Join us at APCO 2022 Conference & Expo, August 7-10 in Anaheim, CA.   Learn more.

Class Overview

The PEN600 - Advanced Web Application Exploitation class builds upon your existing knowledge of web exploits and explores how to search for, find, and exploit hard-to-find vulnerabilities in web applications. Web applications are the source of many security vulnerabilities. Because of this, many web developers try to lock down the security of their web applications. However, not all of them do it correctly or completely, leaving certain avenues of attack still open. At the end of this class, students will understand the shortcomings of incomplete fixes to these vulnerabilities. They will also understand how these vulnerabilities might manifest themselves and how to modify their attack strategy to compensate.

Class Outline
  • HTTP/S Basics
  • Encoding and Cookies
  • Footprinting
  • Fingerprinting Web Applications
  • Enumeration and Subdomains
  • Authentication and Authorization Attacks
  • Session Attacks
  • XSS
  • SQL Injection
  • NoSQL Exploitation
  • File Attacks
  • Wordpress and Joomla
  • Reporting

Register Now


Upcoming Class Dates

May 19-23, 2025


Class Duration/Schedule

5 Days (M-F 8am-5pm ET)
One hour lunch break 12-1pm
Two 15-minute breaks (1 Morning; 1 Afternoon)


Class Cost

$849

What Students Will Receive:

  • Live, Interactive Training: Enjoy multiple days of engaging, instructor-led virtual training sessions, designed to keep you actively involved and fully immersed in the learning experience.
  • Hands-On Virtual Labs: Access to our online training management system, where you'll work on practical, real-world scenarios in hands-on virtual labs.
  • Comprehensive Course Materials: Receive a detailed course workbook in PDF format, providing you with all the key content covered during the training sessions.
  • Additional Resources and Practice Tools: (For CompTIA classes only) Gain access to additional training materials, Performance-Based Questions (PBQs), and certification practice exams to reinforce your learning and prepare for your certification exams.
  • 24/7 Lab Access: Enjoy on-demand access to all training labs taught in class, available anytime, anywhere, for up to one full year - giving you the flexibility to revisit and practice at your own pace.

With these resources, you'll have everything you need to confidently master the material and achieve your training goals!