WEBVTT

0:00:09.880000 --> 0:00:14.840000
 Hello everyone and welcome to the service
 side attacks course overview.

0:00:14.840000 --> 0:00:18.840000
 Now before we you know get started with
 the course I would like to give

0:00:18.840000 --> 0:00:23.940000
 you a lay of the land an overview if
 you will of what will be covering

0:00:23.940000 --> 0:00:27.400000
 in this course so that you can set
 your expectations right now.

0:00:27.400000 --> 0:00:31.000000
 So we're going to take a look at some
 of the key or major topics that

0:00:31.000000 --> 0:00:37.300000
 will be covering as well as a bit of
 an in-depth you know closer view

0:00:37.300000 --> 0:00:43.760000
 at some of the specifics you know regarding
 what will be covering so just

0:00:43.760000 --> 0:00:48.300000
 giving you a bit of a heads up as to what
 to expect and how we'll be covering

0:00:48.300000 --> 0:00:51.760000
 things or how we'll be going
 through specific topics.

0:00:51.760000 --> 0:00:57.200000
 We'll also be taking a look at the
 prerequisites you know that I would

0:00:57.200000 --> 0:01:00.960000
 highly recommend you possess before
 getting started with this particular

0:01:00.960000 --> 0:01:05.200000
 course. So let's get some of the
 formalities out of the way.

0:01:05.200000 --> 0:01:09.620000
 So who am I my name is Alexis Ahmed
 and I'm going to be an instructor

0:01:09.620000 --> 0:01:11.060000
 for this course.

0:01:11.060000 --> 0:01:15.720000
 I'm the offensive security or red
 team instructor here at INE.

0:01:15.720000 --> 0:01:21.140000
 I'm also the red team lead or senior
 pentester at Hack Exploit and again

0:01:21.140000 --> 0:01:25.180000
 as I've mentioned previously I've had quite
 a bit of experience in performing

0:01:25.180000 --> 0:01:29.840000
 pen tests more specifically web application
 penetration tests in the real

0:01:29.840000 --> 0:01:35.200000
 world. So that's a little bit about
 who I am and what qualifies me to

0:01:35.200000 --> 0:01:41.040000
 be you know teaching you this this particular
 topic or you know instructing

0:01:41.040000 --> 0:01:42.940000
 you in this in this particular course.

0:01:42.940000 --> 0:01:48.260000
 So now let's take a look at some of
 the key concepts will be you know

0:01:48.260000 --> 0:01:51.000000
 that will be featured in this course.

0:01:51.000000 --> 0:01:57.380000
 So this is if you will sort of a high
 level overview of the outline.

0:01:57.380000 --> 0:02:01.300000
 So it'll pretty much just
 outline the key topics.

0:02:01.300000 --> 0:02:05.660000
 So to begin with you know we're going to
 be covering the modern web application

0:02:05.660000 --> 0:02:11.160000
 architecture. This is very important because
 in order for you to to understand

0:02:11.160000 --> 0:02:15.780000
 server side attacks or what separates
 a server side attack from let's

0:02:15.780000 --> 0:02:21.060000
 say attacks in the presentation layer
 or you know attacks targeted towards

0:02:21.060000 --> 0:02:27.380000
 APIs you actually need to understand
 how modern web applications are built

0:02:27.380000 --> 0:02:30.880000
 from the perspective of the architecture
 as well as the different types

0:02:30.880000 --> 0:02:33.740000
 of architecture models that are used.

0:02:33.740000 --> 0:02:38.700000
 So that's what that particular topic
 or that's what we'll be dealing with

0:02:38.700000 --> 0:02:44.180000
 there. We then have the next major
 or key concept which is server side

0:02:44.180000 --> 0:02:45.700000
 request forgery.

0:02:45.700000 --> 0:02:48.860000
 So you know we're going to get an intro
 to server side request forgery

0:02:48.860000 --> 0:02:53.140000
 understand how it works or what causes
 the vulnerability what is possible

0:02:53.140000 --> 0:02:57.540000
 or what can be achieved you know by
 successfully or through successfully

0:02:57.540000 --> 0:03:01.720000
 exploiting a server side request forgery
 attack and then we're going to

0:03:01.720000 --> 0:03:06.860000
 take a look at an advanced demonstration
 practical demonstration of chaining

0:03:06.860000 --> 0:03:12.000000
 vulnerabilities that you know involve
 exploiting an SSRF vulnerability

0:03:12.000000 --> 0:03:18.620000
 as part of the larger attack chain just
 to give you a realistic view or

0:03:18.620000 --> 0:03:23.020000
 you know tacit understanding of what
 these vulnerabilities look like in

0:03:23.020000 --> 0:03:27.080000
 the real world and then finally we're
 going to have insecure deserialization

0:03:27.080000 --> 0:03:32.100000
 so we're going to understand what serialization
 is before we you know

0:03:32.100000 --> 0:03:36.580000
 we actually get into deserialization
 so we'll cover both you know at a

0:03:36.580000 --> 0:03:44.900000
 theoretical level serialization and deserialization
 understand what serialization

0:03:44.900000 --> 0:03:50.000000
 is used for what deserialization looks
 like and then of course insecure

0:03:50.000000 --> 0:03:57.140000
 deserialization so I'll speak to the
 you know to the specifics as to what

0:03:57.140000 --> 0:04:00.760000
 we'll cover when we'll be exploring
 insecure deserialization but for now

0:04:00.760000 --> 0:04:06.040000
 these are the key concepts so you know
 major topics if you will I've sort

0:04:06.040000 --> 0:04:11.100000
 of broken down broken this down a little
 bit more here so you know as

0:04:11.100000 --> 0:04:15.280000
 I mentioned modern web application architecture
 models we'll be exploring

0:04:15.280000 --> 0:04:20.380000
 again at a high level the other types of
 server side vulnerabilities including

0:04:20.380000 --> 0:04:25.040000
 you know the key ones that we'll be
 covering in this course namely SSRF

0:04:25.040000 --> 0:04:30.440000
 and insecure deserialization but you're
 also going to get an understanding

0:04:30.440000 --> 0:04:37.380000
 of some of the other types of vulnerabilities
 found on you know the the

0:04:37.380000 --> 0:04:41.140000
 server side layer or you know server
 side if that makes sense and then

0:04:41.140000 --> 0:04:44.840000
 of course server side request forgery
 I already mentioned what we'll be

0:04:44.840000 --> 0:04:51.900000
 covering there insecure deserialization and
 then the under insecure deserialization

0:04:51.900000 --> 0:04:58.040000
 will be taking a look at you know identifying
 and exploiting deserialization

0:04:58.040000 --> 0:05:05.900000
 in Java PHP and .NET framework so quite
 a we're going to cover that quite

0:05:05.900000 --> 0:05:12.520000
 with quite a bit of depth so that's
 really the scope of what we'll be

0:05:12.520000 --> 0:05:16.140000
 covering hopefully this gives you an
 idea as to what to expect it's really

0:05:16.140000 --> 0:05:19.600000
 very simple of course it'll all start
 to make sense as you go through

0:05:19.600000 --> 0:05:25.060000
 the first few sections especially the
 first section that's to that deals

0:05:25.060000 --> 0:05:29.200000
 with you know the modern web application
 architecture as you'll get an

0:05:29.200000 --> 0:05:34.440000
 understanding as to what I refer to
 or what server side attacks means

0:05:34.440000 --> 0:05:40.500000
 in the context of you know the architecture
 of a web application so that

0:05:40.500000 --> 0:05:43.540000
 brings us to the learning outcomes
 this is very important for reasons

0:05:43.540000 --> 0:05:48.400000
 I stated at the beginning of this video
 it allows you to actually you

0:05:48.400000 --> 0:05:51.920000
 know set a benchmark that you'll then
 review at the end of the course

0:05:51.920000 --> 0:05:57.880000
 to to verify that you know yes I did
 learn this or I do know this and

0:05:57.880000 --> 0:06:03.720000
 I'm able to do this so starting off the
 first learning outcome deals with

0:06:03.720000 --> 0:06:09.240000
 you know the understanding of modern
 web application architecture so by

0:06:09.240000 --> 0:06:12.900000
 the end of this course you should be
 able to describe the components and

0:06:12.900000 --> 0:06:17.760000
 layers of modern web application infrastructure
 or the architecture and

0:06:17.760000 --> 0:06:22.500000
 explain the role and interaction of
 the components that make up the web

0:06:22.500000 --> 0:06:27.660000
 application as a whole secondly recognize
 server-side vulnerabilities

0:06:27.660000 --> 0:06:31.420000
 so by the end of the course you'll have
 an understanding of what server

0:06:31.420000 --> 0:06:37.320000
-side attacks are and how they exploit weaknesses
 in the back-end infrastructure

0:06:37.320000 --> 0:06:42.320000
 of a web application and then of course
 SSRF so by the end of this course

0:06:42.320000 --> 0:06:47.320000
 you should be able to define SSRF vulnerabilities
 and explain what causes

0:06:47.320000 --> 0:06:53.440000
 them as well as have an understanding
 of what you know have an understanding

0:06:53.440000 --> 0:07:00.500000
 of how SSRF vulnerabilities are exploited
 so sort of the you know you

0:07:00.500000 --> 0:07:04.020000
 should have a picture and understanding
 of the anatomy of a SSRF attack

0:07:04.020000 --> 0:07:09.760000
 as well as the various variations of
 SSRF vulnerabilities or attacks you

0:07:09.760000 --> 0:07:15.160000
 should in terms of skills specifically
 you should be you should demonstrate

0:07:15.160000 --> 0:07:22.820000
 you know practical or you should be able
 to exploit you know SSRF vulnerabilities

0:07:22.820000 --> 0:07:27.240000
 including you know blind and as well
 as advanced techniques that require

0:07:27.240000 --> 0:07:33.240000
 chaining so we then have insecure discerilization
 so by the end of this

0:07:33.240000 --> 0:07:36.080000
 course you should be able to explain
 or you should have an understanding

0:07:36.080000 --> 0:07:41.940000
 of what insecure insecure discerilization
 is and how it can lead to vulnerabilities

0:07:41.940000 --> 0:07:48.120000
 like you know remote code execution
 and then finally exploit language

0:07:48.120000 --> 0:07:51.500000
 specific discerilization vulnerabilities
 so by the end of this course

0:07:51.500000 --> 0:07:55.520000
 you should be able to identify and exploit
 discerilization vulnerabilities

0:07:55.520000 --> 0:08:02.280000
 in Java PHP and .NET applications with
 relative ease and these are the

0:08:02.280000 --> 0:08:07.200000
 learning outcomes so hopefully you
 now know what to expect or you know

0:08:07.200000 --> 0:08:09.900000
 what you'll know and what you'll be
 able to do by the end of the course

0:08:09.900000 --> 0:08:14.180000
 and we can move on to the prerequisites
 so the prerequisites for this

0:08:14.180000 --> 0:08:18.320000
 course are fairly minimal you just need
 to have a familiarity very basic

0:08:18.320000 --> 0:08:24.740000
 familiarity with the OASP Top 10 you
 know 2021 as well as the OASP WSTG

0:08:24.740000 --> 0:08:28.080000
 which is the web service testing guide
 which I've used and referenced

0:08:28.080000 --> 0:08:31.460000
 in other courses within this learning
 part so you should already be familiar

0:08:31.460000 --> 0:08:36.820000
 with it and then of course experience
 in using web proxies like the and

0:08:36.820000 --> 0:08:40.960000
 or ZAP if you will but that's pretty
 much it nothing else is required

0:08:40.960000 --> 0:08:45.820000
 and that those are the prerequisites
 so with that being said I don't want

0:08:45.820000 --> 0:08:50.540000
 to take too much of your time let's
 not waste any more time and I'll be

