Ethical Hacking: Session Hijacking

Go to class
Write Review

Free Online Course: Ethical Hacking: Session Hijacking provided by LinkedIn Learning is a comprehensive online course, which lasts for 1-2 hours worth of material. The course is taught in English and is free of charge. Upon completion of the course, you can receive an e-certificate from LinkedIn Learning. Ethical Hacking: Session Hijacking is taught by Malcolm Shore.

Overview
  • Learn what session hijacking is, which protocols are vulnerable, and detect and shore up vulnerabilities in your systems.

Syllabus
  • Introduction

    • Understanding session hijacking
    • What you should know before watching this course
    • Disclaimer
    1. Network Session Hijacking
    • Understanding TCP sequence numbers
    • Hijacking a Telnet session
    • Real-world hijacks
    2. Web Session Hijacking
    • Understanding web sessions
    • Understanding WebSockets
    • Banking on Zero
    • Hijacking sessions using man-in-the-browser
    • Intercepting sessions through man-in-the-middle
    • Stripping SSL to downgrade the session
    • Hijacking an HTTP session through cookies
    • Using Subterfuge to hijack sessions through ARP poisoning
    • Using Webscarab-NG as a web proxy
    3. Additional Tools
    • Using Zed Attack Proxy (ZAP)
    • Using Cain
    4. Service Hijacking
    • Hijacking SSH sessions
    • DNS hijacking
    • Cloud hijacking
    5. Hijacking in the Physical World
    • Going physical: Hijacking cars and drones
    • Getting more physical with drones
    Conclusion
    • Next steps