SlideShare a Scribd company logo
1 of 24
WEB SECURITY
https://www.tonex.com/training-courses/web-security/
C Y B E R S E C U R I T Y F O U N D A T I O N
WEB SECURITY TRAINING & COURSES
https://www.tonex.com/training-courses/web-security/
Web Security Training
The web security training helps you to learn the advanced web
browsing vulnerabilities from system penetration to identity theft as
well as protection solutions to ensure the web security.
TONEX as a leader in security industry for more than 15 years is now
announcing the web security training which helps you to secure the
communication between a client and server as well as integrity of
data in web.
TONEX has served the industry and academia with high quality
conferences, seminars, workshops, and exclusively designed courses
in system engineering area and is pleased to inform professional
fellows about the recent comprehensive training on web security.
This course covers variety of topics in web security and computer
network security areas such as: HTTP protocol, cryptography in web,
SSL protocol, different kinds of web attacks, browser security issues,
cookies, web bugs and spywares. Moreover, you will learn about the
windows system security, Linux/UNIX system security, common web
servers such as Apache and IIS, access control in web, web firewalls,
computer network and a lot of hands on experience and trainings for
web security applications.
https://www.tonex.com/training-courses/web-security/
Web Security Training
By taking the web security training by TONEX, you will learn about
main features of HTTP protocol, header fields in HTTP, URL encoding
and HTTP security issues as the most basic knowledge needed for
web security.
Learn about the encryption and decryption in web, secret codes,
public/private key cryptography, digital signatures, and hash
algorithms in web security training.
Learn the principles of secure socket layer (SSL), SSL architecture, and
different protocols offered by SSL such as: handshake protocol, record
protocol, alert protocol and change cipher spec protocol.
By taking this course you will also be introduced to the most common
types of web attacks such as: SQL injection, HTML codes, and web
page hijacking. Moreover, you will be trained to identify the browser
attacks and prepare for the proper browser security principles such as
URL filtering, cookie blocking or endpoint protection methods.
https://www.tonex.com/training-courses/web-security/
Web Security Training
If you are an IT professional who specialize in web security, you will
benefit the presentations, examples, case studies, discussions, and
individual activities upon the completion of the web security training
and will prepare yourself for your career.
Learn about the security of windows systems, access tokens, user SID,
access checking and windows permissions. Moreover, you will be
introduced to the UNIX/Linux server security, different types of
attacks to the servers such as DNS amplifications, heart-bleed
vulnerability or user account compromising.
You will also learn about web servers such as: Apache and IIS, various
access controls in web with their control threats and categories,
packet filtering, web firewall, security RSA, TCP, wireless multi-hop
networks, computer network layers and routing loops.
Finally, the web security training will introduce a set of labs,
workshops and group activities of real world case studies in order to
prepare you to tackle all the related web security challenges.
https://www.tonex.com/training-courses/web-security/
Web Security Training
Audience
The web security training is a 2-day course designed for:
• IT professionals of information security and web security area.
• Executives and managers of cyber security and web security area
• Information technology professionals, web engineers, security
analysts, policy analysts
• Security operation personnel, network administrators, system
integrators and security consultants
• Security traders to understand the software security of web
system, mobile devices, or other devices.
• Investors and contractors who plan to make investments in
system engineering industry.
• Technicians, operators, and maintenance personnel who are or
will be working on cyber security projects
• Managers, accountants, and executives of cyber security industry.
https://www.tonex.com/training-courses/web-security/
Web Security Training
Training Objectives
Upon completion of the web security training course, the attendees
are able to:
• Understand the information security related to World Wide Web.
• Understand the security issues of web application servers.
• Explain the main concepts of web attacks and web vulnerabilities
such as malicious emails, web scripts, web bugs and spywares.
• Explore deeply into security issues and develop solutions.
• Investigate secure communication between client and server by
encrypting data streams such as SSL.
• Explore the browser vulnerabilities and protection of the system
against web vulnerabilities.
https://www.tonex.com/training-courses/web-security/
Web Security Training
Training Outline
The web security training course consists of the following lessons,
which can be revised and tailored to the client’s need:
• Overview of Information Security
• HTTP Protocol
• Basic Cryptography
• The SSL Protocol
• Web Attacks
• Browser Security
• Cookies, Web Bugs and Spyware
• Windows Systems Security
• UNIX/Linux Server Security
• Apache and IIS Web Servers
• Various Access Controls
• Packet Filtering and Web Firewall
• Introduction to Computer Networks
• Hands On, Workshops and, Group Activities
• Sample Workshops and Labs for Web Security Training
https://www.tonex.com/training-courses/web-security/
Web Security Training
Overview of Information Security
• History of Information Security
• Multiplexed Information and Computing Service (MULTICS)
• Definition of Security
• Key Information Security concepts
• Critical Characteristics of Information
• Standards for Information Systems Security
• Components of an Information System
• Balancing Information Security and Access
• Approaches to Information Security Implementation
• The System Development Life Cycle
• Security Professionals and Organization
• Communities of Interest
• Information Security; Art of Science?
https://www.tonex.com/training-courses/web-security/
Web Security Training
HTTP Protocol
• Overview of Hypertext Transfer Protocol (HTTP)
• Basic Features of HTTP
• Architecture of HTTP
• HTTP Version
• Parameters of HTTP
• Messages in HTTP
• Requests in HTTP
• Responses in HTTP
• HTTP Methods
• HTTP Status Codes
• HTTP Headers Field
• HTTP Cashing
• URL Encoding
• HTTP Security
https://www.tonex.com/training-courses/web-security/
Web Security Training
Basic Cryptography:
• Cryptography Introduction
• Encryption
• Cipher Text
• Decryption
• Plaintext
• Computational Difficulty in Cryptography
• Secret Codes
• Breaking an Encryption Scheme
• Types of Cryptographic Functions
• Secret Key Cryptography
• Public Key Cryptography
• Digital Signatures
• Digital Certificates
• Hash Algorithms
https://www.tonex.com/training-courses/web-security/
Web Security Training
The SSL Protocol
• Secure Socket Layer (SSL) Definition
• SSL Architecture
• SSL Handshake Protocol
• SSL Record Protocol
• SSL Alert Protocol
• SSL Change Cipher Spec Protocol
• SSL Sessions and Connections
https://www.tonex.com/training-courses/web-security/
Web Security Training
Web Attacks
• Infected Web
• Complexity of Modern Web
• SQL Injection Attacks
• Malicious Advertisement
• Cross-site Scripting (XSS)
• Phishing
• Malicious HTML Code
• Software Vulnerabilities
• Web Attack Toolkits
• Obfuscation of the Actual Attacks
• Hijacking Web Pages
• Fake Codec
• Malicious Peer-to-peer Files
• Fake Scanner Web Page
• Blog Spam
Web Attacks
https://www.tonex.com/training-courses/web-security/
Web Security Training
Browser Security
• How does a Web Browser Work?
• Why Browser Security?
• Types of Browser Threats
• Buffer Overflow
• Root Exploit
• Phishing & Cookies
• Document Object Model
• Cross-Site Scripting
• Cache History Attacks
• Security versus Usability
• Features of a Secure Browser
• Security Implementations and Browsers
• Blocking Third Party Cookies
• Same-Origin Policy
• Security Compartmentalization
• Update control
• Plug-in and Extension Control
• Prevention of Malicious Scripts
• Content Inspection, URL Filtering
• Endpoint Protection, Web Server Protection
https://www.tonex.com/training-courses/web-security/
Web Security Training
Cookies, Web Bugs and Spyware
• Overview of Spyware
• Online Attackers
• Spying by a Trusted Insider
• Data Gathered by Spyware
• Operation of Spyware
• Impact of Spyware
• Common Types of Spyware
• Browser Session Hijacking
• Browser Helper Objects
• Cookies and Web Bugs
• Autonomous Spyware
• Spyware Security Tips
• Introduction to Cookies
• ASCI Strings
• Session & Persistent Cookies
• Version 0 Cookies & Version 1 Cookies
• Cookie Privacy Risks
• Security Risks Related to Cookies
• Session Hijacking
• Definition & effect of Web Bugs on server
• Email Web Bugs & Wiretapping
https://www.tonex.com/training-courses/web-security/
Web Security Training
Windows Systems Security
• Introduction to Windows Security
• Windows Protection System
• Protection State
• Enforcement Mechanism
• Transitions
• Windows Subjects
• Access Tokens
• User SID
• Windows Services-Domains
• User Authentication
• Windows Objects
• Active Directory
• Windows Permissions
• Access Checking
• Access Control Entries
• Access Checking with ACE
• Windows Vs Linux
https://www.tonex.com/training-courses/web-security/
Web Security Training
UNIX/Linux Server Security
• Operating System (OS) Management
• Common Vulnerabilities
• Compromising User Accounts
• DNS Amplification Attacks
• NTP Reflection Attacks
• Heartbleed Vulnerability
• Secure Remote Access Protocol (SSH vs Telnet)
• Secure File Transfer Protocols (SCP/SFTP vs FTP)
• Secure Protocols for Accessing Web Servers (HTTP vs HTTPS)
• Remote File Systems
• Iptables
• TCP Wrapper
• SELinux
• UMAK
• SUID and SGID
• Cron
• Syslog
• Patches
https://www.tonex.com/training-courses/web-security/
Web Security Training
Apache and IIS Web Servers
• Introduction to Web Servers
• Uniform Resource Identifier (URI)
• HTTPS Request Types
• System Architecture
• Client-Slide Scripting Versus Server-Slide Scripting
• Accessing Web Servers
• Microsoft Internet Information Services (IIS)
• Apache Web Server
• Requesting Documents
• XHTML
• NET
• Perl
• PHP
• Python
• Web Resources
https://www.tonex.com/training-courses/web-security/
Web Security Training
Various Access Controls
• Definitions and Key Concepts
• Access Control Categories and Types
• Access Control Threats
• Access to the System
• Access to Data
• Intrusion Prevention and Detection System
• Access Control Assurance
Packet Filtering and Web Firewall
• Basic Packet Filtering
• Stateful Packet Filtering
• Matching Algorithms
• Common Configuration Errors
• Direction Based Filtering
• Advanced Firewall Management
• Firewall Analysis
https://www.tonex.com/training-courses/web-security/
Web Security Training
Introduction to Computer Networks
• Internet, HTTP, DNS, P2P
• Socket, Ports
• Congestion Control, Flow Control, TCP
• Routing, Basic Graphs, IP
• DSL Versus Cable, Aloha, CSMA, TDMA, Token, 802.11
• Security RSA
• Cellular Networks, Mobile Networks, Satellite Networks
• Wireless Multi-hop Networks
• Internetwork
• Layers
• Data Rate, Throughput and Bandwidth
• Packets
• Datagram Forwarding
• Topology
• Routing Loops
• LAN and Ethernet
• DNS
• IP
• Firewall
• IETF and OSI
• Epilog
https://www.tonex.com/training-courses/web-security/
Web Security Training
Hands On, Workshops and, Group Activities
• Labs
• Workshops
• Group Activities
Sample Workshops and Labs for Web Security Training
• Tutorial and Hands-on for different possible web attacks
• IP Hijacking Case Study
• Eavesdropping HTTP passwords Case Study
• Command Line Injection Attack Experiment
• Using SQL Injection Vulnerabilities to Gain Access to Website
• Using the Stolen Cookie for Identity Attack
• ModSecurity Application to Detect Threats
WEB SECURITY
https://www.tonex.com/training-courses/web-security/
C Y B E R S E C U R I T Y F O U N D A T I O N
WEB SECURITY TRAINING & COURSES
VISIT TONEX.COM
• Tonex has been documenting the cybercrime evolution for 25 years
when it first began training organizations on how to better deflect
contemporary cyberattack.
• Our Cybersecurity training courses and seminars are continuously
updated so that they reflect the latest industry trends, and they are
also created by specialists in the industry who are familiar with the
market climate.
• So far we have helped over 20,000 developers in over 50 countries
stay up to date with cutting edge information from our training
categories.
• We’re Different because we take into account your workforce’s
special learning requirements. In other words, we personalize our
training – Tonex has never been and will never be a “one size fits all”
learning program.
• Ratings tabulated from student feedback post-course evaluations
show an amazing 98 percent satisfaction score.
Contact Tonex for more information, questions, comments.
Why Tonex?
TONEX.COM
TONEX SINCE 1993
https://www.tonex.com/

More Related Content

What's hot

Web Security and Network Security
Web Security and Network SecurityWeb Security and Network Security
Web Security and Network Security
crussell79
 

What's hot (20)

Web Security and Network Security
Web Security and Network SecurityWeb Security and Network Security
Web Security and Network Security
 
Internet security
Internet securityInternet security
Internet security
 
Internet security
Internet securityInternet security
Internet security
 
Cyber security[1118]
Cyber security[1118]Cyber security[1118]
Cyber security[1118]
 
Introduction to Information Security
Introduction to Information SecurityIntroduction to Information Security
Introduction to Information Security
 
Basic Internet Security
Basic Internet SecurityBasic Internet Security
Basic Internet Security
 
Cybersecurity Awareness Training Presentation v1.0
Cybersecurity Awareness Training Presentation v1.0Cybersecurity Awareness Training Presentation v1.0
Cybersecurity Awareness Training Presentation v1.0
 
Cyber Security Awareness
Cyber Security AwarenessCyber Security Awareness
Cyber Security Awareness
 
Cybersecurity Awareness Training
Cybersecurity Awareness TrainingCybersecurity Awareness Training
Cybersecurity Awareness Training
 
Cyber Security and Cyber Awareness
Cyber Security and Cyber Awareness Cyber Security and Cyber Awareness
Cyber Security and Cyber Awareness
 
Information Security Engineering
Information Security EngineeringInformation Security Engineering
Information Security Engineering
 
Cyber security awareness presentation nepal
Cyber security awareness presentation nepalCyber security awareness presentation nepal
Cyber security awareness presentation nepal
 
Web Security
Web SecurityWeb Security
Web Security
 
Ransomware- What you need to know to Safeguard your Data
Ransomware- What you need to know to Safeguard your DataRansomware- What you need to know to Safeguard your Data
Ransomware- What you need to know to Safeguard your Data
 
Dos and Don'ts of Internet Security
Dos and Don'ts of Internet SecurityDos and Don'ts of Internet Security
Dos and Don'ts of Internet Security
 
General Awareness On Cyber Security
General Awareness On Cyber SecurityGeneral Awareness On Cyber Security
General Awareness On Cyber Security
 
Web Security: A Primer for Developers
Web Security: A Primer for DevelopersWeb Security: A Primer for Developers
Web Security: A Primer for Developers
 
Security Awareness Training
Security Awareness TrainingSecurity Awareness Training
Security Awareness Training
 
Introduction to Web Server Security
Introduction to Web Server SecurityIntroduction to Web Server Security
Introduction to Web Server Security
 
Webinar: Ransomware Checklist – Are You Ready For Ransomware’s Next Wave?
Webinar: Ransomware Checklist – Are You Ready For Ransomware’s Next Wave?Webinar: Ransomware Checklist – Are You Ready For Ransomware’s Next Wave?
Webinar: Ransomware Checklist – Are You Ready For Ransomware’s Next Wave?
 

Similar to Web Security Training : Tonex Training

Software Security Training
Software Security TrainingSoftware Security Training
Software Security Training
Bryan Len
 
Ethical Hacking Training ( White hat, Corporate Security Professionals) : Ton...
Ethical Hacking Training ( White hat, Corporate Security Professionals) : Ton...Ethical Hacking Training ( White hat, Corporate Security Professionals) : Ton...
Ethical Hacking Training ( White hat, Corporate Security Professionals) : Ton...
Bryan Len
 
Mobile Device Security Training
Mobile Device Security TrainingMobile Device Security Training
Mobile Device Security Training
Bryan Len
 
Software application security training course | Tonex Training
Software application security training course | Tonex TrainingSoftware application security training course | Tonex Training
Software application security training course | Tonex Training
Bryan Len
 
Computer Network Architecture Training
Computer Network Architecture TrainingComputer Network Architecture Training
Computer Network Architecture Training
Tonex
 
Cloud Security Training Crash Course
Cloud Security Training Crash CourseCloud Security Training Crash Course
Cloud Security Training Crash Course
Bryan Len
 

Similar to Web Security Training : Tonex Training (20)

Software Security Training
Software Security TrainingSoftware Security Training
Software Security Training
 
Ethical Hacking Training ( White hat, Corporate Security Professionals) : Ton...
Ethical Hacking Training ( White hat, Corporate Security Professionals) : Ton...Ethical Hacking Training ( White hat, Corporate Security Professionals) : Ton...
Ethical Hacking Training ( White hat, Corporate Security Professionals) : Ton...
 
Security - ch5.ppt
Security - ch5.pptSecurity - ch5.ppt
Security - ch5.ppt
 
Mobile Device Security Training
Mobile Device Security TrainingMobile Device Security Training
Mobile Device Security Training
 
Certied Ethical Hacker
Certied Ethical HackerCertied Ethical Hacker
Certied Ethical Hacker
 
Software application security training course | Tonex Training
Software application security training course | Tonex TrainingSoftware application security training course | Tonex Training
Software application security training course | Tonex Training
 
edCeh brochure
edCeh brochureedCeh brochure
edCeh brochure
 
Computer Network Architecture Training
Computer Network Architecture TrainingComputer Network Architecture Training
Computer Network Architecture Training
 
Cloud Security Training Crash Course
Cloud Security Training Crash CourseCloud Security Training Crash Course
Cloud Security Training Crash Course
 
What Are The Best Ways To Secure Web Application .pdf
What Are The Best Ways To Secure Web Application .pdfWhat Are The Best Ways To Secure Web Application .pdf
What Are The Best Ways To Secure Web Application .pdf
 
Starting your Career in Information Security
Starting your Career in Information SecurityStarting your Career in Information Security
Starting your Career in Information Security
 
Web Security Overview
Web Security OverviewWeb Security Overview
Web Security Overview
 
CompTIA_Security_plus_SY0-701_course_content.pdf
CompTIA_Security_plus_SY0-701_course_content.pdfCompTIA_Security_plus_SY0-701_course_content.pdf
CompTIA_Security_plus_SY0-701_course_content.pdf
 
CompTIA_Security_plus_SY0-701_course_content.pdf
CompTIA_Security_plus_SY0-701_course_content.pdfCompTIA_Security_plus_SY0-701_course_content.pdf
CompTIA_Security_plus_SY0-701_course_content.pdf
 
CompTIA Security+ (Plus) Certification Training Course
CompTIA Security+ (Plus) Certification Training CourseCompTIA Security+ (Plus) Certification Training Course
CompTIA Security+ (Plus) Certification Training Course
 
𝐋𝐚𝐭𝐞𝐬𝐭 𝐂𝐨𝐦𝐩𝐓𝐈𝐀 𝐒𝐞𝐜𝐮𝐫𝐢𝐭𝐲+ 𝐒𝐘𝟎-𝟕𝟎𝟏 𝐄𝐱𝐚𝐦
𝐋𝐚𝐭𝐞𝐬𝐭 𝐂𝐨𝐦𝐩𝐓𝐈𝐀 𝐒𝐞𝐜𝐮𝐫𝐢𝐭𝐲+ 𝐒𝐘𝟎-𝟕𝟎𝟏 𝐄𝐱𝐚𝐦𝐋𝐚𝐭𝐞𝐬𝐭 𝐂𝐨𝐦𝐩𝐓𝐈𝐀 𝐒𝐞𝐜𝐮𝐫𝐢𝐭𝐲+ 𝐒𝐘𝟎-𝟕𝟎𝟏 𝐄𝐱𝐚𝐦
𝐋𝐚𝐭𝐞𝐬𝐭 𝐂𝐨𝐦𝐩𝐓𝐈𝐀 𝐒𝐞𝐜𝐮𝐫𝐢𝐭𝐲+ 𝐒𝐘𝟎-𝟕𝟎𝟏 𝐄𝐱𝐚𝐦
 
𝐋𝐚𝐭𝐞𝐬𝐭 𝐂𝐨𝐦𝐩𝐓𝐈𝐀 𝐒𝐞𝐜𝐮𝐫𝐢𝐭𝐲+ 𝐒𝐘𝟎-𝟕𝟎𝟏 𝐄𝐱𝐚𝐦
𝐋𝐚𝐭𝐞𝐬𝐭 𝐂𝐨𝐦𝐩𝐓𝐈𝐀 𝐒𝐞𝐜𝐮𝐫𝐢𝐭𝐲+ 𝐒𝐘𝟎-𝟕𝟎𝟏 𝐄𝐱𝐚𝐦𝐋𝐚𝐭𝐞𝐬𝐭 𝐂𝐨𝐦𝐩𝐓𝐈𝐀 𝐒𝐞𝐜𝐮𝐫𝐢𝐭𝐲+ 𝐒𝐘𝟎-𝟕𝟎𝟏 𝐄𝐱𝐚𝐦
𝐋𝐚𝐭𝐞𝐬𝐭 𝐂𝐨𝐦𝐩𝐓𝐈𝐀 𝐒𝐞𝐜𝐮𝐫𝐢𝐭𝐲+ 𝐒𝐘𝟎-𝟕𝟎𝟏 𝐄𝐱𝐚𝐦
 
Security+ SY0-701 CERTIFICATION TRAINING.pdf
Security+ SY0-701 CERTIFICATION TRAINING.pdfSecurity+ SY0-701 CERTIFICATION TRAINING.pdf
Security+ SY0-701 CERTIFICATION TRAINING.pdf
 
Training Webinar: Cover your bases - a security webinar
Training Webinar: Cover your bases - a security webinarTraining Webinar: Cover your bases - a security webinar
Training Webinar: Cover your bases - a security webinar
 
All About Network Security & its Essentials.pptx
All About Network Security & its Essentials.pptxAll About Network Security & its Essentials.pptx
All About Network Security & its Essentials.pptx
 

More from Bryan Len

Mastering Root Cause Analysis: Empower Your Team with Tonex's Comprehensive T...
Mastering Root Cause Analysis: Empower Your Team with Tonex's Comprehensive T...Mastering Root Cause Analysis: Empower Your Team with Tonex's Comprehensive T...
Mastering Root Cause Analysis: Empower Your Team with Tonex's Comprehensive T...
Bryan Len
 
Embedded Systems Training Programs
Embedded Systems Training ProgramsEmbedded Systems Training Programs
Embedded Systems Training Programs
Bryan Len
 
Leadership Training For Women - Shaping Leadership Skills in 2023
Leadership Training For Women - Shaping Leadership Skills in 2023Leadership Training For Women - Shaping Leadership Skills in 2023
Leadership Training For Women - Shaping Leadership Skills in 2023
Bryan Len
 
IPV6 (Internet Protocol version 6), IPv6 Certification Training Programs by T...
IPV6 (Internet Protocol version 6), IPv6 Certification Training Programs by T...IPV6 (Internet Protocol version 6), IPv6 Certification Training Programs by T...
IPV6 (Internet Protocol version 6), IPv6 Certification Training Programs by T...
Bryan Len
 
MBSE Online Courses (Top 5), Learn how MBSE Ensures Cost-Effective Engineeri...
MBSE Online Courses (Top 5), Learn how MBSE Ensures Cost-Effective  Engineeri...MBSE Online Courses (Top 5), Learn how MBSE Ensures Cost-Effective  Engineeri...
MBSE Online Courses (Top 5), Learn how MBSE Ensures Cost-Effective Engineeri...
Bryan Len
 

More from Bryan Len (20)

Mastering Root Cause Analysis: Empower Your Team with Tonex's Comprehensive T...
Mastering Root Cause Analysis: Empower Your Team with Tonex's Comprehensive T...Mastering Root Cause Analysis: Empower Your Team with Tonex's Comprehensive T...
Mastering Root Cause Analysis: Empower Your Team with Tonex's Comprehensive T...
 
Embedded Systems Training Programs
Embedded Systems Training ProgramsEmbedded Systems Training Programs
Embedded Systems Training Programs
 
OSINT (Open Source Intelligence) Training by Tonex
OSINT (Open Source Intelligence) Training by TonexOSINT (Open Source Intelligence) Training by Tonex
OSINT (Open Source Intelligence) Training by Tonex
 
Digital Twins Training for Solar Plant
Digital Twins Training for Solar PlantDigital Twins Training for Solar Plant
Digital Twins Training for Solar Plant
 
Leadership Training For Women - Shaping Leadership Skills in 2023
Leadership Training For Women - Shaping Leadership Skills in 2023Leadership Training For Women - Shaping Leadership Skills in 2023
Leadership Training For Women - Shaping Leadership Skills in 2023
 
MBSE SYSML Courses By Tonex
MBSE SYSML Courses By TonexMBSE SYSML Courses By Tonex
MBSE SYSML Courses By Tonex
 
Common Industrial Protocol (CIP) Training
Common Industrial Protocol  (CIP) TrainingCommon Industrial Protocol  (CIP) Training
Common Industrial Protocol (CIP) Training
 
SysML MBSE Training Courses, Seminars & Consulting Services by Tonex
SysML MBSE Training Courses, Seminars & Consulting Services by TonexSysML MBSE Training Courses, Seminars & Consulting Services by Tonex
SysML MBSE Training Courses, Seminars & Consulting Services by Tonex
 
Automotive Engineering Courses 2023
Automotive Engineering Courses 2023Automotive Engineering Courses 2023
Automotive Engineering Courses 2023
 
IPv6 Systems Engineering Training Course
IPv6 Systems Engineering Training CourseIPv6 Systems Engineering Training Course
IPv6 Systems Engineering Training Course
 
IPV6-Desktop-Support - Tonex Training
IPV6-Desktop-Support - Tonex TrainingIPV6-Desktop-Support - Tonex Training
IPV6-Desktop-Support - Tonex Training
 
IPV6 (Internet Protocol version 6), IPv6 Certification Training Programs by T...
IPV6 (Internet Protocol version 6), IPv6 Certification Training Programs by T...IPV6 (Internet Protocol version 6), IPv6 Certification Training Programs by T...
IPV6 (Internet Protocol version 6), IPv6 Certification Training Programs by T...
 
5G and IOT Systems Engineering Training Courses, Seminars and Consulting Serv...
5G and IOT Systems Engineering Training Courses, Seminars and Consulting Serv...5G and IOT Systems Engineering Training Courses, Seminars and Consulting Serv...
5G and IOT Systems Engineering Training Courses, Seminars and Consulting Serv...
 
MBSE Online Courses (Top 5), Learn how MBSE Ensures Cost-Effective Engineeri...
MBSE Online Courses (Top 5), Learn how MBSE Ensures Cost-Effective  Engineeri...MBSE Online Courses (Top 5), Learn how MBSE Ensures Cost-Effective  Engineeri...
MBSE Online Courses (Top 5), Learn how MBSE Ensures Cost-Effective Engineeri...
 
Automotive Cybersecurity Training Course, Seminars and Consulting Services by...
Automotive Cybersecurity Training Course, Seminars and Consulting Services by...Automotive Cybersecurity Training Course, Seminars and Consulting Services by...
Automotive Cybersecurity Training Course, Seminars and Consulting Services by...
 
Reliability Engineering Training Course, Seminars and Consulting Services by ...
Reliability Engineering Training Course, Seminars and Consulting Services by ...Reliability Engineering Training Course, Seminars and Consulting Services by ...
Reliability Engineering Training Course, Seminars and Consulting Services by ...
 
Microgrids Certification Training, The Solution for Powering The Future
Microgrids Certification Training, The Solution for Powering The FutureMicrogrids Certification Training, The Solution for Powering The Future
Microgrids Certification Training, The Solution for Powering The Future
 
Biofuels Training, Understand BioFuels Types and Industry, Tonex Training Course
Biofuels Training, Understand BioFuels Types and Industry, Tonex Training CourseBiofuels Training, Understand BioFuels Types and Industry, Tonex Training Course
Biofuels Training, Understand BioFuels Types and Industry, Tonex Training Course
 
Clean Energy Workshop, Learn how to Net-Zero Emissions
Clean Energy Workshop, Learn how to Net-Zero EmissionsClean Energy Workshop, Learn how to Net-Zero Emissions
Clean Energy Workshop, Learn how to Net-Zero Emissions
 
The “Cyber Kill Chain”, Cybersecurity Mini MBA Program Online
The “Cyber Kill Chain”, Cybersecurity Mini MBA Program OnlineThe “Cyber Kill Chain”, Cybersecurity Mini MBA Program Online
The “Cyber Kill Chain”, Cybersecurity Mini MBA Program Online
 

Recently uploaded

一比一原版澳大利亚迪肯大学毕业证如何办理
一比一原版澳大利亚迪肯大学毕业证如何办理一比一原版澳大利亚迪肯大学毕业证如何办理
一比一原版澳大利亚迪肯大学毕业证如何办理
SS
 
一比一原版犹他大学毕业证如何办理
一比一原版犹他大学毕业证如何办理一比一原版犹他大学毕业证如何办理
一比一原版犹他大学毕业证如何办理
F
 
Abortion Clinic in Germiston +27791653574 WhatsApp Abortion Clinic Services i...
Abortion Clinic in Germiston +27791653574 WhatsApp Abortion Clinic Services i...Abortion Clinic in Germiston +27791653574 WhatsApp Abortion Clinic Services i...
Abortion Clinic in Germiston +27791653574 WhatsApp Abortion Clinic Services i...
mikehavy0
 
一比一原版(Dundee毕业证书)英国爱丁堡龙比亚大学毕业证如何办理
一比一原版(Dundee毕业证书)英国爱丁堡龙比亚大学毕业证如何办理一比一原版(Dundee毕业证书)英国爱丁堡龙比亚大学毕业证如何办理
一比一原版(Dundee毕业证书)英国爱丁堡龙比亚大学毕业证如何办理
AS
 
一比一原版(毕业证书)新加坡南洋理工学院毕业证原件一模一样
一比一原版(毕业证书)新加坡南洋理工学院毕业证原件一模一样一比一原版(毕业证书)新加坡南洋理工学院毕业证原件一模一样
一比一原版(毕业证书)新加坡南洋理工学院毕业证原件一模一样
AS
 
一比一原版田纳西大学毕业证如何办理
一比一原版田纳西大学毕业证如何办理一比一原版田纳西大学毕业证如何办理
一比一原版田纳西大学毕业证如何办理
F
 
一比一原版(USYD毕业证书)悉尼大学毕业证原件一模一样
一比一原版(USYD毕业证书)悉尼大学毕业证原件一模一样一比一原版(USYD毕业证书)悉尼大学毕业证原件一模一样
一比一原版(USYD毕业证书)悉尼大学毕业证原件一模一样
ayvbos
 
如何办理(UCLA毕业证)加州大学洛杉矶分校毕业证成绩单本科硕士学位证留信学历认证
如何办理(UCLA毕业证)加州大学洛杉矶分校毕业证成绩单本科硕士学位证留信学历认证如何办理(UCLA毕业证)加州大学洛杉矶分校毕业证成绩单本科硕士学位证留信学历认证
如何办理(UCLA毕业证)加州大学洛杉矶分校毕业证成绩单本科硕士学位证留信学历认证
hfkmxufye
 
一比一原版(Offer)康考迪亚大学毕业证学位证靠谱定制
一比一原版(Offer)康考迪亚大学毕业证学位证靠谱定制一比一原版(Offer)康考迪亚大学毕业证学位证靠谱定制
一比一原版(Offer)康考迪亚大学毕业证学位证靠谱定制
pxcywzqs
 
一比一原版(NYU毕业证书)美国纽约大学毕业证学位证书
一比一原版(NYU毕业证书)美国纽约大学毕业证学位证书一比一原版(NYU毕业证书)美国纽约大学毕业证学位证书
一比一原版(NYU毕业证书)美国纽约大学毕业证学位证书
c6eb683559b3
 
一比一原版贝德福特大学毕业证学位证书
一比一原版贝德福特大学毕业证学位证书一比一原版贝德福特大学毕业证学位证书
一比一原版贝德福特大学毕业证学位证书
F
 

Recently uploaded (20)

一比一原版澳大利亚迪肯大学毕业证如何办理
一比一原版澳大利亚迪肯大学毕业证如何办理一比一原版澳大利亚迪肯大学毕业证如何办理
一比一原版澳大利亚迪肯大学毕业证如何办理
 
APNIC Updates presented by Paul Wilson at CaribNOG 27
APNIC Updates presented by Paul Wilson at  CaribNOG 27APNIC Updates presented by Paul Wilson at  CaribNOG 27
APNIC Updates presented by Paul Wilson at CaribNOG 27
 
一比一原版犹他大学毕业证如何办理
一比一原版犹他大学毕业证如何办理一比一原版犹他大学毕业证如何办理
一比一原版犹他大学毕业证如何办理
 
Abortion Clinic in Germiston +27791653574 WhatsApp Abortion Clinic Services i...
Abortion Clinic in Germiston +27791653574 WhatsApp Abortion Clinic Services i...Abortion Clinic in Germiston +27791653574 WhatsApp Abortion Clinic Services i...
Abortion Clinic in Germiston +27791653574 WhatsApp Abortion Clinic Services i...
 
一比一原版(Dundee毕业证书)英国爱丁堡龙比亚大学毕业证如何办理
一比一原版(Dundee毕业证书)英国爱丁堡龙比亚大学毕业证如何办理一比一原版(Dundee毕业证书)英国爱丁堡龙比亚大学毕业证如何办理
一比一原版(Dundee毕业证书)英国爱丁堡龙比亚大学毕业证如何办理
 
20240509 QFM015 Engineering Leadership Reading List April 2024.pdf
20240509 QFM015 Engineering Leadership Reading List April 2024.pdf20240509 QFM015 Engineering Leadership Reading List April 2024.pdf
20240509 QFM015 Engineering Leadership Reading List April 2024.pdf
 
20240508 QFM014 Elixir Reading List April 2024.pdf
20240508 QFM014 Elixir Reading List April 2024.pdf20240508 QFM014 Elixir Reading List April 2024.pdf
20240508 QFM014 Elixir Reading List April 2024.pdf
 
A LOOK INTO NETWORK TECHNOLOGIES MAINLY WAN.pptx
A LOOK INTO NETWORK TECHNOLOGIES MAINLY WAN.pptxA LOOK INTO NETWORK TECHNOLOGIES MAINLY WAN.pptx
A LOOK INTO NETWORK TECHNOLOGIES MAINLY WAN.pptx
 
20240510 QFM016 Irresponsible AI Reading List April 2024.pdf
20240510 QFM016 Irresponsible AI Reading List April 2024.pdf20240510 QFM016 Irresponsible AI Reading List April 2024.pdf
20240510 QFM016 Irresponsible AI Reading List April 2024.pdf
 
20240507 QFM013 Machine Intelligence Reading List April 2024.pdf
20240507 QFM013 Machine Intelligence Reading List April 2024.pdf20240507 QFM013 Machine Intelligence Reading List April 2024.pdf
20240507 QFM013 Machine Intelligence Reading List April 2024.pdf
 
Loker Pemandu Lagu LC Semarang 085746015303
Loker Pemandu Lagu LC Semarang 085746015303Loker Pemandu Lagu LC Semarang 085746015303
Loker Pemandu Lagu LC Semarang 085746015303
 
一比一原版(毕业证书)新加坡南洋理工学院毕业证原件一模一样
一比一原版(毕业证书)新加坡南洋理工学院毕业证原件一模一样一比一原版(毕业证书)新加坡南洋理工学院毕业证原件一模一样
一比一原版(毕业证书)新加坡南洋理工学院毕业证原件一模一样
 
一比一原版田纳西大学毕业证如何办理
一比一原版田纳西大学毕业证如何办理一比一原版田纳西大学毕业证如何办理
一比一原版田纳西大学毕业证如何办理
 
一比一原版(USYD毕业证书)悉尼大学毕业证原件一模一样
一比一原版(USYD毕业证书)悉尼大学毕业证原件一模一样一比一原版(USYD毕业证书)悉尼大学毕业证原件一模一样
一比一原版(USYD毕业证书)悉尼大学毕业证原件一模一样
 
如何办理(UCLA毕业证)加州大学洛杉矶分校毕业证成绩单本科硕士学位证留信学历认证
如何办理(UCLA毕业证)加州大学洛杉矶分校毕业证成绩单本科硕士学位证留信学历认证如何办理(UCLA毕业证)加州大学洛杉矶分校毕业证成绩单本科硕士学位证留信学历认证
如何办理(UCLA毕业证)加州大学洛杉矶分校毕业证成绩单本科硕士学位证留信学历认证
 
一比一原版(Offer)康考迪亚大学毕业证学位证靠谱定制
一比一原版(Offer)康考迪亚大学毕业证学位证靠谱定制一比一原版(Offer)康考迪亚大学毕业证学位证靠谱定制
一比一原版(Offer)康考迪亚大学毕业证学位证靠谱定制
 
APNIC Policy Roundup presented by Sunny Chendi at TWNOG 5.0
APNIC Policy Roundup presented by Sunny Chendi at TWNOG 5.0APNIC Policy Roundup presented by Sunny Chendi at TWNOG 5.0
APNIC Policy Roundup presented by Sunny Chendi at TWNOG 5.0
 
一比一原版(NYU毕业证书)美国纽约大学毕业证学位证书
一比一原版(NYU毕业证书)美国纽约大学毕业证学位证书一比一原版(NYU毕业证书)美国纽约大学毕业证学位证书
一比一原版(NYU毕业证书)美国纽约大学毕业证学位证书
 
一比一原版贝德福特大学毕业证学位证书
一比一原版贝德福特大学毕业证学位证书一比一原版贝德福特大学毕业证学位证书
一比一原版贝德福特大学毕业证学位证书
 
APNIC Policy Roundup, presented by Sunny Chendi at the 5th ICANN APAC-TWNIC E...
APNIC Policy Roundup, presented by Sunny Chendi at the 5th ICANN APAC-TWNIC E...APNIC Policy Roundup, presented by Sunny Chendi at the 5th ICANN APAC-TWNIC E...
APNIC Policy Roundup, presented by Sunny Chendi at the 5th ICANN APAC-TWNIC E...
 

Web Security Training : Tonex Training

  • 1. WEB SECURITY https://www.tonex.com/training-courses/web-security/ C Y B E R S E C U R I T Y F O U N D A T I O N WEB SECURITY TRAINING & COURSES
  • 2. https://www.tonex.com/training-courses/web-security/ Web Security Training The web security training helps you to learn the advanced web browsing vulnerabilities from system penetration to identity theft as well as protection solutions to ensure the web security. TONEX as a leader in security industry for more than 15 years is now announcing the web security training which helps you to secure the communication between a client and server as well as integrity of data in web. TONEX has served the industry and academia with high quality conferences, seminars, workshops, and exclusively designed courses in system engineering area and is pleased to inform professional fellows about the recent comprehensive training on web security. This course covers variety of topics in web security and computer network security areas such as: HTTP protocol, cryptography in web, SSL protocol, different kinds of web attacks, browser security issues, cookies, web bugs and spywares. Moreover, you will learn about the windows system security, Linux/UNIX system security, common web servers such as Apache and IIS, access control in web, web firewalls, computer network and a lot of hands on experience and trainings for web security applications.
  • 3. https://www.tonex.com/training-courses/web-security/ Web Security Training By taking the web security training by TONEX, you will learn about main features of HTTP protocol, header fields in HTTP, URL encoding and HTTP security issues as the most basic knowledge needed for web security. Learn about the encryption and decryption in web, secret codes, public/private key cryptography, digital signatures, and hash algorithms in web security training. Learn the principles of secure socket layer (SSL), SSL architecture, and different protocols offered by SSL such as: handshake protocol, record protocol, alert protocol and change cipher spec protocol. By taking this course you will also be introduced to the most common types of web attacks such as: SQL injection, HTML codes, and web page hijacking. Moreover, you will be trained to identify the browser attacks and prepare for the proper browser security principles such as URL filtering, cookie blocking or endpoint protection methods.
  • 4. https://www.tonex.com/training-courses/web-security/ Web Security Training If you are an IT professional who specialize in web security, you will benefit the presentations, examples, case studies, discussions, and individual activities upon the completion of the web security training and will prepare yourself for your career. Learn about the security of windows systems, access tokens, user SID, access checking and windows permissions. Moreover, you will be introduced to the UNIX/Linux server security, different types of attacks to the servers such as DNS amplifications, heart-bleed vulnerability or user account compromising. You will also learn about web servers such as: Apache and IIS, various access controls in web with their control threats and categories, packet filtering, web firewall, security RSA, TCP, wireless multi-hop networks, computer network layers and routing loops. Finally, the web security training will introduce a set of labs, workshops and group activities of real world case studies in order to prepare you to tackle all the related web security challenges.
  • 5. https://www.tonex.com/training-courses/web-security/ Web Security Training Audience The web security training is a 2-day course designed for: • IT professionals of information security and web security area. • Executives and managers of cyber security and web security area • Information technology professionals, web engineers, security analysts, policy analysts • Security operation personnel, network administrators, system integrators and security consultants • Security traders to understand the software security of web system, mobile devices, or other devices. • Investors and contractors who plan to make investments in system engineering industry. • Technicians, operators, and maintenance personnel who are or will be working on cyber security projects • Managers, accountants, and executives of cyber security industry.
  • 6. https://www.tonex.com/training-courses/web-security/ Web Security Training Training Objectives Upon completion of the web security training course, the attendees are able to: • Understand the information security related to World Wide Web. • Understand the security issues of web application servers. • Explain the main concepts of web attacks and web vulnerabilities such as malicious emails, web scripts, web bugs and spywares. • Explore deeply into security issues and develop solutions. • Investigate secure communication between client and server by encrypting data streams such as SSL. • Explore the browser vulnerabilities and protection of the system against web vulnerabilities.
  • 7. https://www.tonex.com/training-courses/web-security/ Web Security Training Training Outline The web security training course consists of the following lessons, which can be revised and tailored to the client’s need: • Overview of Information Security • HTTP Protocol • Basic Cryptography • The SSL Protocol • Web Attacks • Browser Security • Cookies, Web Bugs and Spyware • Windows Systems Security • UNIX/Linux Server Security • Apache and IIS Web Servers • Various Access Controls • Packet Filtering and Web Firewall • Introduction to Computer Networks • Hands On, Workshops and, Group Activities • Sample Workshops and Labs for Web Security Training
  • 8. https://www.tonex.com/training-courses/web-security/ Web Security Training Overview of Information Security • History of Information Security • Multiplexed Information and Computing Service (MULTICS) • Definition of Security • Key Information Security concepts • Critical Characteristics of Information • Standards for Information Systems Security • Components of an Information System • Balancing Information Security and Access • Approaches to Information Security Implementation • The System Development Life Cycle • Security Professionals and Organization • Communities of Interest • Information Security; Art of Science?
  • 9. https://www.tonex.com/training-courses/web-security/ Web Security Training HTTP Protocol • Overview of Hypertext Transfer Protocol (HTTP) • Basic Features of HTTP • Architecture of HTTP • HTTP Version • Parameters of HTTP • Messages in HTTP • Requests in HTTP • Responses in HTTP • HTTP Methods • HTTP Status Codes • HTTP Headers Field • HTTP Cashing • URL Encoding • HTTP Security
  • 10. https://www.tonex.com/training-courses/web-security/ Web Security Training Basic Cryptography: • Cryptography Introduction • Encryption • Cipher Text • Decryption • Plaintext • Computational Difficulty in Cryptography • Secret Codes • Breaking an Encryption Scheme • Types of Cryptographic Functions • Secret Key Cryptography • Public Key Cryptography • Digital Signatures • Digital Certificates • Hash Algorithms
  • 11. https://www.tonex.com/training-courses/web-security/ Web Security Training The SSL Protocol • Secure Socket Layer (SSL) Definition • SSL Architecture • SSL Handshake Protocol • SSL Record Protocol • SSL Alert Protocol • SSL Change Cipher Spec Protocol • SSL Sessions and Connections
  • 12. https://www.tonex.com/training-courses/web-security/ Web Security Training Web Attacks • Infected Web • Complexity of Modern Web • SQL Injection Attacks • Malicious Advertisement • Cross-site Scripting (XSS) • Phishing • Malicious HTML Code • Software Vulnerabilities • Web Attack Toolkits • Obfuscation of the Actual Attacks • Hijacking Web Pages • Fake Codec • Malicious Peer-to-peer Files • Fake Scanner Web Page • Blog Spam Web Attacks
  • 13. https://www.tonex.com/training-courses/web-security/ Web Security Training Browser Security • How does a Web Browser Work? • Why Browser Security? • Types of Browser Threats • Buffer Overflow • Root Exploit • Phishing & Cookies • Document Object Model • Cross-Site Scripting • Cache History Attacks • Security versus Usability • Features of a Secure Browser • Security Implementations and Browsers • Blocking Third Party Cookies • Same-Origin Policy • Security Compartmentalization • Update control • Plug-in and Extension Control • Prevention of Malicious Scripts • Content Inspection, URL Filtering • Endpoint Protection, Web Server Protection
  • 14. https://www.tonex.com/training-courses/web-security/ Web Security Training Cookies, Web Bugs and Spyware • Overview of Spyware • Online Attackers • Spying by a Trusted Insider • Data Gathered by Spyware • Operation of Spyware • Impact of Spyware • Common Types of Spyware • Browser Session Hijacking • Browser Helper Objects • Cookies and Web Bugs • Autonomous Spyware • Spyware Security Tips • Introduction to Cookies • ASCI Strings • Session & Persistent Cookies • Version 0 Cookies & Version 1 Cookies • Cookie Privacy Risks • Security Risks Related to Cookies • Session Hijacking • Definition & effect of Web Bugs on server • Email Web Bugs & Wiretapping
  • 15. https://www.tonex.com/training-courses/web-security/ Web Security Training Windows Systems Security • Introduction to Windows Security • Windows Protection System • Protection State • Enforcement Mechanism • Transitions • Windows Subjects • Access Tokens • User SID • Windows Services-Domains • User Authentication • Windows Objects • Active Directory • Windows Permissions • Access Checking • Access Control Entries • Access Checking with ACE • Windows Vs Linux
  • 16. https://www.tonex.com/training-courses/web-security/ Web Security Training UNIX/Linux Server Security • Operating System (OS) Management • Common Vulnerabilities • Compromising User Accounts • DNS Amplification Attacks • NTP Reflection Attacks • Heartbleed Vulnerability • Secure Remote Access Protocol (SSH vs Telnet) • Secure File Transfer Protocols (SCP/SFTP vs FTP) • Secure Protocols for Accessing Web Servers (HTTP vs HTTPS) • Remote File Systems • Iptables • TCP Wrapper • SELinux • UMAK • SUID and SGID • Cron • Syslog • Patches
  • 17. https://www.tonex.com/training-courses/web-security/ Web Security Training Apache and IIS Web Servers • Introduction to Web Servers • Uniform Resource Identifier (URI) • HTTPS Request Types • System Architecture • Client-Slide Scripting Versus Server-Slide Scripting • Accessing Web Servers • Microsoft Internet Information Services (IIS) • Apache Web Server • Requesting Documents • XHTML • NET • Perl • PHP • Python • Web Resources
  • 18. https://www.tonex.com/training-courses/web-security/ Web Security Training Various Access Controls • Definitions and Key Concepts • Access Control Categories and Types • Access Control Threats • Access to the System • Access to Data • Intrusion Prevention and Detection System • Access Control Assurance Packet Filtering and Web Firewall • Basic Packet Filtering • Stateful Packet Filtering • Matching Algorithms • Common Configuration Errors • Direction Based Filtering • Advanced Firewall Management • Firewall Analysis
  • 19. https://www.tonex.com/training-courses/web-security/ Web Security Training Introduction to Computer Networks • Internet, HTTP, DNS, P2P • Socket, Ports • Congestion Control, Flow Control, TCP • Routing, Basic Graphs, IP • DSL Versus Cable, Aloha, CSMA, TDMA, Token, 802.11 • Security RSA • Cellular Networks, Mobile Networks, Satellite Networks • Wireless Multi-hop Networks • Internetwork • Layers • Data Rate, Throughput and Bandwidth • Packets • Datagram Forwarding • Topology • Routing Loops • LAN and Ethernet • DNS • IP • Firewall • IETF and OSI • Epilog
  • 20. https://www.tonex.com/training-courses/web-security/ Web Security Training Hands On, Workshops and, Group Activities • Labs • Workshops • Group Activities Sample Workshops and Labs for Web Security Training • Tutorial and Hands-on for different possible web attacks • IP Hijacking Case Study • Eavesdropping HTTP passwords Case Study • Command Line Injection Attack Experiment • Using SQL Injection Vulnerabilities to Gain Access to Website • Using the Stolen Cookie for Identity Attack • ModSecurity Application to Detect Threats
  • 21. WEB SECURITY https://www.tonex.com/training-courses/web-security/ C Y B E R S E C U R I T Y F O U N D A T I O N WEB SECURITY TRAINING & COURSES VISIT TONEX.COM
  • 22. • Tonex has been documenting the cybercrime evolution for 25 years when it first began training organizations on how to better deflect contemporary cyberattack. • Our Cybersecurity training courses and seminars are continuously updated so that they reflect the latest industry trends, and they are also created by specialists in the industry who are familiar with the market climate. • So far we have helped over 20,000 developers in over 50 countries stay up to date with cutting edge information from our training categories. • We’re Different because we take into account your workforce’s special learning requirements. In other words, we personalize our training – Tonex has never been and will never be a “one size fits all” learning program. • Ratings tabulated from student feedback post-course evaluations show an amazing 98 percent satisfaction score. Contact Tonex for more information, questions, comments. Why Tonex?