W3af ninja training class in NYC



NopSec and Bonsai Information Security presents "w3af Ninja Training Class"


June 17th / 18th 2009

NopSec, Inc. SOC

155 Water St., Brooklyn, NY 11201 USA


For Information and Registration visit:

http://tinyurl.com/w3afnyctraining



Introduction

Internet security threats are migrating from pure network-level attacks to web server and web application attacks. The web application itself has become the new security perimeter, and is wide open to the new generation of attacks. That's the reason why is very important for IT security staff to have cutting- edge knowledge of web application security vulnerability testing techniques and tools.

Overview

w3af is a Web Application Attack and Audit Framework. The project goal is to create a framework to find and exploit web application vulnerabilities that are both easy to use and extend. The project started back in 2006 with only one developer but it is now developed and supported by a team of Web Application Hackers and Open Source experts around the world. The w3af ninja training course is focused on manual and automated discovery and exploitation of web application vulnerabilities using w3af. During this course you'll also learn how to write your own exploits and customized plugins in order to achieve your goals during a web application penetration test.

This course is an intense hands-on class in which you won't stop learning for a minute. In each practice we'll focus on a particular type of web application vulnerability which will be analyzed and understood manually and then it's detection and exploitation is automated using w3af.

All around the training interesting plugin code snippets will be subject to analysis and modification, which will give you great understanding of the framework and will also give you the means to automate your future web application penetration tests.



Relevant Pages

  • [Full-disclosure] W3af ninja training class in NYC
    ... NopSec and Bonsai Information Security presents "w3af Ninja Training ... Internet security threats are migrating from pure network-level attacks ... security vulnerability testing techniques and tools. ...
    (Full-Disclosure)
  • SecurityFocus Microsoft Newsletter #165
    ... Tenable Security ... distribute, manage, and communicate vulnerability and intrusion detection ... Microsoft Internet Explorer MHTML Forced File Execution Vuln... ...
    (Focus-Microsoft)
  • SecurityFocus Microsoft Newsletter #174
    ... This issue sponsored by: Tenable Network Security ... the worlds only 100% passive vulnerability ... MICROSOFT VULNERABILITY SUMMARY ... Novell Netware Enterprise Web Server Multiple Vulnerabilitie... ...
    (Focus-Microsoft)
  • [NT] Cumulative Security Update for Internet Explorer (MS04-038)
    ... The following security advisory is sent to the securiteam mailing list, and can be found at the SecuriTeam web site: http://www.securiteam.com ... Get your security news from a reliable source. ... CSS Heap Memory Corruption Vulnerability, ... Microsoft Windows NT Server 4.0 Terminal Server Edition Service Pack 6 ...
    (Securiteam)
  • SecurityFocus Microsoft Newsletter #171
    ... Better Management for Network Security ... GoodTech Telnet Server Remote Denial Of Service Vulnerabilit... ... ASPApp PortalAPP Remote User Database Access Vulnerability ...
    (Focus-Microsoft)

Quantcast