Kali Linux Web App Pentesting Labs (Udemy.com)

Learn how to hack web applications with a real cybersecurity professional!

Created by: Jesse Kurrus, M.S., OSCP, CEH, Security+, Linux+, Network+, CISSP

Produced in 2021

icon
What you will learn

  • Build your own penetration testing lab environment
  • Discover vulnerabilities in web applications automatically and manually
  • Escalate privileges within Linux
  • Local and remote buffer overflow
  • SQL Injection
  • Cross Site Scripting
  • Exploitation of various web-based vulnerabilities

icon
Quality Score

Content Quality
/
Video Quality
/
Qualified Instructor
/
Course Pace
/
Course Depth & Coverage
/

Overall Score : 94 / 100

icon
Course Description

Welcome to my Kali Linux Web App Pentesting Labs course! This course will be 100% hands-on, focusing specifically on exploitation of vulnerable web applications. Well be building a lab environment consisting of Kali Linux, and several intentionally vulnerable web applications including Beebox, SQL injection labs, OWASP Juice Shop, and WebGoat.

Through the duration of this course, well be focusing upon the most prevalent web application vulnerabilities and how to exploit them. As a framework for our learning approach, well be using the most recent version of OWASP at the time of this recording, which is OWASP 2017 top 10. OWASP is an organization which focuses upon improving the security of web applications and is a fundamental and necessary component to learn for aspiring pentesters. We'll be covering OWASP 1-9, because 10 does not apply specifically to pentesting, and is focused on the defensive side. Additionally, we'll be covering each of these in great detail over this course.

The primary topics within this course are both manual and automated methods of detection and exploitation of web application web application vulnerabilities. You'll be getting hands-on exposure to industry standard tools such as Burpsuite, Nmap, Nikto, Sqlmap, and many more. From what I've seen over the years in cybersecurity academia, including certifications, hands-on skills are highly lacking, save for the offensive security certs. This is because the majority of courses I've seen only teach theory, and have students prove their competency through writing and answering multiple choice questions. This does not prepare one for the real world, especially for pentesting where technical skills are paramount. This course aims to bridge that gap.

The beginning of this course will consist of downloading, installing, and configuring the components necessary for comprehensive hands-on web application penetration testing in a lab environment. Please get ready to hit the ground running and follow along with these labs, as well be getting started right away in the subsequent lecture.

I really look forward to working with all of you. If you have any questions during any of the labs, please feel free to reach out to me directly with the messaging system or Q&A section.

Who this course is for:
OSCP candidatesCEH candidatesPenetration testersCybersecurity professionalsCybersecurity/IT studentsPentest+ candidates

icon
Instructor Details

Summary: Jesse Kurrus is a cybersecurity expert with a breadth and depth of knowledge, professional experience, and top of the line credentials directly related to his field of expertise. He has provided quality training for thousands of students online, has mentored them one-on-one, and has coached many to acquire jobs in the cyber field. Professional strengths include security analysis, intrusion detection, ethical hacking, penetration testing, training, and technical writing. Jesse has a true passion for cybersecurity and information technology, and an insatiable ambition to further his knowledge and professional skill set.

Specialties: Intrusion Detection / Network Security Monitoring (Security Onion, Snort, Bro, and Suricata); SIEM Technology (Elasticsearch, Logstash, Kibana (ELK), ArcSight, and Splunk); PCAP analysis (Tcpdump, Wireshark, NetworkMiner, NetWitness/Security Analytics); Penetration Testing (Kali Linux, BurpSuite, Nikto, Nmap, Metasploit, etc.)
Current Degrees/Certifications: M.S. in Information Technology with Information Assurance Specialization / B.S. in Computer Networks and Security / Network+, A+, Security+, Linux+, Certified Ethical Hacker v8 (CEH), Offensive Security Certified Professional (OSCP), Certified Information Systems Security Professional (CISSP), eLearnSecurity Web applicationPenetration Tester (eWPT)

icon
More courses by Jesse Kurrus, M.S., OSCP, CEH, Security+, Linux+, Network+, CISSP

Hands-on Penetration Testing Labs 1.0

$11.99

Snort Intrusion Detection, Rule Writing, and PCAP Analysis

$11.99

Hands-on Penetration Testing Labs 3.0

$11.99

icon
More hacking courses

Practical Ethical Hacking - The Complete Course

$11.99

Hands-on Penetration Testing Labs 3.0

$11.99

Detecting and Mitigating Cyber Threats and Attacks

Free

Learn Network Hacking From Scratch (WiFi & Wired)

$11.99

Real-World Ethical Hacking: Hands-on Cybersecurity

$11.99

Network Hacking Continued - Intermediate to Advanced

$11.99

icon
Reviews

4.7

63 total reviews

5 star 4 star 3 star 2 star 1 star
% Complete
% Complete
% Complete
% Complete
% Complete

By Brian on 9/25/2020

Yes, it was a good match...Well explanation in the video

By Desarrollo ChileCompra on 9/25/2020

Course very good for start in this world, I have got the tools improve my skills.

By Cohen Carryl on 9/24/2020

My experience so far has been good.

By Cdrick Gauthier on 9/15/2020

Everything works as expected.

By Bhushan Pandloskar on 8/6/2020

good training

By Dro Ghost on 8/3/2020

I'm honored and very excited about the journey ahead.

By Sean on 8/1/2020

easy to follow along

By Max on 7/21/2020

Excellent tutorial for the beginner of OSCP path

By Madhuri Deb on 7/11/2020

Good handons exercise

By Adeniyi Adeyi on 6/19/2020

great but i need ana interaction where we can state ur issues and corrections

By Bogdan - Costin TUDOSE on 5/10/2020

So much information, precise and very well explained. Thank you very much !

By Jerry QR Lu on 5/4/2020

Good