강의

멘토링

로드맵

Breaking Down Secure Coding

This lecture is designed to be easily understood even if you have no prior knowledge of Secure Coding. After covering fundamental secure coding concepts, it focuses on web service security. This course was originally conducted as a special lecture hosted by OO University. It provides over 160 source codes with extensive comments, pinpointing core topics and techniques that can be applied immediately in the field.

(5.0) 12 reviews

102 learners

Level Intermediate

Course period Unlimited

Penetration Testing
Penetration Testing
security
security
security training
security training
Penetration Testing
Penetration Testing
security
security
security training
security training
arigaram님의 프로필 이미지

Edited

Notice regarding the posting schedule for the revised video

# Lecture 11. Breaking Down Secure Coding

## New Lesson Posting Announcement

Hello, students! For this course, **393** new lessons (totaling 24 sections) are scheduled to be posted sequentially. Since I am producing multiple courses simultaneously, I am proceeding by **alternating between several courses and posting a little at a time**, rather than uploading one entire course all at once. Below are the posting principles and the posting schedule for each section of this course.

> Note: The lessons being posted now are not entirely new content, but are part of the production of **revised editions (2nd or 3rd editions)** that reinforce existing lectures.

## Posting Principles

- Currently, I am rotating through a total of 19 courses in order (circular method), posting one lesson per course alternately.
- Postings take place on weekdays (Mon-Fri), and a total of 5 new lessons across all courses are uploaded per day.
- For this course as well, the next lesson will be posted each time its turn in the rotation comes around.
- The posting speed may feel slow compared to other courses, but all courses are progressing together in the same manner.

## Posting Schedule by Section (Total 24 Sections)

| Section | Number of Lessons | Start Date | End Date |
|---|---|---|---|
| Section 2. [Secure Coding Overview & Basics] Importance of Secure Coding | 4 | 2026-07-03 | 2026-07-20 |
| Section 3. [Secure Coding Overview & Basics] Threat Modeling | 6 | 2026-07-24 | 2026-08-20 |
| Section 4. [Secure Coding Overview & Basics] Coding Standards and Guidelines | 3 | 2026-08-26 | 2026-09-04 |
| Section 5. [Secure Coding Overview & Basics] Basic Practice - Secure Input Handling | 4 | 2026-09-10 | 2026-09-25 |
| Section 6. [Security Vulnerabilities & Countermeasures by Language] Overview of Security Vulnerabilities by Language | 29 | 2026-10-01 | 2027-02-19 |
| Section 7. [Security Vulnerabilities & Countermeasures by Language] Secure Coding in C and C++ | 20 | 2027-02-24 | 2027-05-11 |
| Section 8. [Security Vulnerabilities & Countermeasures by Language] Java Secure Coding | 18 | 2027-05-14 | 2027-07-15 |
| Section 9. [Security Vulnerabilities & Countermeasures by Language] Python Secure Coding | 19 | 2027-07-20 | 2027-09-10 |
| Section 10. [Web Application Security] Application Security Overview | 3 | 2027-09-14 | 2027-09-20 |
| Section 11. [Web Application Security] Cross-Site Scripting (XSS) | 22 | 2027-09-22 | 2027-11-19 |
| Section 12. [Web Application Security] Cross-Site Request Forgery (CSRF) | 20 | 2027-11-23 | 2028-01-07 |
| Section 13. [Web Application Security] Security Headers and HTTPS | 17 | 2028-01-11 | 2028-02-16 |
| Section 14. [Authentication and Authorization] Basics of Authentication and Authorization | 19 | 2028-02-17 | 2028-03-27 |
| Section 15. [Authentication and Authorization] Password Management | 12 | 2028-03-29 | 2028-04-19 |
| Section 16. [Authentication and Authorization] OAuth and JWT | 20 | 2028-04-20 | 2028-05-29 |
| Section 17. [Authentication and Authorization] Session Management | 14 | 2028-05-30 | 2028-06-23 |
| Section 18. [Practical Application & Analysis of Secure Coding] Code Review and Static Analysis Tools | 4 | 2028-06-26 | 2028-06-29 |
| Section 19. [Practical Application & Analysis of Secure Coding] Dynamic Analysis and Pentesting | 14 | 2028-06-30 | 2028-07-19 |
| Section 20. [Web Application Security] SQL Injection and Injection Families | 20 | 2028-07-20 | 2028-08-10 |
| Section 21. [Access Control] Access Control Systems and Privilege Escalation Defense | 25 | 2028-08-11 | 2028-09-07 |
| Section 22. [Data Protection & Encryption] Symmetric/Asymmetric Encryption and Key Management | 25 | 2028-09-08 | 2028-10-05 |
| Section 23. [Supply Chain & Dependency Security] SCA, SBOM, and Package Signing | 25 | 2028-10-06 | 2028-11-02 |
| Section 24. [API & Cloud Security] OWASP API Top 10, SSRF, and Cloud Isolation | 25 | 2028-11-03 | 2028-11-30 |
| Section 25. [Observability, Auditing, & Incident Response] A09 Logging, Monitoring, and IR | 25 | 2028-11-30 | 2028-12-14 |

## Estimated Completion

Based on the current pace, the entire course is expected to be fully posted around **December 2028**. (The actual schedule may be moved up or delayed depending on production progress.)
Comment