• expired

An Introduction to Ethical Hacking and Web Application Security (100% FREE)

640
LETSGROW
This post contains affiliate links. OzBargain might earn commissions when you click through and make purchases. Please see this page for more information.

Searching for Complete Web Application Security (FULL Course)?

*******An Introduction to Web Ethical Hacking *********

Secure your Web Application NOW! from (Black-hats)

-Secure your website now from the hackers out there

-Over 18 lectures and 2 hours of content!

-Finding Vulnerabilities in systems and web application and reporting it to administrator

Receive your course completion certificate once finish the course :)

Cheers,
Gautam

Related Stores

Udemy
Udemy

closed Comments

    • +10

      jv, ethical hacking is actually a thing. It's what most penetration-testers/security auditors do.

    • +6

      Note the word 'unauthorized' in that law you quoted? This course is teaching 'authorized' hacking which is neither illegal nor unethical.

    • +1

      An ethical hacker is usually employed by an organization who trusts him or her to attempt to penetrate networks and/or computer systems, using the same methods as a hacker, for the purpose of finding and fixing computer security vulnerabilities. Unauthorized hacking (i.e., gaining access to computer systems without prior authorization from the owner) is a crime in most countries, but penetration testing done by request of the owner of the victim system(s) or network(s) is not.

      http://en.wikipedia.org/wiki/Certified_Ethical_Hacker

    • You should redefine the correlation between "Hacking" and "breaking the law."

    • +1

      They're called soldiers, cops etc. They protect the innocent/citizens/country by committing what would technically qualify as murder (if need be). Killing a terrorist who has just murdered a whole bunch of people… is ethical murder, amiright?

      • is ethical murder, amiright?

        no, just murder. we don't have capital punishment in Australia…

        • Not saying I agree with that. A lot of people don't. Lets not wander OT.

      • -1

        No, it aint necessarily so.

        Depends if she had her hands in the air.

    • You guys need to look up the phrase "white hat".

      In fact, I'll give it to you on a plate: http://en.wikipedia.org/wiki/White_hat_(computer_security)

  • +7

    Nice find, but CEH has little to no value IMHO. Among most pentesters it's regarded as a very skiddie cert.

    My advice for people starting out would be:
    1)Get really good at atleast one scripting language. Python, ruby, perl.. take your pick.

    2) For people interested in Web apps: The web application hacker’s handbook. If you’re really keen, try to buy some of the MDSec lab times. They’re pretty reasonably priced ($7/hr of access). This book is easily a must-have for any web app pen tester. I personally own a physical copy of the previous edition and an iBook copy of the latest edition (plus a pdf on my laptop :P). THE best book on web app security.

    Some resources:
    http://www.amanhardikar.com/mindmaps/PracticewithURLs.html
    http://g0tmi1k.blogspot.com.au/
    http://21ltr.com/scenes/
    http://www.securitytube.net/ (absolutely brilliant).
    https://www.owasp.org/index.php/Main_Page
    https://pentesterlab.com/

    The above is just something that you can start off with.

    For formal training and certification, I’d highly recommend the OSCP certification (comes with the Pentesting with Backtrack course) and is one of the most well regarded proper pentesting certs at the moment. It is one of the relatively cheaper certifications as well. Be warned though, this is definitely not for the faint of heart.

    PS: I'd say this is a pretty good deal for something that is free.

    • +1

      thanks for the info mate

      • My pleasure. :) Happy to help.

        • -4

          Please cease pleasuring yourself.

    • +3

      The CEH course/certification is the first half of the training required to continue on to become a licensed penetration tester.

      You cannot compare the OSCP with CEH as they have different objectives.

      The CEH exam is a 4 hour exam in a testing centre and the certification is ANSI certified, the OSCP exam is conducted from anywhere and you have 24 hours to complete it.

      CEH is recognised by the Department of Defence (mandatory qualifications for positions) whereas the OSCP is not.

      EC Council certification have ongoing education requirements.

      Disclaimer: I'm a CEH V8 and soon attending the Certified Security Analyst course that will give me my ECSA certification. After this Í'm heading down the path to Licensed Penetration Tester which involves a police clearance (something the OSCP does not), relevant experience with penetration testing and more.

      http://www.eccouncil.org/Certification/certified-ethical-hac…
      http://www.eccouncil.org/Certification/ec-council-certified-…
      http://www.eccouncil.org/Certification/licensed-penetration-…

      • I agree that CEH has it's place as a very basic PT certification.

        In terms of value derived, OSCP has a significantly higher "cred" among most technical pen-testers/security analysts.

        Regarding police clearance, most firms that employ Pentesters/malware analysts/RE/crypto folks require Fed police clearance at the very least.

        That said, certs are definitely a means to bolster your resume in front of HR and have nothing to do with actual skill. If you learnt heaps from your CEH and LPT, more power to you mate. All the best for your LPT.

        Disclosure: I've got GWAPT and Security+ (yeah lol). Halfway through OSCP and am presently tossing between GPEN and GXPN. Next year CREST CCT.

  • +5

    Nothing wrong with hacking if you're not doing it with malicious purpose. Companies hire hackers in order to find exploits in their own system. If you're buying a lock, you damn sure hope the manufacturer has hired lock pickers to try and break their locks.

      • +14

        Cherry pick parts of sentences to misquote people. You're such a muppet at times jv.

        You do realise that security testing by "ethical hackers" (known as penetration testers) is part of the secure development lifecycle? Every system needs to be periodically audited for security controls and the organisational risk exposure assessed?

        You don't sprinkle unicorn piss to secure systems… :)

        • I've done my share of penetration testing…

        • -8

          I've done my share of penetration testing…

          Was it 'ethical' ???

        • -1

          Relax honey, i'm a security auditor.
          I'm here to audit you.

        • sigh facepalm.jpeg

        • When the hell did this facepalm crap kick in?
          Holy Jesus!

        • Must resist the urge to make a sexual joke…

        • +1

          I'm here to audit you.

          My system is ready.

      • -3

        Another reminder why the UK is one of the last bastions for human rights, for the yanks certainly are not.

        • -2

          Lol! That is such a load of BS it isn't even funny. :)

        • -1

          You need to move beyond Batman comics…

          Anyway, our saviour has arrived. If i had my flag i'd wave it.

  • +10

    Good course. Funny to see a lot of non-techies struggling with the concept of Ethical Hacking.

      • -1

        I bet your a creationist aren't you…

        • +2

          nah he's just our "Town crier"…

  • +1

    They'd get my attention if they implemented the latest technology from New Zealand.

    Of course they would need highly qualified teachers.

  • +1

    Can we "ethically" hack Ozbargain.com.au?

    Just for fun?

    • That was needed on April first. The horror.

  • +2

    CEH is a good start, especially if it's free and you just want to see what you're getting into.

    OSCP is much harder, exploit focussed and exam is successfully breaking into multiple hosts in lab environment over 24 hours.

    GPEN is SANS ethical hacking cert, 6 day training course or can be done online. GWAPT is SANS web application hacking cert, again 6 days training or done online.

    OSCP, GPEN, GWAPT are not easy.

    If you are just starting out, this course is fantastic value as intro to security. If you want a job out of it, study and sit the exam which will show employers some competency and potential.

    Most pen test jobs require a lot of experience, but you can get junior roles with CEH + OSCP + 1 year general experience in security.

    Usually a long path, but depends on where you want to go.

  • +1

    Don't bother the guy is an idiot http://i.imgur.com/k12kP5H.png

    Webpage doctype is html 2.0? oh.. that means we need to use HTTP 2.0 o_0
    Two content-lengths neither of which are correct? o_0
    And finally the request method OPTIONS should be * not a path Jesus H Christ nothing in that is correct, it should be:

    OPTIONS * HTTP/1.1
    Host: kvhassan.com

    Good thing for you web servers are so forgiving.

    Stay away from this course!

    • +1

      With the amount of free udemy.com courses appearing on here you have to wonder if this is spam, given the reps are in (not from) India posting on an Australian site.

  • +1

    Sold out! Doh!

  • +1

    Coupon code appears to me as "Sold Out". Expired?

    • I didn't use the coupon code, just followed the deal link and registered.

      • The coupon code was embedded in the link, so you didn't have to put it in.

        It's saying sold out for me also :(

  • +3

    Ozbargain should put up a course on Unethical Bargaining!

Login or Join to leave a comment