Escrito por estudiantes que aprobaron Inmediatamente disponible después del pago Leer en línea o como PDF ¿Documento equivocado? Cámbialo gratis 4,6 TrustPilot
logo-home
Document preview thumbnail
Vista previa 2 fuera de 7 páginas
Reseña del libro

Certified Ethical Hacker Complete Course Notes | Cybersecurity, Penetration Testing & Ethical Hacking

Document preview thumbnail
Vista previa 2 fuera de 7 páginas

Comprehensive Certified Ethical Hacker course notes covering essential cybersecurity and ethical hacking concepts. This document includes ethical hacking fundamentals, penetration testing, network security, Windows and Linux basics, networking, reconnaissance and footprinting, network scanning, enumeration, web server and web application security, OWASP topics, malware threats, wireless security, cryptography, sniffing, DoS/DDoS concepts, social engineering, mobile platform security, IDS/firewall concepts, and post-exploitation topics. Suitable for Cybersecurity students, Ethical Hacking beginners, CEH learners, and IT security students looking for structured course material and revision notes. The source document is organized into multiple modules and describes a course duration of approximately 30–35 hours.

Vista previa del contenido

Basic Security Audit of OWASP Juice Shop
Target Application: OWASP Juice Shop
Testing Environment: Ubuntu Virtual Machine safe lab
environment with Docker container


1. Objective
The objective of this task was to perform a beginner-level security audit on a legal
vulnerable-by-design practice website. For this audit, I used OWASP Juice Shop, which
is intentionally vulnerable and designed for security training.
The audit focused on identifying, documenting, and manually verifying at least three
vulnerability categories:
• SQL Injection
• Application Error Disclosure
• Missing Content Security Policy Header
2. Scope
This security audit was performed only against a local instance of OWASP Juice Shop
running on my own machine. No real production website or third-party system was
tested.
In-scope target:
OWASP Juice Shop (http://127.0.0.1:3000)
Out of scope:
Any real public/production website
Any system without explicit permission
3. Environment Setup
OWASP Juice Shop was run locally using Docker. After starting the container, I verified
that the container was running with:
sudo docker ps
The Docker output showed the Juice Shop container running and mapped to local port
3000. The application was then accessed in the browser at: http://localhost:3000/#/

, 4. Methodology
4.1 Manual Exploration
I opened OWASP ZAP and used the Manual Explore feature to connect ZAP with the
local Juice Shop instance.




4.2 Browser Developer Tools
I used Firefox Developer Tools, especially the Network tab, to inspect requests,
responses, and HTTP headers.

Información del documento

Año escolar
5
Subido en
23 de agosto de 2026
Número de páginas
7
Escrito en
2026/2027
Tipo
Reseña del libro
$6.89

¿Documento equivocado? Cámbialo gratis Dentro de los 14 días posteriores a la compra y antes de descargarlo, puedes elegir otro documento. Puedes gastar el importe de nuevo.
Escrito por estudiantes que aprobaron
Inmediatamente disponible después del pago
Leer en línea o como PDF

Vendido
0
Seguidores
0
Artículos
6
Última venta
-



Por qué los estudiantes eligen Stuvia

Creado por compañeros estudiantes, verificado por reseñas

Calidad en la que puedes confiar: escrito por estudiantes que aprobaron y evaluado por otros que han usado estos resúmenes.

¿No estás satisfecho? Elige otro documento

¡No te preocupes! Puedes elegir directamente otro documento que se ajuste mejor a lo que buscas.

Paga como quieras, empieza a estudiar al instante

Sin suscripción, sin compromisos. Paga como estés acostumbrado con tarjeta de crédito y descarga tu documento PDF inmediatamente.

Student with book image

“Comprado, descargado y aprobado. Así de fácil puede ser.”

Alisha Student

Preguntas frecuentes