Packt

Working with CVEs for Ethical Hacking & Bug Bounties

La Fête du Travail commence avec plus de 70 $ d'économies sur Coursera Plus. Bénéficiez de 40 % de réduction pendant 3 mois.

Ce cours n'est pas disponible en Français (France)

Nous sommes actuellement en train de le traduire dans plus de langues.
Packt

Working with CVEs for Ethical Hacking & Bug Bounties

Inclus avec Coursera PlusEn savoir plus

Obtenez un aperçu d'un sujet et apprenez les principes fondamentaux.
niveau Intermédiaire

Expérience recommandée

1 semaine à compléter
à 10 heures par semaine
Planning flexible
Apprenez à votre propre rythme
Obtenez un aperçu d'un sujet et apprenez les principes fondamentaux.
niveau Intermédiaire

Expérience recommandée

1 semaine à compléter
à 10 heures par semaine
Planning flexible
Apprenez à votre propre rythme

Ce que vous apprendrez

  • Understand CVE terminology and how vulnerabilities are cataloged

  • Gain proficiency in using Shodan, Burp Suite, and other key tools

  • Conduct live vulnerability hunts across multiple platforms

Compétences que vous acquerrez

  • Catégorie : Vulnerability Assessments
  • Catégorie : Cyber Threat Intelligence
  • Catégorie : Webhook Security
  • Catégorie : Cyber Security Strategy
  • Catégorie : Vulnerability Scanning
  • Catégorie : Vulnerability Management
  • Catégorie : Ethical Standards And Conduct
  • Catégorie : Proxy Servers
  • Catégorie : Jira (Software)
  • Catégorie : Penetration Testing
  • Catégorie : Cyber Security Assessment
  • Catégorie : Cyber Threat Hunting
  • Catégorie : Threat Detection
  • Catégorie : Exploitation techniques
  • Catégorie : Security Testing
  • Catégorie : Cybersecurity

Détails à connaître

Certificat partageable

Ajouter à votre profil LinkedIn

Récemment mis à jour !

août 2026

Évaluations

22 devoirs

Enseigné en Anglais

Découvrez comment les employés des entreprises prestigieuses maîtrisent des compétences recherchées

 logos de Petrobras, TATA, Danone, Capgemini, P&G et L'Oreal

Il y a 23 modules dans ce cours

This module introduces learners to the course structure and essential policies, ensuring they understand the rules and expectations before diving into the content.

Inclus

1 vidéo

This module provides an overview of CVEs, including their definition, naming conventions, and practical applications in cybersecurity. Learners will gain a foundational understanding of how vulnerabilities are identified and cataloged, as well as how to use CVE resources effectively.

Inclus

2 vidéos1 devoir

This module provides an in-depth exploration of the Bugcrowd Vulnerability Rating Taxonomy (VRT), the CIA Triad, and CVSS scoring. Learners will gain the skills to assess and prioritize vulnerabilities effectively in real-world bug bounty scenarios. The content also covers the limitations of VRT and how to address them strategically.

Inclus

12 vidéos1 devoir

This module provides an in-depth exploration of Shodan, covering its graphical interface, report generation capabilities, and methods for analyzing images and exploits. Learners will gain practical skills in using Shodan for vulnerability research and security assessments.

Inclus

5 vidéos1 devoir

This module covers the use of Censys for subdomain enumeration, including manual and automated techniques, API key management, and result filtering. Learners will gain practical skills for reconnaissance and security research in bug bounty and penetration testing scenarios.

Inclus

2 vidéos1 devoir

This module explores the practical application of Google Dorks for identifying website vulnerabilities, creating original search queries, and contributing to security research. Learners will gain hands-on skills in using search operators and understanding the role of Google Dorks in ethical hacking.

Inclus

2 vidéos1 devoir

This module explores the use of Crt.sh for certificate transparency, covering techniques to detect SSL/TLS issues, identify wildcard certificates, and automate monitoring processes. Learners will gain hands-on skills in reviewing certificate logs and applying command-line tools for security analysis.

Inclus

3 vidéos1 devoir

This module explores how vulnerability severity is assessed on the HackerOne platform, focusing on the criteria used to categorize issues and the role of program owners in the process. Learners will gain an understanding of the practical implications of severity classification in bug bounty programs.

Inclus

1 vidéo1 devoir

This module provides hands-on guidance on configuring Burp Suite Proxy for web traffic analysis and interception, essential for penetration testing. Learners will gain foundational knowledge of proxy functionality, interception techniques, and browser configuration for secure testing environments.

Inclus

1 vidéo1 devoir

This module focuses on identifying and analyzing security vulnerabilities in Microweber systems through live hunting and reviewing key concepts related to database disclosure exploits. Learners will gain hands-on experience in detecting and understanding potential security risks.

Inclus

1 vidéo1 devoir

This module explores techniques for identifying and mitigating vulnerabilities in Jira, including sensitive data exposure, user enumeration, and CVE exploitation. Learners will gain hands-on experience with live hunting methods and automation strategies to detect and address security risks.

Inclus

3 vidéos1 devoir

This module explores how to identify and analyze SAP vulnerabilities, including authentication bypass and code execution flaws. Learners will gain hands-on experience with live hunting techniques and compare real-world CVEs. The content emphasizes understanding exploitation methods and their security implications.

Inclus

3 vidéos1 devoir

This module explores the process of identifying and understanding CVE-2028512, a reflected cross-site scripting vulnerability in Icewarp webmail. It covers techniques for live hunting and responsible disclosure practices, equipping learners with skills to assess and respond to real-world security threats.

Inclus

1 vidéo1 devoir

This module provides an in-depth look at identifying and analyzing BigIP CVEs through practical techniques like live hunting and automation. Learners will gain skills in detecting security flaws, understanding mitigation strategies, and applying best practices for bug bounty reporting.

Inclus

2 vidéos1 devoir

This module explores how to identify and analyze Cisco vulnerabilities related to file read and deletion exploits. Learners will gain hands-on experience with live hunting techniques and understand the impact of these vulnerabilities on system security. It also covers detection methods and automation strategies to mitigate risks.

Inclus

2 vidéos1 devoir

This module teaches learners how to use visual reconnaissance techniques with screenshots to detect vulnerabilities in web applications. It covers the importance of visual analysis in security assessments and provides practical insights into optimizing the process for bug bounty and security research.

Inclus

1 vidéo1 devoir

This module provides an in-depth overview of various bug bounty platforms, including their roadmaps, participation processes, and reporting procedures. Learners will gain insights into how to begin their journey in bug bounty programs and understand the key requirements for successful participation.

Inclus

7 vidéos1 devoir

This module provides an in-depth look at public vulnerability reporting platforms, focusing on how to access, monitor, and learn from real-world security issues. Learners will gain practical skills in using tools like HackerOne and Bugcrowd to understand vulnerability disclosure and researcher collaboration.

Inclus

2 vidéos1 devoir

This module guides learners through setting up a free VPS environment specifically tailored for bug bounty activities. It covers essential steps for configuring and optimizing a reliable VPS, as well as secure methods for transmitting data and deploying automated cloud infrastructure.

Inclus

3 vidéos1 devoir

This module teaches learners how to set up and configure alerts and notifications for their bug bounty VPS. It covers the use of real-time tools, webhooks, and Slack integration to monitor new vulnerabilities efficiently. Learners will gain practical skills to streamline their bug bounty automation workflows.

Inclus

1 vidéo1 devoir

This module explores how to investigate and assess Kubernetes vulnerabilities, with a focus on real-world examples like the Apple Hall of Fame vulnerability. Learners will gain skills in identifying, analyzing, and mitigating security risks associated with containerized environments.

Inclus

1 vidéo1 devoir

This module focuses on identifying and analyzing Citrix vulnerabilities, specifically path traversal issues. Learners will gain hands-on experience in detecting and understanding the exploits associated with these security flaws. The content emphasizes practical skills in live hunting and assessing the impact of such vulnerabilities.

Inclus

1 vidéo1 devoir

This module explores how to detect and investigate Apache-related remote code execution (RCE) vulnerabilities. Learners will gain hands-on experience in analyzing real-world security threats and understanding the implications of such vulnerabilities. The content focuses on practical techniques for live threat hunting in Apache environments.

Inclus

1 vidéo1 devoir

Instructeur

Packt - Course Instructors
Packt
2 240 Cours658 407 apprenants

Offert par

Packt

Pour quelles raisons les étudiants sur Coursera nous choisissent-ils pour leur carrière ?

Felipe M.

Étudiant(e) depuis 2018
’Pouvoir suivre des cours à mon rythme à été une expérience extraordinaire. Je peux apprendre chaque fois que mon emploi du temps me le permet et en fonction de mon humeur.’

Jennifer J.

Étudiant(e) depuis 2020
’J'ai directement appliqué les concepts et les compétences que j'ai appris de mes cours à un nouveau projet passionnant au travail.’

Larry W.

Étudiant(e) depuis 2021
’Lorsque j'ai besoin de cours sur des sujets que mon université ne propose pas, Coursera est l'un des meilleurs endroits où se rendre.’

Chaitanya A.

’Apprendre, ce n'est pas seulement s'améliorer dans son travail : c'est bien plus que cela. Coursera me permet d'apprendre sans limites.’

Foire Aux Questions