Web application security

Data is displayed for the academic year: 2024./2025.

Course Description

Web applications and services are one of the most important components of the Internet as nowadays. The tendency to personalize Internet services to users results in a large amount of confidential user data that is used within the services. In order to adequately secure such data, as well as web applications and services, knowledge of web application security issues is necessary. Within the course, the most used architectures of web applications and services will be presented, where it will be shown how to include security in the design itself. The most common vulnerabilities, methods of exploitation and protection options will be presented. Finally, selected tools for checking web application vulnerabilities will be demonstrated.

Study Programmes

Postgraduate spec. study

Literature

Michal Zalewski (2012.), The Tangled Web, No Starch Press
OWASP; više autora (2020.), OWASP Testing Guide 4.0, OWASP
Bryan Sullivan, Vincent Liu (2011.), Web Application Security, A Beginner's Guide, McGraw Hill Professional

General

ID 172131
  Winter semester
6 ECTS
L1 English Level