Course Overview

The internet is mostly web applications and most web applications are connected to a database. These databases store everything from usernames and passwords, to credit card numbers, social security numbers, and tons of other sensitive or useful information. In many cases, the ability to compromise a database will soon lead to a much greater system or organization compromise.  

This class is going to cover the basics of how databases work, identifying databases, hacking SQL database,s and more modern NoSQL databases. We are going to cover what to do once you hack a database. Additionally, we will be discussing ways to protect your own applications from these attacks as we progress through the course. 

What You Will Learn

  • A structured approach to database testing and exploitation
  • A solid understanding of SQL and NoSQL syntax and operation
  • Level-up your existing tool knowledge by getting more out of the ones that you know about and learning new ones
  • Skills to recording findings as you conduct your testing
  • Techniques and methods to help prevent database misconfigurations and common attacks

Program Curriculum

  • Lab Setup
  • $7 Million Cybersecurity Scholarship by EC-Council

  • Introduction to Databases
  • Database Management Demo
  • Chapter 2 Lab
  • Chapter 2 Quiz

  • Difference Between SQL and NoSQL Databases
  • Chapter 3 Quiz

  • Introduction to SQL Injection
  • Database Reconnaissance and Port Scanning
  • Chapter 4 Lab
  • Chapter 4 Quiz

  • Exploiting Databases for Fun and Profit - Part 1
  • Exploiting Databases for Fun and Profit - Part 2
  • Exploiting Databases for Fun and Profit - Part 3
  • Exploiting Databases for Fun and Profit - Part 4
  • Chapter 5 Lab
  • Chapter 5 Quiz

  • Modifying Stored Data to Gain Account Access
  • From Injection to Shell
  • Leveraging Dumped Data
  • Chapter 6 Lab
  • Chapter 6 Quiz

  • Database Vulnerability and Misconfiguration Mitigation Techniques
  • Chapter 7 Quiz

Course Conclusion

Load more modules

Instructor

Skylar Simmons

Skylar Simmons is a U.S. Army veteran with over 10 years of security experience supporting various types of organizations, including, government, financial sector, and Fortune 500 companies. He holds a Bachelor’s of Science degree in Cyber Security from University of Maryland University College, along with OSCP, CISSP, and numerous other security and IT certifications.

Join over 1 Million professionals from the most renowned Companies in the world!

certificate

Empower Your Learning with Our Flexible Plans

Invest in your future with our flexible subscription plans. Whether you're just starting out or looking to enhance your expertise, there's a plan tailored to meet your needs. Gain access to in-demand skills and courses for your continuous learning needs.

Monthly Plans
Annual Plans
Save 20% with our annual plans!

Pro

Ideal for continuous learning, offering extensive resources with 600+ courses and diverse Learning Paths to enhance your skills.

$ 499.00
Billed annually or $69.00 billed monthly

What is included

  • 700+ Premium Short Courses
  • 50+ Structured Learning Paths
  • Validation of Completion with all courses and learning paths
  • New Courses added every month

Pro + With Virtual Labs

Experience immersive learning with Practice Labs, CTF Challenges, and exclusive EC-Council certifications for comprehensive skill-building.

$ 699.00
Billed annually or $79.00 billed monthly

Everything in Pro and

  • 800+ Practice Lab exercises with guided instructions
  • 150+ CTF Challenges with detailed walkthroughs
  • New Practice Labs and Challenges added every month
  • 3 Official EC-Council Essentials Certifications¹ (retails at $897!)
    Exclusive Bonus with Annual Plans

¹This plan includes Digital Forensics Essentials (DFE), Ethical Hacking Essentials (EHE), and Network Defense Essentials (NDE) certifications. No other EC-Council certifications are included.

Related Courses

1 of 8