5910 Breckenridge Pkwy Suite B, Tampa, FL. 33610
(800) 272-0707

SkillSoft Explore Course

Certification     EC-Council     Certified Ethical Hacker (CEH)     Certified Ethical Hacker (CEH) v11

Common attack vectors such as cross-site scripting are becoming more difficult to exploit due to the implementation of defenses. In this course, you'll examine how to evade input filters to gain XSS execution. Next, you'll explore web shells, including how they can be deployed, defenses, and evasions. Many of today's web applications utilize an Application Programming Interface to facilitate interaction between clients and services. To wrap up this course, you'll learn about attributes of APIs, how they compare with webhooks, and common vulnerabilities and security countermeasures associated with both APIs and webhooks. This course is one in a series that helps to prepare you for the Certified Ethical Hacker v11 (312-50) exam.



Objectives

CEHv11: XSS, Web Shells, APIs & Webhooks

  • describe techniques used to evade input filters to gain cross-site scripting (XSS) execution
  • identify evasion techniques used to evade input filters
  • recognize techniques used to evade input filters to gain cross-site scripting (XSS) execution
  • describe web shells
  • identify defenses that can be used to prevent web shells from being uploaded
  • recognize how to deploy web shells
  • describe common API vulnerabilities
  • identify the steps to the API Hacking Methodology
  • recognize the attributes of APIs
  • recognize the features of webhooks