Web Application Penetration Testing Online

ONL-213

...a unique offering in the security industry. While some security courses may brush over application security, or cover the security of small-scale “demo” applications, InfoSec Institute concentrates on the latest attacks against modern web applications

Pass the exam with the best type of training for you!

Streaming OnlineSelf-Paced, Value

View Instant Pricing BelowImmediate Streaming Access Only

  • Expert Computer Forensics Instructor
  • Lab Demonstrations and examples
  • Exam Review
  • Highest quality content. 90%+ pass
  • Self-Paced Training
  • Apply payment to ILT course
  • Online, DVD, Offline formats
  • Mentored Training
  • Live Instructor Support
  • Comprehensive Case Files
  • Lab Book, Text Book, Pre-Study Book
  • CCFE Exam Fees Included
  • Complex Labs and case files
  • Group Activities and Live Case Labs
  • In-Person Learning environment
  • Training at Training Facility
  • Live Online Laptop Shipped To You
  • LAPTOP IS YOURS TO KEEP

Mentored Online

Our Most Popular Online Package

View Instant Pricing BelowLive Instructor Support - Course Materials via Fedex

  • Expert Computer Forensics Instructor
  • Lab Demonstrations and examples
  • Exam Review
  • Highest quality content. 90%+ pass
  • Self-Paced Training
  • Apply payments to Instructor-led course
  • Online, DVD, Offline formats
  • Mentored Training
  • Live Instructor Support
  • Comprehensive Case Files
  • Lab Book, Text Book, Pre-Study Book
  • CCFE Exam Fees Included
  • Complex Labs and case files
  • Group Activities and Live Case Labs
  • In-Person Learning environment
  • Training at Training Facility
  • Live Online Laptop Shipped To You
  • LAPTOP IS YOURS TO KEEP

Live OnlineExperience our full boot camp from home

View Instant Pricing BelowOr see a full list of boot camp dates here

  • Expert Computer Forensics Instructor
  • Lab Demonstrations and examples
  • Exam Review
  • Highest quality content. 90%+ pass
  • Self-Paced Training (optional add-on)
  • Apply payments to ILT course (NA)
  • Online, DVD, other (optional add-on)
  • Mentored Training
  • Live Instructor Support
  • Comprehensive Case Files
  • Lab Book, Text Book, Pre-Study Book
  • CCFE Exam Fees Included
  • Complex Labs & case files
  • Group Activities and Live Case Labs
  • In-Person Learning environment
  • Training at Training Facility
  • Live Online Laptop Shipped To You
  • YOU KEEP THE HACKING LAPTOP

Course Overview

If you are a .Net or Java software developer looking to secure your applications from the latest threats, or an Information Security Professional looking to learn how to assess software security, the Application Security Training Online course is a giant leap forward to attaining these in-demand application security skill sets.

The Application Security Training Online course is the online version of InfoSec Institute's Instructor-Led Application Security Training class. Many online or CBT training offerings are simply a recording of a talking head. InfoSec Institute's Application Security Online includes a shipment of software that is loaded onto your computer, which allows you to complete over 30 hours of hands-on lab exercises! Not only do you get high quality instruction from an expert instructor, with InfoSec Institute, you also perform hands-on lab exercises that allow for real knowledge transfer.

Some of the benefits of Application Security Training Online are:

  • Attend the exact same course as the Instructor-Led Application Security Training course in an online format.
  • Interact with over 54 online modules, taught by an expert instructor at your leisure via the Internet at home or work.
  • We ship you a number of Virtual Machines (VMs) pre-installed with hundreds of tools and scripts that you use to perform over 32 hands-on lab exercises. These are the same lab exercises as the instructor-led class.
  • Get online guidance while you perform the lab exercises, the labs have been recorded from start to finish.
  • Prepare yourself for the CASS certification from home. When you purchase Penetration Testing Online, you automatically get an exam voucher for the CASS exam.

 

Application Security Training Online is a unique offering in the security industry. While some security courses may brush over application security, or cover the security of small-scale “demo” applications, InfoSec Institute concentrates on the latest application security attacks against modern, enterprise, applications. 

Required Prerequisites:

  • Workstation with Windows Vista, 7 or XP, 4GB RAM, 30 GB free hard drive space
  • Windows 2000 Server installation disk
  • Access to High Speed Internet connection

 

 

 

This hands-on course teaches you:

1. The fundamentals of modern Application Security on both .Net and Java platforms
2. Application security threats and assessment/attack techniques
3. The latest threats to Web Services and AJAX-enabled applications

 

 

 

  • Top Instructors
  • 30 Hours of Hands On Labs
  • Hundreds of tools loaded onto VMs for you
"I was blown away by the instructor's knowledge and expertise. ... Would recommend to anyone thinking about being a pen tester"

Connie Brown

United States Air Force

Web App Topics and Labs:

InfoSec Institute has only the highest quality instructors, with deep background in Application Security. Our instructors are actively involved in the Application Security community. They have authored several books on the subject, spoken at various industry conferences, and are considered subject matter experts. 


  • Secure Programming Throughout the Application Development Lifecycle
  • Confronting Flawed Input Data
  • Implementation Best Practices
  • Source code analysis scanning software
  • Code Origin Access Control Methods
  • Network Transmission Security with the JSSE API/SSL
  • WS Security, XKMS, and WS-I Basic security profile
  • SecureXML Libraries
  • Privilege Escalation Opportunities
  • Race Conditions
  • Cross Site Scripting Injection
  • .Net Secure Remoting
  • Windows Forms Security
  • SQL Server: Exploitation and Defense
  • Fault Injection and Fuzzing
  • Java security managers, policy files, and JAAS
  • ASP.NET Security
  • XOR, Base64 and Garbage Data Obfuscation
  • Securely Maintaining Session State – Best Practices
  • Session fixation
  • Advanced SQL Injection
  • Oracle PL/SQL Injection
  • .Net Security tokens, XML signature, XML canonicalization, and XML encryption
  • .Net WS-Trust and WS-SecureConversation
  • Error Control Verbosity Abuse

 


See what our students are saying

  • Mario Rodrguez

    U.S. ARMY

    "you have set the standard"

    "You have set the standard for instruction. Innovative and teaches you how to think through a problem with sound logic."


    Find out more
  • "...well worth the money"

    "It was fantastic! I learned more then i could have ever dreamed! even if I dont pass the exam the knowledge i got was well worth the money I spent!! and i had a good time leanring as well!"


    Find out more
  • "nice to have a dedicated training laptop provided"

    "I got a lot out of the real world scenarios presented in class. Jeremy is very knowledgeable in the field of penetration testing. Would definitely take classes again if he is the instructor. The course books are a great reference, and it was nice to have a dedicated training laptop provided by Infosec and not have to bring my own and waste time installing programs during class"


    Find out more
  • Rummy Dabgotra

    MTS Allstream

    "invaluable to my career"

    "Dan is an excellent instructor and incredibly knowledgeable. Great presenter and very helpful. The course was very intense but well structured. The hours were long but it really allows you to get your head wrapped around it. Slide notes were very good as well as the lab pre-info. The labs tied well into the course. The content and knowledge gained will be invaluable to my career."


    Find out more

Pricing

Call (866)-471-0059 or fill out this short form for current pricing

 

  • Gain the in-demand career skills of an Application Security Professional.

    Learn application security fundamentals, hands on application assessment
    techniques and methodologies used by the top application security professionals.

  • Develop a custom process for code assessments across many languages and platforms.
    More than interesting theories and lecture, get your hands dirty in online labs.

 

YOU ALSO GET

  • Access to 50+ online modules totaling 54 hours of training.
  • Multiple VMs (Virtual Machines) pre-loaded with hundreds of tools and scripts so you can do over 31 hands-on lab exercises from home or work.
  • InfoSec's Custom Application Security Enterprise Suite.
  • Certified Web Application Pen Testert exam fees.
  • Lecture, Lab Exercise and Text books
OUR STUDENTS SAY:
InfoSec Institute has an excellent instructor and this is the best IT security class I have ever taken. His knowledge and method of teaching are unsurpassed.