Web Red Teaming


In this course, trainees will learn about various web vulnerability types and learn to use and develop penetration testing tools to exploit them.

Subjects covered include:   

  • Webshell
  • XSS
  • SQL injection
  • NOSQL vulnerabilities
  • Website code injections
  • Traversals
  • Introduction to WebAssembly (WASM)
  • Examining a basic XXE vulnerability
  • Out-of-band Exfiltration
  • Abusing SSRF in AWS EC2 environment
  • Burp Plugin development for automation purposes


