目前有许多程式设计语言可用于将代码编译为 .NET 和 ASP.NET 框架。该环境为安全开发提供了强大的手段,但开发人员应该知道如何应用体系结构和编码级别的程式设计技术,以实现所需的安全功能并避免漏洞或限制其利用。
本课程旨在通过大量动手练习向开发人员传授如何防止不受信任的代码执行特权操作、通过强身份验证和授权保护资源、提供远端过程调用、处理会话、为某些功能介绍不同的实现等等。一个特殊部分专门用于配置和强化 .NET 和 ASP.NET 环境以确保安全性。
对密码学基础知识的简要介绍为理解各种演算法的用途和操作提供了一个通用的实践基线,在此基础上,本课程介绍了可在 .NET 中使用的加密功能。随后引入了一些最新的加密漏洞,这些漏洞都与某些加密演算法和加密协定以及侧通道攻击有关。
引入不同的漏洞首先会出现使用 .NET 时提交的一些典型程式设计问题,包括输入验证、错误处理或争用条件的错误类别。特别关注 XML 安全性,而 ASP.特定于 NET 的漏洞解决了一些特殊问题和攻击方法: 例如攻击 ViewState 或字串终止攻击。
参加本课程的学员将
- 了解安全、IT 安全和安全编码的基本概念
- 了解如何使用 .NET 开发环境的各种安全功能
- 对密码学有实际的了解
- 了解最近针对加密系统的一些攻击
- 获取有关 .NET 和 ASP.NET 中一些最新漏洞的资讯
- 了解典型的编码错误以及如何避免这些错误
- 获取有关使用安全测试工具的实用知识
- 获取有关安全编码实践的原始程式码和进一步阅读材料
观众
开发人员
- IT 安全和安全编码
- .NET 安全体系结构和服务
- 实用密码学
- ASP.NET 安全架构
- 加密漏洞
- RSA 定时攻击
- 功能和漏洞
- 拒绝服务
- ASP.NET配置和强化
- XML 安全性
- 常见的编码错误和漏洞
- 安全和安全编码原则
- 知识来源
United Arab Emirates - Comprehensive C# and .NET Application Security
Qatar - Comprehensive C# and .NET Application Security
Egypt - Comprehensive C# and .NET Application Security
Saudi Arabia - Comprehensive C# and .NET Application Security
South Africa - Comprehensive C# and .NET Application Security
Brasil - Comprehensive C# and .NET Application Security
Canada - Comprehensive C# and .NET Application Security
中国 - Comprehensive C# and .NET Application Security
香港 - Comprehensive C# and .NET Application Security
澳門 - Comprehensive C# and .NET Application Security
台灣 - Comprehensive C# and .NET Application Security
USA - Comprehensive C# and .NET Application Security
Österreich - Comprehensive C# and .NET Application Security
Schweiz - Comprehensive C# and .NET Application Security
Deutschland - Comprehensive C# and .NET Application Security
Czech Republic - Comprehensive C# and .NET Application Security
Denmark - Comprehensive C# and .NET Application Security
Estonia - Comprehensive C# and .NET Application Security
Finland - Comprehensive C# and .NET Application Security
Greece - Comprehensive C# and .NET Application Security
Magyarország - Comprehensive C# and .NET Application Security
Ireland - Comprehensive C# and .NET Application Security
Luxembourg - Comprehensive C# and .NET Application Security
Latvia - Comprehensive C# and .NET Application Security
España - Integral de C# y .NET Seguridad de Aplicaciones
Italia - Comprehensive C# and .NET Application Security
Lithuania - Comprehensive C# and .NET Application Security
Nederland - Comprehensive C# and .NET Application Security
Norway - Comprehensive C# and .NET Application Security
Portugal - Comprehensive C# and .NET Application Security
România - Comprehensive C# and .NET Application Security
Sverige - Comprehensive C# and .NET Application Security
Türkiye - Comprehensive C# and .NET Application Security
Malta - Comprehensive C# and .NET Application Security
Belgique - Comprehensive C# and .NET Application Security
France - Comprehensive C# and .NET Application Security
日本 - Comprehensive C# and .NET Application Security
Australia - Comprehensive C# and .NET Application Security
Malaysia - Comprehensive C# and .NET Application Security
New Zealand - Comprehensive C# and .NET Application Security
Philippines - Comprehensive C# and .NET Application Security
Singapore - Comprehensive C# and .NET Application Security
Thailand - Comprehensive C# and .NET Application Security
Vietnam - Comprehensive C# and .NET Application Security
India - Comprehensive C# and .NET Application Security
Argentina - Integral de C# y .NET Seguridad de Aplicaciones
Chile - Integral de C# y .NET Seguridad de Aplicaciones
Costa Rica - Integral de C# y .NET Seguridad de Aplicaciones
Ecuador - Integral de C# y .NET Seguridad de Aplicaciones
Guatemala - Integral de C# y .NET Seguridad de Aplicaciones
Colombia - Integral de C# y .NET Seguridad de Aplicaciones
México - Integral de C# y .NET Seguridad de Aplicaciones
Panama - Integral de C# y .NET Seguridad de Aplicaciones
Peru - Integral de C# y .NET Seguridad de Aplicaciones
Uruguay - Integral de C# y .NET Seguridad de Aplicaciones
Venezuela - Integral de C# y .NET Seguridad de Aplicaciones
Polska - Comprehensive C# and .NET Application Security
United Kingdom - Comprehensive C# and .NET Application Security
South Korea - Comprehensive C# and .NET Application Security
Pakistan - Comprehensive C# and .NET Application Security
Sri Lanka - Comprehensive C# and .NET Application Security
Bulgaria - Comprehensive C# and .NET Application Security
Bolivia - Integral de C# y .NET Seguridad de Aplicaciones
Indonesia - Comprehensive C# and .NET Application Security
Kazakhstan - Comprehensive C# and .NET Application Security
Moldova - Comprehensive C# and .NET Application Security
Morocco - Comprehensive C# and .NET Application Security
Tunisia - Comprehensive C# and .NET Application Security
Kuwait - Comprehensive C# and .NET Application Security
Oman - Comprehensive C# and .NET Application Security
Slovakia - Comprehensive C# and .NET Application Security
Kenya - Comprehensive C# and .NET Application Security
Nigeria - Comprehensive C# and .NET Application Security
Botswana - Comprehensive C# and .NET Application Security
Slovenia - Comprehensive C# and .NET Application Security
Croatia - Comprehensive C# and .NET Application Security
Serbia - Comprehensive C# and .NET Application Security
Bhutan - Comprehensive C# and .NET Application Security