Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

Coursera

Complete Ethical Hacking & Bug Bounty Training

Packt via Coursera

Overview

Google, IBM & Meta Certificates – 40% Off
One plan covers every Professional Certificate on Coursera.
Unlock All Certificates
This course features Coursera Coach! A smarter way to learn with interactive, real-time conversations that help you test your knowledge, challenge assumptions, and deepen your understanding as you progress through the course. Embark on a journey to master ethical hacking and bug bounty practices, gaining hands-on experience in securing web applications and understanding real-world vulnerabilities. You’ll learn to identify, exploit, and mitigate critical security risks while building practical penetration testing skills. The course starts with foundational concepts, including OWASP Top 10 vulnerabilities, web security principles, and essential tools like Burp Suite. You will explore detailed lab exercises covering authentication bypass, rate-limit attacks, Cross-Site Scripting (XSS), CSRF, CORS, and more, ensuring a deep understanding of exploitation techniques and mitigation strategies. Advanced sections guide you through bug bounty platforms, responsible disclosure practices, and real-world CVE exploitations, including remote code execution and sensitive file manipulation. Interactive labs provide live demonstrations, letting you apply concepts immediately and learn from step-by-step walkthroughs. This course is designed for aspiring ethical hackers, penetration testers, cybersecurity enthusiasts, and IT professionals with a basic understanding of web technologies. No prior advanced security experience is required, making it suitable for beginners to intermediate learners looking to specialize in ethical hacking. By the end of the course, you will be able to identify critical web vulnerabilities, exploit them ethically, use professional tools for penetration testing, and confidently participate in bug bounty programs with actionable reporting skills.

Syllabus

  • Course Introduction
    • In this module, we will provide a comprehensive overview of the course and its objectives. You will learn about ethical considerations, responsible hacking, and the boundaries of penetration testing. This module sets the foundation for all subsequent sections by familiarizing you with the learning path ahead.
  • OWASP Top 10
    • In this module, we will explore the OWASP Top 10, the industry standard for web application security risks. You will understand each vulnerability, how attackers exploit them, and how to implement effective defenses. Practical examples and strategiehttps://www.coursera.org/teach/packt-complete-ethical-hacking-bug-bounty-training-2bzsr/l1mJj00XEfGjkA6LUTrZAw/content/resources?itemId=yiWmgs will help you recognize and mitigate these risks in real-world scenarios.
  • Burp Suite and Lab Setup
    • In this module, we will guide you through setting up Burp Suite as a penetration testing tool. You will learn to intercept, analyze, and manipulate HTTP traffic in a lab environment. This foundation enables practical, hands-on practice for later exploitation exercises.
  • Authentication Bypass
    • In this module, we will dive into authentication bypass vulnerabilities with live demonstrations. You will explore advanced scenarios like OTP exposure, email takeover, and 2FA bypass. Strategies to secure authentication mechanisms against these attacks will also be discussed.
  • No Rate-Limit Attacks
    • In this module, we will examine how lack of rate-limiting can be exploited for account takeover attacks. You will see real-world examples, explore alternative tools, and learn practical testing techniques. The module also covers mitigation strategies to secure applications against these vulnerabilities.
  • Cross Site Scripting (XSS)
    • In this module, we will explore Cross-Site Scripting (XSS) vulnerabilities in depth. You will perform live attacks on multiple vectors, including limited inputs, cookies, and DOM elements. The module concludes with mitigation strategies, advanced tips, and HackerOne report analysis.
  • Cross Site Request Forgery (CSRF)
    • In this module, we will dissect Cross-Site Request Forgery (CSRF) attacks and their impact on web applications. Through lab and live examples, you will learn how CSRF can lead to account takeover or unauthorized actions. The module also covers prevention techniques and insights from real-world reports.
  • Cross Origin Resource Sharing (CORS)
    • In this module, we will explore Cross-Origin Resource Sharing (CORS) and its role in web security. You will perform live attacks to understand potential data exfiltration risks. Effective mitigation strategies and real-world report analysis complete the learning experience.
  • How to Start with Bug Bounty Platforms and Reporting
    • In this module, we will guide you through starting your bug bounty journey on platforms like BugCrowd, HackerOne, and Open Bug Bounty. You will also learn how government programs operate and how to responsibly report vulnerabilities. This module prepares you for practical, ethical hacking in live environments.
  • Exploitation of CVE 2020-5902 Remote Code Execution
    • In this module, we will explore the CVE-2020-5902 remote code execution vulnerability. You will learn exploitation techniques and review the resources required for practical application. The module concludes with guidance on protecting systems from similar attacks.
  • Exploitation of CVE 2020-3452 File Read
    • In this module, we will cover the CVE-2020-3452 vulnerability, which allows unauthorized file access. You will see live exploitation examples and learn how to secure web servers against such attacks. The focus is on understanding both the attack and the defense.
  • Exploitation of CVE 2020-3187 File Delete
    • In this module, we will investigate CVE-2020-3187, a file deletion vulnerability affecting web servers. You will learn how attackers exploit this flaw and how to secure critical files. The module emphasizes practical prevention and risk management strategies.

Taught by

Packt - Course Instructors

Reviews

Start your review of Complete Ethical Hacking & Bug Bounty Training

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.