Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

Coursera

Advanced Web Exploits, Python Scripting & Network Attacks

Packt via Coursera

Overview

Google, IBM & Meta Certificates – 40% Off
One plan covers every Professional Certificate on Coursera.
Unlock All Certificates
This course features Coursera Coach! A smarter way to learn with interactive, real-time conversations that help you test your knowledge, challenge assumptions, and deepen your understanding as you progress through the course. Master advanced web application penetration testing by exploring SQL injection techniques, real-world attack scenarios, and modern web vulnerabilities in controlled lab environments. You'll develop practical skills to identify, analyze, and validate security weaknesses while gaining hands-on experience with industry-standard tools and intentionally vulnerable applications used by security professionals. The course begins with SQL injection fundamentals, where you'll learn to identify vulnerable inputs, validate SQL injection flaws, understand authentication bypass techniques, and explore GET-based attacks using UNION queries. You'll then progress to advanced SQL injection topics, including blind SQL injection, alternative testing methods, hexadecimal payloads, file operations, shell access concepts, and automated testing with SQLMap. Building on these techniques, you'll apply your knowledge within the OWASP Juice Shop environment by completing practical security challenges involving SQL injection, DOM-based XSS, XXE, authentication flaws, access control issues, request manipulation, cookie security, and business logic vulnerabilities. The course concludes with Server-Side Request Forgery (SSRF), where you'll examine backend exploitation techniques and evaluate blacklist and whitelist filtering mechanisms in realistic scenarios. This course is intended for aspiring penetration testers, cybersecurity professionals, ethical hackers, and security researchers who have a foundational understanding of web application security and SQL concepts. Prior experience with Linux, HTTP, and introductory penetration testing is recommended. The course is designed at an Advanced difficulty level. By the end of the course, you will be able to assess SQL injection vulnerabilities, perform advanced web application penetration testing, use SQLMap and OWASP Juice Shop effectively, analyze complex security flaws such as SSRF and XXE, and conduct structured web security assessments within authorized testing environments.

Syllabus

  • SQL 101
    • In this module, we will introduce you to SQL, the foundational language for interacting with databases. You will learn key SQL operations, including inserting, updating, and filtering data, laying the groundwork for more advanced topics like SQL injection.
  • SQL Injection
    • In this module, we will cover SQL Injection attacks and their impact on web applications. You'll explore how these vulnerabilities are exploited, including practical demonstrations of extracting data from databases and securing applications against such attacks.
  • Website Pentesting Tools
    • In this module, we will walk you through key tools used in website penetration testing, focusing on Sqlmap and ZAP. You'll learn how to automate vulnerability detection and analyze scan results to pinpoint security flaws in web applications.
  • Ethical Hacking Certifications
    • In this module, we will introduce you to the key ethical hacking certifications that help validate your cybersecurity skills. You'll gain insight into certifications like CEH and OSCP, understanding their importance and the benefits they offer to your career.
  • Network Theory
    • In this module, we will dive into network theory, covering foundational concepts like the OSI model and binary code. You'll also explore advanced topics like IP addressing, host calculations, and the differences between TCP and UDP protocols
  • AI Hacking & LLMs
    • In this module, we will explore the emerging field of AI hacking, focusing on how large language models (LLMs) can be leveraged in cyber attacks. You'll learn about prompt injections and cross-language prompts, two advanced techniques in AI exploitation.
  • Python For Ethical Hacking Setup
    • In this module, we will guide you through the setup process for Python in an ethical hacking environment. You’ll learn how to install Anaconda on both Windows and macOS to prepare your system for writing Python-based hacking scripts.
  • Python Data Types & Structures
    • In this module, we will cover the essential data types and structures in Python, such as numbers, strings, and lists. You'll also gain a deep understanding of how to work with collections like dictionaries, sets, and tuples for efficient data handling.
  • Control Statements & Loops
    • In this module, we will introduce you to control statements and loops in Python. You’ll learn how to manipulate the flow of your programs with conditional statements and loops, making your scripts more dynamic and efficient.
  • Essentials
    • In this module, we will cover the essential tools and techniques for Python development. You'll learn important methods for data manipulation and how to use tools like Sublime Text and Command Prompt to write and execute Python code.
  • Functions
    • In this module, we will explore the concept of functions in Python, teaching you how to define and use functions effectively. You'll also dive into advanced topics like variable scope and recursion to enhance your programming skills.

Taught by

Packt - Course Instructors

Reviews

Start your review of Advanced Web Exploits, Python Scripting & Network Attacks

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.