courses / products
View Complete List...
View Complete List...
View Complete List...
View Complete List...
View Complete List...
View Complete List...
View Complete List...
View Complete List...
View Complete List...
View Complete List...
View Complete List...
View Complete List...
View Complete List...
SUBSCRIBE
Subscribe to Receive Special Offers & New Release Updates
100% Satisfaction Guaranteed

CareerVision is committed to providing our customers with the best service and products available.

We back our training products with a 100% Satisfaction or Your Money Back Guarantee, so you can buy worry free. More....



FAST UK DELIVERY
Order Today, Learn Tomorrow!

Pay as You Learn

SECURE PAYMENT
PROCESSING


We Accept All Major Credit Cards, PayPal and Google Checkout

Credit Cards Accepted
PayPal Accepted



Follow us on Facebook

CPT Engineer: Pen. Testing Websites and Databases

 
Bookmark and Share
CPT Engineer: Pen. Testing Websites and Databases
CD Training Course £60.00 + VAT
Buy Now
 


The Pen. Testing Websites and Databases training course is the 4th course in the CPTEngineer series which is based on 5 key elements of Pen. Testing; information, gathering, scanning, enumeration, exploration and reporting. In this course you will; learn to understand SQL Injections and SQL Injection enumeration. Learn Metasploit and other database direct attack tools. This training course is part four of five training series that will help prepare you to pass the CPTEngineer Certification Exam, formerly known as CPTS.


Benefits:

 •  Learn and master SQL Injections
 •  Learn and master tools like; N-Stalker, NTO Spider and other web assessment tools
 •  Learn how attackers use specific techniques to retrieve sensitive information


 

COURSE OUTLINE


Session 1

Section A: The Essence of SQL Injection

 •  Databases
 •  Vulnerabilities / Common Attacks
 •  SQL Injections
 •  Impacts of SQL Injection
 •  Business Impacts of SQL Injection
 •  Using SQL Injection
 •  SQL Injection Enumeration
 •  Extended Stored Procedures
 •  Lee Lawson Video

Section B: Direct Attacks and Protection

 •  Direct Attacks
 •  Attacking Database Servers
 •  Obtaining Sensitive Information
 •  Hacking Tools
 •  Oracle Security Tips
 •  Metasploit
 •  Metasploit Demo
 •  Finding and Fixing SQL Injections
 •  Hardening Databases

Section C: SQL Injection in Action

 •  Injection Attack
 •  Injection Attack Demo
 •  Joel Helkason Video

Section D: Attack Methods

 •  Web Server Market Share
 •  Common Web App Threats
 •  Progression of the Professional Hacker
 •  Anatomy of a Web Application Attack
 •  A Generic Web Application System
 •  Query Strings
 •  URL Mappings to Web Application Systems
 •  Penetration Methodologies

Section E: Most Common Attacks Illustrated

 •  Vertical Privilege Escalation
 •  XSS: Cross-Site Scripting
 •  Business Impacts of XSS
 •  Finding/Fixing XSS
 •  Injection Flaws
 •  Unvalidated Input
 •  Unvalidated Input Illustrated
 •  Business Impacts of Unvalidated Input
 •  Finding/Fixing Unvalidated Input
 •  Attacks Against IIS
 •  Unicode

Section F: Tools of the Trade Part I

 •  N-Stalker
 •  NTOSpider
 •  Free Web Assessment Tools
 •  N-Stalker Demo
 •  HTTrack
 •  Wikto

Section G: Tools of the Trade Part II

 •  Paros Proxy
 •  Paros Proxy Demo
 •  Burp Proxy
 •  Dictionary Maker/Cookies
 •  Acunetix Web Scanner
 •  Eclipse for Code Review
 •  OWASP WebScarab
 •  Samurai Web Testing





 

 
 
Print Image Printer friendly version   
Top of page
A-Z COURSE LIST   PROVIDERS   CBT TRAINING  CVISION NEWS  CONTACT US   SITEMAP  

MCITP Training Courses  MCPD Training Courses  MCTS Training Courses
MCITP Database Developer Training Courses  MCITP Database Administrator Training Courses
Flash Tutorials & Training Courses  MCSE CBT Training Adobe Photoshop Tutorials & CBT Training Microsoft Certification Training

CareerVision
61 Caroline Street, Birmingham, B3 1UF, UK
Tel: 0121 248 2400, Fax: 0121248 2800,
Email: sales@cvision.co.uk |Web: www.cvision.co.uk

red arrow Website design by Aimpro UK red arrow Terms