Back to Exploiting and Securing Vulnerabilities in Java Applications
University of California, Davis

Exploiting and Securing Vulnerabilities in Java Applications

In this course, we will wear many hats. With our Attacker Hats on, we will exploit Injection issues that allow us to steal data, exploit Cross Site Scripting issues to compromise a users browser, break authentication to gain access to data and functionality reserved for the ‘Admins’, and even exploit vulnerable components to run our code on a remote server and access some secrets. We will also wear Defender Hats. We will dive deep in the code to fix the root cause of these issues and discuss various mitigation strategies. We do this by exploiting WebGoat, an OWASP project designed to teach penetration testing. WebGoat is a deliberately vulnerable application with many flaws and we take aim at fixing some of these issues. Finally we fix these issues in WebGoat and build our patched binaries. Together we will discuss online resources to help us along and find meaningful ways to give back to the larger Application Security community.

Status: Security Strategy
Status: Authentications
IntermediateCourse24 hours

Featured reviews

GS

5.0Reviewed May 25, 2020

Great course, got lot to earn about vulnerabilities and their mitigation strategies

LP

4.0Reviewed Oct 2, 2019

course is good but it seems like, i am learner of this course..There is no one who can review my asginments -_-'

MJ

5.0Reviewed Nov 29, 2020

Exploiting and Securing Vulnerabilities in Java Applications is by far the best course in this series. There are practical examples, live coding, and well organized.

GP

5.0Reviewed Jun 22, 2020

Excellent and really helpful material... By far the best and most interesting course in the series!

VV

5.0Reviewed Jan 29, 2020

Very Good course material. dicover it, try it, fix it method.