目前有許多程式設計語言可用於將代碼編譯為 .NET 和 ASP.NET 框架。該環境為安全開發提供了強大的手段,但開發人員應該知道如何應用體系結構和編碼級別的程式設計技術,以實現所需的安全功能並避免漏洞或限制其利用。
本課程旨在通過大量動手練習向開發人員傳授如何防止不受信任的代碼執行特權操作、通過強身份驗證和授權保護資源、提供遠端過程調用、處理會話、為某些功能介紹不同的實現等等。一個特殊部分專門用於配置和強化 .NET 和 ASP.NET 環境以確保安全性。
對密碼學基礎知識的簡要介紹為理解各種演算法的用途和操作提供了一個通用的實踐基線,在此基礎上,本課程介紹了可在 .NET 中使用的加密功能。隨後引入了一些最新的加密漏洞,這些漏洞都與某些加密演算法和加密協定以及側通道攻擊有關。
引入不同的漏洞首先會出現使用 .NET 時提交的一些典型程式設計問題,包括輸入驗證、錯誤處理或爭用條件的錯誤類別。特別關注 XML 安全性,而 ASP.特定於 NET 的漏洞解決了一些特殊問題和攻擊方法: 例如攻擊 ViewState 或字串終止攻擊。
參加本課程的學員將
- 瞭解安全、IT 安全和安全編碼的基本概念
- 瞭解如何使用 .NET 開發環境的各種安全功能
- 對密碼學有實際的瞭解
- 瞭解最近針對加密系統的一些攻擊
- 獲取有關 .NET 和 ASP.NET 中一些最新漏洞的資訊
- 瞭解典型的編碼錯誤以及如何避免這些錯誤
- 獲取有關使用安全測試工具的實用知識
- 獲取有關安全編碼實踐的原始程式碼和進一步閱讀材料
觀眾
開發人員
- IT 安全和安全編碼
- .NET 安全體系結構和服務
- 實用密碼學
- ASP.NET 安全架構
- 加密漏洞
- RSA 定時攻擊
- 功能和漏洞
- 拒絕服務
- ASP.NET配置和強化
- XML 安全性
- 常見的編碼錯誤和漏洞
- 安全和安全編碼原則
- 知識來源
United Arab Emirates - Comprehensive C# and .NET Application Security
Qatar - Comprehensive C# and .NET Application Security
Egypt - Comprehensive C# and .NET Application Security
Saudi Arabia - Comprehensive C# and .NET Application Security
South Africa - Comprehensive C# and .NET Application Security
Brasil - Comprehensive C# and .NET Application Security
Canada - Comprehensive C# and .NET Application Security
中国 - Comprehensive C# and .NET Application Security
香港 - Comprehensive C# and .NET Application Security
澳門 - Comprehensive C# and .NET Application Security
台灣 - Comprehensive C# and .NET Application Security
USA - Comprehensive C# and .NET Application Security
Österreich - Comprehensive C# and .NET Application Security
Schweiz - Comprehensive C# and .NET Application Security
Deutschland - Comprehensive C# and .NET Application Security
Czech Republic - Comprehensive C# and .NET Application Security
Denmark - Comprehensive C# and .NET Application Security
Estonia - Comprehensive C# and .NET Application Security
Finland - Comprehensive C# and .NET Application Security
Greece - Comprehensive C# and .NET Application Security
Magyarország - Comprehensive C# and .NET Application Security
Ireland - Comprehensive C# and .NET Application Security
Luxembourg - Comprehensive C# and .NET Application Security
Latvia - Comprehensive C# and .NET Application Security
España - Integral de C# y .NET Seguridad de Aplicaciones
Italia - Comprehensive C# and .NET Application Security
Lithuania - Comprehensive C# and .NET Application Security
Nederland - Comprehensive C# and .NET Application Security
Norway - Comprehensive C# and .NET Application Security
Portugal - Comprehensive C# and .NET Application Security
România - Comprehensive C# and .NET Application Security
Sverige - Comprehensive C# and .NET Application Security
Türkiye - Comprehensive C# and .NET Application Security
Malta - Comprehensive C# and .NET Application Security
Belgique - Comprehensive C# and .NET Application Security
France - Comprehensive C# and .NET Application Security
日本 - Comprehensive C# and .NET Application Security
Australia - Comprehensive C# and .NET Application Security
Malaysia - Comprehensive C# and .NET Application Security
New Zealand - Comprehensive C# and .NET Application Security
Philippines - Comprehensive C# and .NET Application Security
Singapore - Comprehensive C# and .NET Application Security
Thailand - Comprehensive C# and .NET Application Security
Vietnam - Comprehensive C# and .NET Application Security
India - Comprehensive C# and .NET Application Security
Argentina - Integral de C# y .NET Seguridad de Aplicaciones
Chile - Integral de C# y .NET Seguridad de Aplicaciones
Costa Rica - Integral de C# y .NET Seguridad de Aplicaciones
Ecuador - Integral de C# y .NET Seguridad de Aplicaciones
Guatemala - Integral de C# y .NET Seguridad de Aplicaciones
Colombia - Integral de C# y .NET Seguridad de Aplicaciones
México - Integral de C# y .NET Seguridad de Aplicaciones
Panama - Integral de C# y .NET Seguridad de Aplicaciones
Peru - Integral de C# y .NET Seguridad de Aplicaciones
Uruguay - Integral de C# y .NET Seguridad de Aplicaciones
Venezuela - Integral de C# y .NET Seguridad de Aplicaciones
Polska - Comprehensive C# and .NET Application Security
United Kingdom - Comprehensive C# and .NET Application Security
South Korea - Comprehensive C# and .NET Application Security
Pakistan - Comprehensive C# and .NET Application Security
Sri Lanka - Comprehensive C# and .NET Application Security
Bulgaria - Comprehensive C# and .NET Application Security
Bolivia - Integral de C# y .NET Seguridad de Aplicaciones
Indonesia - Comprehensive C# and .NET Application Security
Kazakhstan - Comprehensive C# and .NET Application Security
Moldova - Comprehensive C# and .NET Application Security
Morocco - Comprehensive C# and .NET Application Security
Tunisia - Comprehensive C# and .NET Application Security
Kuwait - Comprehensive C# and .NET Application Security
Oman - Comprehensive C# and .NET Application Security
Slovakia - Comprehensive C# and .NET Application Security
Kenya - Comprehensive C# and .NET Application Security
Nigeria - Comprehensive C# and .NET Application Security
Botswana - Comprehensive C# and .NET Application Security
Slovenia - Comprehensive C# and .NET Application Security
Croatia - Comprehensive C# and .NET Application Security
Serbia - Comprehensive C# and .NET Application Security
Bhutan - Comprehensive C# and .NET Application Security