Security

Web Application Security Training

The Web Application Security training focuses on practical knowledge of threats and vulnerabilities typical for web applications.

Duration
6h
Who it's for

Ideal for teams that…

1 Web application developers and testers who want to learn about threats and security best practices
2 Pentesters seeking to deepen their knowledge of attacks on web applications
3 System and network administrators responsible for securing web environments
4 Individuals interested in pursuing a career in cybersecurity
Outcomes after the program

Application and infrastructure security — a workshop for technical teams.

Key web application vulnerabilities such as Path Traversal, LFI/RFI, SQL Injection, Command Injection, XSS, CSRF, Brute-force, cookie manipulation, and session hijacking

The mission and goals of OWASP and the current OWASP Top 10 list

How to use tools for testing web application security

Practical skills in detecting and analyzing vulnerabilities in applications

Best practices for securing web applications against common attacks

Program · 2 modules

What we actually do

M01
Module 1: Introduction to Web Application Security
  • · Mission and goals
  • · OWASP Top 10 overview
M02
Module 2: Key Web Application Vulnerabilities
  • · Path Traversal
  • · Local File Inclusion (LFI)
  • · Remote File Inclusion (RFI)
  • · SQL Injection
  • · Command Injection
  • · Cross-Site Scripting (XSS)
  • · Cookie manipulation and Session Hijacking
  • · Brute-force attacks
  • · Cross-Site Request Forgery (CSRF)
  • · Vulnerabilities in file upload mechanisms
Every module is adapted to your stack and context. The above is a starting point — not a fixed agenda.
How we work

From brief to retro in 30 days.

01

Brief & diagnosis

A call with the team lead + a short survey for participants. We define goals, gap and context.

02

Program customization

We adapt modules, case studies and code examples to your stack. Approval in 5 days.

03

Workshop

Trainer-led sessions, hands-on, code review. Mentor available between sessions too.

04

Retro + report

Outcome report for the team and lead. 30 days of consulting included.

Inquiry

Send a brief. We'll reply within 1 day.

After a short brief we'll prepare a program and a quote. No obligations — it's just a starting point.

Quote within 48h of the brief
First session within 30 days
Pilot before the full decision
VAT invoice, payment in instalments possible

Ochrona antyspamowa (Cloudflare Turnstile) zostanie aktywowana po wpięciu klucza.