 30+ video lessons, which include step-by-step tutorials to complete in safe lab environments, the course teaches both offensive and defensive XSS techniques and concepts so that students can learn how to find and fix XSS vulnerabilities with both manual and automated approaches.
Outcomes/Objectives
Upon completion students will learn:
What XSS is and how it works
The 3 main types of XSS attacks: Reflected, Stored and DOM-based
The real-world dangers of XSS in action
Effective (and ineffective) defenses against XSS
How XSS attacks by hand and with automated tools work
Real-world application through case studies of XSS vulnerabilities at Facebook, Gmail, Twitter, Tesla, and Airbnb
Rules to follow in order to prevent XSS vulnerabilities for all 3 types of attacks
Recommended testing guides
Deliverable
Enroll in the Cross-site Scripting (XSS) - The 2021 Guide course
Complete the Introduction to AppSec micro-badge to receive a free coupon code to enroll in this course.Complete all lessons and quizzes to receive the course certificate.
Program Duration
4.5 hours
Skills / Knowledge
- XSStrike
- XSSer
- Kali Linux
- XSS injections
- XSS
- OWASP ZAP
- BeEF
- Manual Payloads
- Automated Payloads