Course Code: cl-ans
Duration: 21 hours
Overview:

目前有許多程式設計語言可用於將代碼編譯為 .NET 和 ASP.NET 框架。該環境為安全開發提供了強大的手段,但開發人員應該知道如何應用體系結構和編碼級別的程式設計技術,以實現所需的安全功能並避免漏洞或限制其利用。

本課程旨在通過大量動手練習向開發人員傳授如何防止不受信任的代碼執行特權操作、通過強身份驗證和授權保護資源、提供遠端過程調用、處理會話、為某些功能介紹不同的實現等等。一個特殊部分專門用於配置和強化 .NET 和 ASP.NET 環境以確保安全性。

對密碼學基礎知識的簡要介紹為理解各種演算法的用途和操作提供了一個通用的實踐基線,在此基礎上,本課程介紹了可在 .NET 中使用的加密功能。隨後引入了一些最新的加密漏洞,這些漏洞都與某些加密演算法和加密協定以及側通道攻擊有關。

引入不同的漏洞首先會出現使用 .NET 時提交的一些典型程式設計問題,包括輸入驗證、錯誤處理或爭用條件的錯誤類別。特別關注 XML 安全性,而 ASP.特定於 NET 的漏洞解決了一些特殊問題和攻擊方法: 例如攻擊 ViewState 或字串終止攻擊。

參加本課程的學員將

  • 瞭解安全、IT 安全和安全編碼的基本概念
  • 瞭解如何使用 .NET 開發環境的各種安全功能
  • 對密碼學有實際的瞭解
  • 瞭解最近針對加密系統的一些攻擊
  • 獲取有關 .NET 和 ASP.NET 中一些最新漏洞的資訊
  • 瞭解典型的編碼錯誤以及如何避免這些錯誤
  • 獲取有關使用安全測試工具的實用知識
  • 獲取有關安全編碼實踐的原始程式碼和進一步閱讀材料

觀眾

開發人員

Course Outline:
  • IT 安全和安全編碼
  • .NET 安全體系結構和服務
  • 實用密碼學
  • ASP.NET 安全架構
  • 加密漏洞
  • RSA 定時攻擊
  • 功能和漏洞
  • 拒絕服務
  • ASP.NET配置和強化
  • XML 安全性
  • 常見的編碼錯誤和漏洞
  • 安全和安全編碼原則
  • 知識來源
Sites Published:

United Arab Emirates - Comprehensive C# and .NET Application Security

Qatar - Comprehensive C# and .NET Application Security

Egypt - Comprehensive C# and .NET Application Security

Saudi Arabia - Comprehensive C# and .NET Application Security

South Africa - Comprehensive C# and .NET Application Security

Brasil - Comprehensive C# and .NET Application Security

Canada - Comprehensive C# and .NET Application Security

中国 - Comprehensive C# and .NET Application Security

香港 - Comprehensive C# and .NET Application Security

澳門 - Comprehensive C# and .NET Application Security

台灣 - Comprehensive C# and .NET Application Security

USA - Comprehensive C# and .NET Application Security

Österreich - Comprehensive C# and .NET Application Security

Schweiz - Comprehensive C# and .NET Application Security

Deutschland - Comprehensive C# and .NET Application Security

Czech Republic - Comprehensive C# and .NET Application Security

Denmark - Comprehensive C# and .NET Application Security

Estonia - Comprehensive C# and .NET Application Security

Finland - Comprehensive C# and .NET Application Security

Greece - Comprehensive C# and .NET Application Security

Magyarország - Comprehensive C# and .NET Application Security

Ireland - Comprehensive C# and .NET Application Security

Luxembourg - Comprehensive C# and .NET Application Security

Latvia - Comprehensive C# and .NET Application Security

España - Integral de C# y .NET Seguridad de Aplicaciones

Italia - Comprehensive C# and .NET Application Security

Lithuania - Comprehensive C# and .NET Application Security

Nederland - Comprehensive C# and .NET Application Security

Norway - Comprehensive C# and .NET Application Security

Portugal - Comprehensive C# and .NET Application Security

România - Comprehensive C# and .NET Application Security

Sverige - Comprehensive C# and .NET Application Security

Türkiye - Comprehensive C# and .NET Application Security

Malta - Comprehensive C# and .NET Application Security

Belgique - Comprehensive C# and .NET Application Security

France - Comprehensive C# and .NET Application Security

日本 - Comprehensive C# and .NET Application Security

Australia - Comprehensive C# and .NET Application Security

Malaysia - Comprehensive C# and .NET Application Security

New Zealand - Comprehensive C# and .NET Application Security

Philippines - Comprehensive C# and .NET Application Security

Singapore - Comprehensive C# and .NET Application Security

Thailand - Comprehensive C# and .NET Application Security

Vietnam - Comprehensive C# and .NET Application Security

India - Comprehensive C# and .NET Application Security

Argentina - Integral de C# y .NET Seguridad de Aplicaciones

Chile - Integral de C# y .NET Seguridad de Aplicaciones

Costa Rica - Integral de C# y .NET Seguridad de Aplicaciones

Ecuador - Integral de C# y .NET Seguridad de Aplicaciones

Guatemala - Integral de C# y .NET Seguridad de Aplicaciones

Colombia - Integral de C# y .NET Seguridad de Aplicaciones

México - Integral de C# y .NET Seguridad de Aplicaciones

Panama - Integral de C# y .NET Seguridad de Aplicaciones

Peru - Integral de C# y .NET Seguridad de Aplicaciones

Uruguay - Integral de C# y .NET Seguridad de Aplicaciones

Venezuela - Integral de C# y .NET Seguridad de Aplicaciones

Polska - Comprehensive C# and .NET Application Security

United Kingdom - Comprehensive C# and .NET Application Security

South Korea - Comprehensive C# and .NET Application Security

Pakistan - Comprehensive C# and .NET Application Security

Sri Lanka - Comprehensive C# and .NET Application Security

Bulgaria - Comprehensive C# and .NET Application Security

Bolivia - Integral de C# y .NET Seguridad de Aplicaciones

Indonesia - Comprehensive C# and .NET Application Security

Kazakhstan - Comprehensive C# and .NET Application Security

Moldova - Comprehensive C# and .NET Application Security

Morocco - Comprehensive C# and .NET Application Security

Tunisia - Comprehensive C# and .NET Application Security

Kuwait - Comprehensive C# and .NET Application Security

Oman - Comprehensive C# and .NET Application Security

Slovakia - Comprehensive C# and .NET Application Security

Kenya - Comprehensive C# and .NET Application Security

Nigeria - Comprehensive C# and .NET Application Security

Botswana - Comprehensive C# and .NET Application Security

Slovenia - Comprehensive C# and .NET Application Security

Croatia - Comprehensive C# and .NET Application Security

Serbia - Comprehensive C# and .NET Application Security

Bhutan - Comprehensive C# and .NET Application Security

Nepal - Comprehensive C# and .NET Application Security

Uzbekistan - Comprehensive C# and .NET Application Security