강의

멘토링

로드맵

Inflearn brand logo image
BEST
Security & Network

/

Computer Security

Hacking as a hobby #3 (WebGoat)

Covering the content of WebGoat, the classic wargame of web hacking, we have translated and solved all the lessons and challenges from beginning to end. We provide all the tools and data needed to solve the challenges, starting with setting up the practice environment.

(4.6) 23 reviews

589 learners

  • caliber50
Penetration Testing
WebGoat

Reviews from Early Learners

What you will learn!

  • Ability and acumen to discover web application vulnerabilities based on OWASP Top 10.

  • Computer science knowledge relevant to each challenge.

Hacking as a hobby, hacking as a hobby.
※ "Hacking as a Hobby" content only focuses on legal hacking to contribute to a safe information security ecosystem.

< To view the course content in book form: Paper book/e-book (link) >

Hacking as a hobby #3 (WebGoat)

▶ Do you want to know how to hack a website ?

▶ Do you want to place a special order on a server or database hidden deeper beneath the surface?

▶ Would you like to try your hand at web-related challenges at hacking competitions ?

If so, you may be able to get help here.



Here, we'll master WebGoat, a classic web hacking wargame . Based on fully translated Korean materials, we'll follow every lesson from start to finish and practice the challenges.

They will be exposed to the hidden parts of the web browser. They will intercept and modify data transmissions, requesting special information from servers. They will even access private pages that are inaccessible to the general public. They will extract personal information stored in databases as if it were a given . They will even use websites to deceive other users .

This course will teach you how to discover and mitigate various web-related security vulnerabilities . Specifically, it covers theory and practice on vulnerabilities related to SQLI, XXE, authentication bypass, JWT, XSS, IDOR, access control, deserialization, CSRF, vulnerable components, password reset, and HTML tampering.

To reduce any additional hassle, we'll help you set up a practice environment and provide all the tools and data you need to solve the challenge.


[Q1] Which version of Webgoat do you use?
[Ans] We use M24 version with OWASP 2017 applied.

[Q2] I didn't take "Hacking as a Hobby #1-2." Is it okay to start with this course?

[Ans] Yes, that's not a problem. Course #2 focuses on general hacking experience, while course #1 focuses on system hacking. However, course #3 focuses on web hacking, so it's not directly related. However, course #5, which covers actual hacking competitions, covers a broader range of topics, including systems and the web, so the previous courses are not meaningless.

[Q3] What abilities will you gain when you complete the course?
[Ans] A website developed by a novice developer unfamiliar with security may seem like a toy. However, please note that this isn't the entirety of web hacking. It's about demonstrating a few skills based on key vulnerabilities . Now, you're finally ready to take action.

Note

Recommended for
these people

Who is this course right for?

  • For those who want to complete all the content of Wargame WebGoat.

  • Anyone who wants to learn hacking little by little as an academic hobby.

  • Anyone who wants to participate in domestic/international hacking competitions in the future.

  • Students in related departments who need to supplement their major knowledge.

  • Those who wish to pursue a career in information security.

Need to know before starting?

  • If you have experience writing Java programs, it may be helpful.

Hello
This is

11,405

Learners

914

Reviews

118

Answers

4.7

Rating

9

Courses

ㆍ 정보보안기사
ㆍ "생활코딩! 파이썬" 도서 저자
ㆍ "취미로 해킹#N" 도서(+강의) 저자
ㆍ 한국외국어대학교 정보보안 담당 직원
ㆍ 미사일전략사령부 CERT 팀장(육군 학사#59)
ㆍ 한국공학대학교 컴퓨터공학 학사(4.42)

Curriculum

All

62 lectures ∙ (10hr 2min)

Published: 
Last updated: 

Reviews

All

23 reviews

4.6

23 reviews

  • 스파이스님의 프로필 이미지
    스파이스

    Reviews 10

    Average Rating 2.9

    3

    60% enrolled

    설명 깔끔하게 잘 합니다. 근데 진짜 초보만(injection을 들어보긴 했다 정도) 수강하길. 그리고 저작권은 나한테 있으며~~ 악용하는건 본인책임이고~~~ 등등 첫 강좌때 한번만 말하면 되는것을 모든클립 시작마다 삽입해놔서 그거 건너뛰기 하는게 거슬림

    • 김진호님의 프로필 이미지
      김진호

      Reviews 1

      Average Rating 5.0

      5

      6% enrolled

      솔직히 이거 혜자임. 웹고트로 5일짜리 강의하는 곳 있는데, 진도 다 나가지도 못하고 인당 15만원씩 받음 ㅂㄷㅂㄷ...

      • 이지혁님의 프로필 이미지
        이지혁

        Reviews 1

        Average Rating 5.0

        5

        15% enrolled

        솔직히 SQL 인젝션만 얻어가도 만족한다는 생각으로 들었는데, 예상치 못했던 내용들도 다수 포함되어 있었고 또한 친절하게 설명해주어 많은양인데도 수월하게 배울 수 있었습니다. 쉬운 부분만을 골라서 진행하지 않고 정말 모든 내용이 다 들어가 있고요. 리얼 버그 있는 문제도 풀어버림...

        • 문대현님의 프로필 이미지
          문대현

          Reviews 9

          Average Rating 4.9

          5

          100% enrolled

          재밌습니다 쉽고 잘 알려줘요!

          • 바키라님의 프로필 이미지
            바키라

            Reviews 77

            Average Rating 4.5

            5

            26% enrolled

            좋은거 같아요

            $42.90

            caliber50's other courses

            Check out other courses by the instructor!

            Similar courses

            Explore other courses in the same field!