Special offers now — see discounted courses.
day
:
hour
:
min
:
sec
See special offers
OWASP Top 10: #5 Security Misconfiguration and #6 Vulnerable and Outdated Components

OWASP Top 10: #5 Security Misconfiguration and #6 Vulnerable and Outdated Components

33mIntermediate2022-11-07

Authors

Caroline Wong

Caroline Wong

Vice President of Cobalt.io

Course details

Security vulnerabilities should be top of mind when it comes to safely accessing web applications within an organization. There’s always something that can go wrong if you’re not careful, but how do you prepare for a possible attack? In this course, instructor and application security expert Caroline Wong gives you an overview of two of the most common vulnerabilities listed on the 2021 Open Web Application Security Project (OWASP) Top 10 List: security misconfiguration and vulnerable and outdated components.

Explore the fundamentals of security misconfiguration and vulnerable and outdated components to build your understanding of how each vulnerability works and find out what you can do to defend yourself against an attack, drawing from real-life examples along the way. Discover the latest, most effective prevention techniques to keep your web applications safe and secure.

Skills covered

Security AwarenessVulnerability ManagementCybersecurityDeep Dive (X:Y)

Concepts

0. Introduction

  • 01 - 2021 OWASP Top 10
  • 02 - OWASP Top 10 series

1. Security Misconfiguration

  • 03 - What is security misconfiguration
  • 04 - Example #1 - 2020 SolarWinds data breach
  • 05 - Example #2 - State of Pentesting Report
  • 06 - Prevention technique #1 - Repeatable hardening
  • 07 - Prevention technique #2 - Minimal platform
  • 08 - Prevention technique #3 - Configuration review

2. Insecure Design

  • 09 - What are vulnerable and outdated components
  • 10 - Real-world example #1 - Equifax breach 2017
  • 11 - Real-world example #2 - Target breach 2013
  • 12 - Prevention technique #1 - Remove unnecessary features
  • 13 - Prevention technique #2 - Continuous inventory management
  • 14 - Prevention technique #3 - Leverage virtual patching

Conclusion

  • 15 - Explore more of the OWASP Top 10

About us

LyndaKade is a leading learning platform that helps people learn business, software, technology, and creative skills to achieve personal and professional goals.

Phone numberAparat ChannelTelegram SupportTelegram ChannelInstagram Page

All rights to this site belong to LyndaKade.

Terms of Service|Privacy Policy

نماد الکترونیک enamad در صورت اتصال با آی‌پی داخل کشور، نمایش داده خواهد شد.
logo-samandehi - لوگو ساماندهی
Zarinpal
Zibal