ONLINE CERTIFICATION · CYBERSECURITY

Web Application Penetration Testing

8-week guided certification in real-world web application penetration testing · industry-standard tools · verified certificate · 2 Months program · 8 guided weeks.

INR 600.00 INR 1500.00 60% OFF
Log in to enrol View brochure

2 Months program · 3 months access · auto-graded weekly labs · certificate on completion.

Curriculum

WEEK 01
Foundations + Recon

Learn how the web really works, drive Burp Suite and ZAP, and enumerate an app the way an attacker does — observe first, exploit later.

WEEK 02
Injection Attacks

SQL, NoSQL and command injection, plus SSTI and prompt injection — one root cause, many surfaces.

WEEK 03
Broken Authentication

Weak passwords, credential stuffing, JWT forging, password-reset abuse and full account takeover.

WEEK 04
Cross-Site Scripting (XSS)

Reflected, stored, DOM, HTTP-header and API XSS, plus Content Security Policy bypass.

WEEK 05
Broken Access Control

IDOR/BOLA, privilege escalation, forced browsing, CSRF and SSRF — and chaining them.

WEEK 06
Modern Attack Surface

REST & GraphQL APIs, XXE, vulnerable components and security misconfiguration.

WEEK 07
AI / LLM Security

Prompt injection (direct & indirect), system-prompt extraction, jailbreaking and the OWASP LLM Top 10.

WEEK 08
Capstone Security Assessment

An unguided CTF across Weeks 1-7, then the defender debrief and a professional pentest report.

Certificate of Completion

Finish all guided weeks and the capstone assessment to earn a verifiable certificate. Every certificate carries a unique ID checkable at /verify/<id>.

Sample certificate