Lab Description

This lab places you in the role of a security analyst assigned to evaluate the security of a web application hosted on a target machine. You will use Zed Attack Proxy (ZAP) and Wapiti to detect vulnerabilities such as SQL injection, XSS, and directory browsing. Through configuring HTTPS interception and analyzing HTTP requests and responses, you’ll gain deeper insights into how web application traffic works. Both automated and manual scanning techniques will be used to simulate attacker behavior. The process culminates in compiling a report of discovered threats, helping improve the security posture of the application by recommending appropriate mitigations.

What You Will Learn

Program Curriculum

Join over 1 Million professionals from the most renowned Companies in the world!

certificate

Choose the Pro Plan That Fits Your Learning Journey

Invest in your future with flexible Pro subscription plans. Whether you're starting your cybersecurity journey or expanding your expertise, choose the membership duration that works for you and gain access to our complete learning platform.

Monthly Plans
Annual Plans
Save 20% with our annual plans!

Pro

Ideal for continuous learning, offering extensive resources with 900+ courses and diverse Learning Paths to enhance your skills.

$ 599.00
Billed annually or $69.00 billed monthly

What is included

  • Access to 900+ Premium Short Courses
  • 70+ Structured Learning Paths
  • Validation of Completion with All Courses and Learning Paths
  • New Courses Added Every Month
Early Access Offer

Pro +

Experience immersive learning with Practice Labs and CTF Challenges for comprehensive skill-building.

$ 699.00
Billed annually or $79.00 billed monthly

Everything in Pro and

  • 500+ Practice Labs with Guided Instructions
  • 400+ CTF Challenges with Detailed Walkthroughs
  • New Practice Labs and Challenges Added Every Month

Related Practice Labs

1 of 50