강의

멘토링

로드맵

Inflearn brand logo image
BEST
Security & Network

/

Computer Security

Web Hacking & Secure Coding That Web Developers and Information Security Beginners Must Know

An introductory course on web hacking for information security beginners and web developers! Start web hacking in a fun way with this course!

(4.8) 221 reviews

2,026 learners

  • crehacktive
Penetration Testing
Injection

Reviews from Early Learners

What you will learn!

  • Web Hacking and Security

  • Secure coding

Web hacking lessons for web developers and information security beginners!
Respond accurately to any risk situation, anytime.

📖 Why should you know web hacking?!

Knowing the attack will help you to see the defense! When you look at a web service from the attacker's perspective, you will see more vulnerabilities than when you look at a web service from the defender's perspective! Also, rather than simply knowing the countermeasure, you need to know the attack accurately to come up with the correct countermeasure for the situation!

Web services are being created, modified, and constantly adding features at this very moment. There are many cases where these features are created and web services are created without any knowledge of potential threats. In this situation , knowledge of web hacking is not optional but essential !

 

💡 A course for web developers and information security beginners!

This is an introductory course on web hacking for web developers and information security beginners. Later, lectures will be opened on the famous vulnerable virtual environments , WebGoat / DVWA / bWAPP . Start your web hacking journey with this course!

(※ The vulnerable virtual environment of the course to be opened may change in the future.)

 

📝 Things you can learn from the lecture!

This is the main table of contents you will learn in this lecture.

  1. Attack concept
  2. Attack movement principle
  3. Attack Practice
  4. Countermeasures
  5. Secure Coding Practice

 

📝 Web hacking attack topics you can learn through lectures!

There are a total of 9 web hacking attack items that you can learn through this lecture!

  1. SQL Injection
  2. OS Command Injection
  3. XXE Injection
  4. XSS
  5. CSRF
  6. File Download Vulnerability
  7. File upload vulnerability
  8. Parameter tampering vulnerability
  9. Insufficient URL access restrictions vulnerability

 

📖 The core of web hacking attacks, examined through detailed attack principle analysis!

For each web hacking vulnerability item, you can learn more easily through detailed attack principle analysis, and you can identify the core of the attack, which is very important from both attack and defense perspectives.

 

📖 Learn web hacking attacks and secure coding by simply following along!

We will conduct practical training that is easy to follow, and through a large amount of practical training, you will easily understand web hacking attacks, and through practical training that applies secure coding directly, you will practice defending yourself as well as attacking!

 

🧰 Virtual environment provided for practice!

A vulnerable virtual environment website is provided for use during the training.

 

💡 Different features from other web hacking training courses! Why you should take this course!

The unique features of Creative Education are the detailed principles of attacks, various attack practices, and secure coding practices. Many web hacking-related education programs end with attack practices, and only look at general countermeasures.

However! Creative's training will teach you everything from attacks to secure coding, and you will develop skills to respond to each environment!

 

💡 Must-see lectures

Web technology basics you must know
A course to learn the basics of web technology
Basic SQL Grammar for Successful SQL Injection Attacks
Basic steps to learn SQL injection attacks

 

Recommended for
these people

Who is this course right for?

  • Information Security Beginner

  • Information Security Expert

  • Web developers who want to know about web hacking

  • Web developers who want to know about secure coding

Need to know before starting?

  • Web Basics

  • Web Programming

  • SQL Basic Grammar

Hello
This is

25,881

Learners

1,361

Reviews

497

Answers

4.9

Rating

18

Courses

:: 국내 정보보안 솔루션 개발 기업 재직 ::
- 앱 위변조 방지 솔루션 : 미들웨어 담당 / 해킹 대회 운영진 / 국내 유명 해킹/방어 훈련장 제작

:: 국내 정보보안 전문 업체 재직 ::
- 블랙박스 모의해킹 / 시나리오 기반 모의해킹 / 웹 취약점 진단 / 모바일 취약점 진단 / 소스코드 취약점 진단 / APT 모의 훈련 / DDoS 모의훈련 / 인프라 진단 / 스마트 가전 진단
- 국내 대기업, 중소기업 다수 진단

:: 외부 교육 및 활동 ::
- 멀티캠퍼스, 국가 보안 기술 연구소(ETRI)
- 국내 정보보안 업체 : 재직자 대상 "웹 모의해킹 심화 교육" 진행중
- 해커팩토리 문제 제작

:: 취약점 발견 ::

1) Web Application Server 취약점
- TMAX JEUS : 원격 명령어 실행 취약점(Remote Command Execution Vulnerability)
- IBM WebSphere(CVE-2020-4163) : 원격 명령어 실행 취약점(Remote Command Execution Vulnerability)

2) CMS(Contents Management System) 취약점
- 네이버 스마트에디터 : 파일 업로드 취약점
- 그누보드 : SQL Injection , 파일 업로드 취약점(그누보드4, 그누보드5), XSS ...
- 킴스큐 : 파리미터 변조 취약점 , 파일 업로드 취약점

* 이메일 : crehacktive3@naver.com
* 블로그 : http://www.crehacktive.co.kr

Curriculum

All

109 lectures ∙ (16hr 32min)

Course Materials:

Lecture resources
Published: 
Last updated: 

Reviews

All

221 reviews

4.8

221 reviews

  • rlarudwn5167175님의 프로필 이미지
    rlarudwn5167175

    Reviews 1

    Average Rating 5.0

    5

    100% enrolled

    There was a lot of practical content during the lecture, so it was good to understand the attack principles and differences in each attack method that are difficult to understand through theory alone. I liked that the attack target, attack principles, and countermeasures (detailed code) for each vulnerability were systematically organized and explained well.

    • androboy8543님의 프로필 이미지
      androboy8543

      Reviews 1

      Average Rating 5.0

      5

      100% enrolled

      thank you

      • tubowangin4195님의 프로필 이미지
        tubowangin4195

        Reviews 5

        Average Rating 5.0

        5

        95% enrolled

        I had to learn about security knowledge during a sudden job change, so I completed the course in 4 days. I really didn't know anything about security, but I was able to learn about where vulnerabilities can occur in the overall structure of the web. When I looked for lectures on the Internet, most of them seemed to only give an overview at a high level, but since there were examples, I remembered them a little more and was able to understand what kind of impact vulnerabilities have. However, I wish the setup guide for Mac users was a little more detailed. Other than that, I'm really satisfied with the lecture content.

        • simya님의 프로필 이미지
          simya

          Reviews 24

          Average Rating 4.9

          5

          100% enrolled

          It is not lacking at all for beginners in web hacking. I really like the part where it even teaches secure coding.

          • kimdy100420017666님의 프로필 이미지
            kimdy100420017666

            Reviews 2

            Average Rating 5.0

            5

            99% enrolled

            It is clear that you have prepared the lectures with sincerity. Not only did I easily understand the major web vulnerability attacks, but I was also disappointed that many lectures only dealt with attacks, but you also provided information on secure coding and defense perspectives, so it was a meaningful lecture in many ways.

            • crehacktive
              Instructor

              Thank you so much for recognizing the effort you put into the lecture! Everyone is only focused on offense, but defense is also very important~! Thank you so much for leaving a great review!

          $42.90

          crehacktive's other courses

          Check out other courses by the instructor!

          Similar courses

          Explore other courses in the same field!