Course curriculum

  • 1

    Sessions

    • Day -1 Introduction to Web App Pentesting, XSS and its Types

    • Day -2 - XSS & Automation Scripting

    • Day -3 (XSS and its types- Stored, Blind XSS)

    • Day -4 Broken Access Control (BAC), IDOR, Priv Esc Horizontal Vertical, Autorize

    • Day - 5 Authentication Bypass and Its Types

    • Day - 6 (CSRF and LFI)

    • Day -7 CORS

    • Day -8 (SQL Injection)

    • Day 10 ( Subdomain Takeovers)

    • Clickjacking & Open Redirect with Automation

    • Broken Link Hijacking & Session Related Issues & SSRF

    • RCE, SSTI and File upload bypass by Ronit Bhatt