• Learn web application security fundamentals using Kali Linux to find and exploit XSS, CSRF, SQLi, SSRF, XXE, CORS, SSTI, and more
  • Earn the OffSec Web Assessor (OSWA) certification upon passing the exam
  • ">

    WEB-200: Web Attacks with Kali Linux (OSWA)

    • Learn web application security fundamentals using Kali L...

      4.50/5 Average Rating
      0 Learners
      Industry Recognized
      Certification Body Offensive Security
      Delivery Profice
    Course CodeOSWA
    DurationSelf Paced
    Deliveryself paced

    About This Course

    • Learn web application security fundamentals using Kali Linux to find and exploit XSS, CSRF, SQLi, SSRF, XXE, CORS, SSTI, and more
    • Earn the OffSec Web Assessor (OSWA) certification upon passing the exam

    Course Syllabus

    Gain hands-on experience with industry-standard tools used by web application penetration testers

    Introduction, Discovery, Exploitation and Case Study Learn how attackers inject malicious code into web pages to hijack user sessions, steal sensitive data, or deface websites

    Discover how attackers trick authenticated users in web applications and learn how you can identify and exploit CSRF vulnerabilities

    Misconfigurations Understand how to identify and fix CORS misconfigurations to keep your web applications safe

    Discover the techniques that attackers use to steal sensitive information related to a web application’s database structure and how to stop them

    Exploit vulnerabilities in web applications through SQL injections and learn techniques to prevent and mitigate SQL injection attacks

    Learn how to identify and exploit directory traversal vulnerabilities and how you can prevent attackers from accessing restricted areas in your web servers

    Learn how attackers user manipulate XML processors to exploit input vulnerabilities, how to secure your XML parsers, and to prevent XXE vulnerabilities in your web applications

    Learn how to identify and exploit SSTI vulnerabilities and how you can protect your web applications from server-side template injections

    Understand different SSRF attack vectors and how to implement countermeasures against them

    Learn how attackers take advantage of command injection vulnerabilities and the potential impact on your system’s integrity. Practice identifying, exploiting, and mitigating command injection vulnerabilities

    Learn how to handle object references in a secure manner to prevent attackers from accessing private data or performing unauthorized actions

    Combine and expand different web application attack and assessment techniques you’ve learned throughout the course

    Course Packages

    Self Paced Learning - 90 Days Access

    Self Paced Learning - Access for 365 days

    All You Need to Know

    The WEB-200 course is ideal for:

    • Security professionals seeking to enhance their web application security testing skills
    • Those with knowledge of web development technologies and familiarity with Linux systems

    While there are no formal prerequisites, it’s strongly recommended that you have a basic understanding of:

    • Web development technologies (HTML, CSS, JavaScript)
    • Networking Fundamentals
    • Linux operating system basics

    Why Choose Profice?

    Official Partner

    Authorized Training Partner delivering official certified curriculum

    Expert Instructors

    Certified professionals with 10+ years of real-world experience

    Hands-on Labs

    Real-world projects and 24/7 lab environment access

    95% Pass Rate

    Industry-leading certification exam success rate

    Lifetime Support

    Ongoing mentorship and community access after course completion

    Job Assistance

    Dedicated placement support with 500+ hiring partners

    Official Training Partner

    Profice is an official training partner delivering globally recognized certifications.