Web Application Security

Tijdsduur
Locatie
Op locatie, Online
Startdatum en plaats

Web Application Security

SpiralTrain
Logo van SpiralTrain
Opleiderscore: starstarstarstarstar_half 8,5 SpiralTrain heeft een gemiddelde beoordeling van 8,5 (uit 50 ervaringen)

Tip: meer info over het programma, prijs, en inschrijven? Download de brochure!

Startdata en plaatsen
placeAmsterdam
19 mrt. 2026 tot 20 mrt. 2026
Toon rooster
event 19 maart 2026, 09:30-16:30, Amsterdam, Dag 1
event 20 maart 2026, 09:30-16:30, Amsterdam, Dag 2
placeEindhoven
19 mrt. 2026 tot 20 mrt. 2026
Toon rooster
event 19 maart 2026, 09:30-16:30, Eindhoven, Dag 1
event 20 maart 2026, 09:30-16:30, Eindhoven, Dag 2
placeHouten
19 mrt. 2026 tot 20 mrt. 2026
Toon rooster
event 19 maart 2026, 09:30-16:30, Houten, Dag 1
event 20 maart 2026, 09:30-16:30, Houten, Dag 2
computer Online: Online
19 mrt. 2026 tot 20 mrt. 2026
Toon rooster
event 19 maart 2026, 09:30-16:30, Online, Dag 1
event 20 maart 2026, 09:30-16:30, Online, Dag 2
placeRotterdam
19 mrt. 2026 tot 20 mrt. 2026
Toon rooster
event 19 maart 2026, 09:30-16:30, Rotterdam, Dag 1
event 20 maart 2026, 09:30-16:30, Rotterdam, Dag 2
placeZwolle
19 mrt. 2026 tot 20 mrt. 2026
Toon rooster
event 19 maart 2026, 09:30-16:30, Zwolle, Dag 1
event 20 maart 2026, 09:30-16:30, Zwolle, Dag 2
placeAmsterdam
14 mei. 2026 tot 15 mei. 2026
Toon rooster
event 14 mei 2026, 09:30-16:30, Amsterdam, Dag 1
event 15 mei 2026, 09:30-16:30, Amsterdam, Dag 2
placeEindhoven
14 mei. 2026 tot 15 mei. 2026
Toon rooster
event 14 mei 2026, 09:30-16:30, Eindhoven, Dag 1
event 15 mei 2026, 09:30-16:30, Eindhoven, Dag 2
placeHouten
14 mei. 2026 tot 15 mei. 2026
Toon rooster
event 14 mei 2026, 09:30-16:30, Houten, Dag 1
event 15 mei 2026, 09:30-16:30, Houten, Dag 2
computer Online: Online
14 mei. 2026 tot 15 mei. 2026
Toon rooster
event 14 mei 2026, 09:30-16:30, Online, Dag 1
event 15 mei 2026, 09:30-16:30, Online, Dag 2
placeRotterdam
14 mei. 2026 tot 15 mei. 2026
Toon rooster
event 14 mei 2026, 09:30-16:30, Rotterdam, Dag 1
event 15 mei 2026, 09:30-16:30, Rotterdam, Dag 2
placeZwolle
14 mei. 2026 tot 15 mei. 2026
Toon rooster
event 14 mei 2026, 09:30-16:30, Zwolle, Dag 1
event 15 mei 2026, 09:30-16:30, Zwolle, Dag 2
placeAmsterdam
16 jul. 2026 tot 17 jul. 2026
Toon rooster
event 16 juli 2026, 09:30-16:30, Amsterdam, Dag 1
event 17 juli 2026, 09:30-16:30, Amsterdam, Dag 2
placeEindhoven
16 jul. 2026 tot 17 jul. 2026
Toon rooster
event 16 juli 2026, 09:30-16:30, Eindhoven, Dag 1
event 17 juli 2026, 09:30-16:30, Eindhoven, Dag 2
placeHouten
16 jul. 2026 tot 17 jul. 2026
Toon rooster
event 16 juli 2026, 09:30-16:30, Houten, Dag 1
event 17 juli 2026, 09:30-16:30, Houten, Dag 2
computer Online: Online
16 jul. 2026 tot 17 jul. 2026
Toon rooster
event 16 juli 2026, 09:30-16:30, Online, Dag 1
event 17 juli 2026, 09:30-16:30, Online, Dag 2
placeRotterdam
16 jul. 2026 tot 17 jul. 2026
Toon rooster
event 16 juli 2026, 09:30-16:30, Rotterdam, Dag 1
event 17 juli 2026, 09:30-16:30, Rotterdam, Dag 2
placeZwolle
16 jul. 2026 tot 17 jul. 2026
Toon rooster
event 16 juli 2026, 09:30-16:30, Zwolle, Dag 1
event 17 juli 2026, 09:30-16:30, Zwolle, Dag 2
placeAmsterdam
17 sep. 2026 tot 18 sep. 2026
Toon rooster
event 17 september 2026, 09:30-16:30, Amsterdam, Dag 1
event 18 september 2026, 09:30-16:30, Amsterdam, Dag 2
placeEindhoven
17 sep. 2026 tot 18 sep. 2026
Toon rooster
event 17 september 2026, 09:30-16:30, Eindhoven, Dag 1
event 18 september 2026, 09:30-16:30, Eindhoven, Dag 2
Beschrijving
The course Web Application Security from SpiralTrain discusses the most common security risks in web applications and how they can be tackled.

Security Issues

The course starts with a discussion of the most common security issues as identified in the Open Web Application Security Project (OWASP). This includes the risks of vulnerabilities in libraries, the importance of minimizing the attack surface of an application and vulnerabilities in authentication control.

Cross Site Scripting

In Cross-Site Scripting (XSS) attacks, malicious scripts are injected into a web site. Typically, this happens because the attacker makes JavaScript code run in the browser. XSS attacks are common and can occur …

Lees de volledige beschrijving

Veelgestelde vragen

Er zijn nog geen veelgestelde vragen over dit product. Als je een vraag hebt, neem dan contact op met onze klantenservice.

Nog niet gevonden wat je zocht? Bekijk deze onderwerpen: Web applicatie ontwikkeling, IT Beveiliging / Security, (X)HTML & CSS, JavaScript en MySQL.

The course Web Application Security from SpiralTrain discusses the most common security risks in web applications and how they can be tackled.

Security Issues

The course starts with a discussion of the most common security issues as identified in the Open Web Application Security Project (OWASP). This includes the risks of vulnerabilities in libraries, the importance of minimizing the attack surface of an application and vulnerabilities in authentication control.

Cross Site Scripting

In Cross-Site Scripting (XSS) attacks, malicious scripts are injected into a web site. Typically, this happens because the attacker makes JavaScript code run in the browser. XSS attacks are common and can occur anywhere in the application where user input is not validated.

SQL Injection

Attention is also paid to SQL Injection, where an attacker places malicious code in SQL statements. SQL Injection is usually due to unchecked user input being used to create SQL statements. The consequences of SQL Injection can be serious such as data corruption, data theft or data destruction.

Cross Site Request Forgery

Next up in the course is the discussion of CSRF. Attention is paid to how CSRF executes malicious commands on behalf of a user trusted by the web application. Specially designed image tags or hidden forms are often used for this.

Session Hijacking

And Session Hijacking is on the program of the course as well. With Session Hijacking the attacker manages to obtain a session ID via sniffing techniques or XSS and then maliciously exploit it.

SSL Certificates

Finally the course Web Application Security discusses securing web applications by means of SSL or TLS. An encrypted communication channel then ensures that data can be transported securely and digital certificates provide authentication.

Audience Course Web Application Security

The course Web Application Security is intended for web developers who want to learn how to protect web applications against the many security risks.

Prerequisites Course Web Application Security

Experience in developing web applications is required to participate in this course. Experience with PHP or JavaScript is beneficial for understanding but not required.

Realization Training Web Application Security

The course Web Application Security has a hands-on character. The theory is treated on the basis of presentation slides and is interchanged with practical exercises. The course material is in English. Course times are from 9.30 up and to 16.30.

Certification Course Web Application Security

After successful completion of the training the participants receive an official certificate Web Application Security.

Modules

Module 1 : Intro Security

  • Security Risks
  • Top 1O OWASP Risks
  • Sensitive Data Exposure
  • Broken Authentication
  • Social Engineering
  • Library Vulnerabilities
  • Sensitive Data Exposure
  • Attack Surface
  • Security Patches
  • Under Protected API's
  • Coding for Security

Module 2 : Cross Site Scripting

  • Malicious Code
  • Cookie Theft
  • HTML Entity Encoding
  • XSS Prevention Rules
  • Prevent Untrusted Data
  • Attribute Encoding
  • JavaScript Encoding
  • HTML Encode JSON
  • CSS Encoding
  • URL Encoding
  • Sanitize HTML Markup

Module 3 : SQL Injection

  • SQL Injection Exploits
  • Preventing SQL Injection
  • Avoiding Dynamic Queries
  • Prepared Statements
  • Stored Procedures
  • Allow-List Input Validation
  • Escaping User Input
  • Enforcing Least Privilege
  • Union Injections
  • Database Differences
  • Blind SQL Injection

Module 4 : Cross-Site Request Forgery

  • CSRF Attacks
  • Malicious Requests
  • Stored CSRF Flaws
  • IMG or IFRAME Tags
  • Secret Cookies
  • Only Accept POST
  • Form Tokens
  • URL Rewriting
  • Same Origin Policy
  • Check Referrer Header

Module 5 : Session Hijacking

  • Authentication Handshake
  • Session Cookies
  • Cookie Theft
  • Session Sidejacking
  • Session Fixation
  • Man in the Middle
  • Packet Sniffing
  • Hijack TCP-IP Session
  • Checking IP
  • Session Encryption

Module 6 : SSL Certificates

  • SSL and TLS
  • Public and Private Keys
  • Encryption Methods
  • Asymmetric Encryption
  • Symmetric Encryption
  • Hash Encryption
  • SSL Certificates
  • Root Certificates
  • Wildcard Certificates
  • PKI Infrastructure

Waarom SpiralTrain

SpiralTrain is specialist op het gebied van software development trainingen. Wie bieden zowel trainingen aan voor beginnende programmeurs die zich de basis van talen en tools eigen willen maken als ook trainingen voor ervaren software professionals die zich willen bekwamen in de nieuwste versie van een taal of een framework.

Onze trainingkenmerken zich door :

• Klassikale of online open roostertrainingen en andere trainingsvormen
• Eenduidige en scherpe cursusprijzen, zonder extra kosten
• Veel trainingen met een doorlopende case study
• Trainingen die gericht zijn op certificering

Blijf op de hoogte van nieuwe ervaringen
Er zijn nog geen ervaringen.
Deel je ervaring
Heb je ervaring met deze cursus? Deel je ervaring en help anderen kiezen. Als dank voor de moeite doneert Springest € 1,- aan Stichting Edukans.

Er zijn nog geen veelgestelde vragen over dit product. Als je een vraag hebt, neem dan contact op met onze klantenservice.

Download gratis en vrijblijvend de informatiebrochure

(optioneel)
(optioneel)
(optioneel)
infoEr is een telefoonnummer vereist om deze informatieaanvraag in behandeling te nemen. (optioneel)
(optioneel)
(optioneel)
(optioneel)

Heb je nog vragen?

(optioneel)
We slaan je gegevens op om je via e-mail en evt. telefoon verder te helpen.
Meer info vind je in ons privacybeleid.