Skip to main content
Path Web Application Pentesting

Learn how to perform security assessments of web applications.

  • Learn about common web vulnerabilities
  • Understand web authentication mechanisms
  • Perform server- and client-side exploits
  • Understand the remedies for web vulnerabilities
Certificate of Completion
Example learning path completion certificate

Complete this learning path to
develop your skills and earn a
certificate of completion

WEB1 Professional Certification completion certificate
WEB1 Professional Certification

Prove you can find, exploit, and report real web vulnerabilities across blackbox, whitebox, and greybox access.

Introduction

Every day you interact with web applications. Just reading the information here means you are using a web application! Understanding how to test web applications is a critical skill required by almost every pentester! Even if you want to specialise in testing other systems like networks or cloud, a solid baseline in web application testing will greatly assist you on this journey. This path covers key topics that you need to understand for web application testing, such as:

  • Authentication Attacks
  • Injection Attacks
  • Advanced Server-Side Attacks
  • Advanced Client-Side Attacks
  • HTTP Request Smuggling

Completing this learning path will allow you to learn and become a great web application penetration tester.

Section 4

Advanced Client-Side Attacks

XSSCSRFDOM-Based AttacksCORS & SOPWhats Your Name?
Topic Rewind Recap