Download as pptx, pdf, or txt
Download as pptx, pdf, or txt
You are on page 1of 13

Web

Penetration
Testing
Roadmap
T H I S R O A D M A P D O N E B Y:

HTI-CYBER CREW
First
Network
R eso u rces

• You Need to understand the concepts of Network like TCP-IP,OSI 7 layers , Protocols,…..etc

• I Recommended Some Resources


• 1- Abeer Hosni until 19 video
• https://www.youtube.com/watch?v=d9fJcL9CReA&list=PLped9VG7STA-SnQv4X9lauBZGH4rW8ICF

• Other resources
• https://www.youtube.com/watch?v=J2xws7u7ZeM&list=PL77yNtB4-LjnN2FU3h1v5hIJOHZfW9ugq
• https://www.youtube.com/watch?v=qK1gDbWW8FY&list=PLoP_aS_FoPQfCHLDULY7wmjz3Qgp5f7
il
Operating
system
Resources
• You Should understand how to deal with OS like windows and Linux

• I recommended some resources

• Hassan Saad from 1 to 21 video


• https://www.youtube.com/watch?v=ZRWk39Rf9PE&list=PLtr9ezc61PUbA2l3MiE4YbrgITJN84N-C

• Other resources
• https://www.youtube.com/watch?v=rgmi5JEywNg&list=PLNSVnXX5qE8VOJ6BgMytvgFpEK2o4sM1
o
• https://www.youtube.com/watch?v=ZVAddIMB3mg&list=PLDRMxi70CdSD48OPJbsDZRt4l0GvWJ2i
G
programming
Front-End Resources
• you need to understand web application structure, so you need to learn
• HTML
• https://www.youtube.com/watch?v=Dv39fDYei9A&list=PLknwEmKsW8OtLRQPTLms79499meY2
D6ij
• https://www.youtube.com/watch?v=6QAELgirvjs&list=PLDoPjvoNmBAw_t_XWUFbBX-c9MafPk
9ji
• JAVASCRIPT
• I recommended Elzero course (first 100 video)
• https://www.youtube.com/watch?v=GM6dQBmc-Xg&list=PLDoPjvoNmBAx3kiplQR_oeDqLDBU
DYwVv
• And take OOP course
• And do some simple project with them and solve assignments
Back-End Resources
• You should have some knowledge about how backend work (basics) you can learn any language you love I
recommended PHP, NODE JS but you have the choice
• PHP
• https://www.youtube.com/watch?v=xcg9qq6SZ0w&list=PLDoPjvoNmBAy41u35AqJUrI-H83DObU
Dq
• NODE JS
• https://www.youtube.com/watch?v=LAUi8pPlcUM&list=PLC3y8-rFHvwh8shCMHFA5kWxD9PaP
wxaY
Database Resources
• You need to know how to deal with database , how the data stored in it and to do some queries to get
information ….etc

• You will use it also to do back-end projects

• I recommended MYSQl database


• https://www.youtube.com/watch?v=DftlOK7fCtc&list=PLDoPjvoNmBAz6DT8SzQ1CODJTH-NIA7R9

• Or any other types of SQL databases like Oracle, Microsoft, PostgreSQL,…..etc


• you will do some simple projects like login page , registration page , deal with sessions ,file upload
page ,create users with different privileges …etc
Web penetration
resources
Resources
• You need to learn OWASP TOP 10

• In beginning I recommended Ebrahim Hegazi course


• https://www.youtube.com/watch?v=BjfCWSFmIFI&list=PLv7cogHXoVhXvHPzIl1dWtBiYUAL8baHj
&pp=iAQB

• Some other useful Arabic resources


• https://www.youtube.com/watch?v=V30CtIXouhY&list=PLsB1gqjeUAh_yEuLgtZ0ppLlExcYOL2Kp
• https://www.youtube.com/watch?v=gjpwWj-u8Ew&list=PLDRMxi70CdSBHODkNy87kqqGUSnl0ASx
g

• You need to solve labs in portswigger and this channel will help you
• https://www.youtube.com/@ArabHackSploit/playlists
finally
• When you learning Vulnerabilities
1. Read about why it happens
2. Where and how to find them
3. Solve labs
4. Read write-ups
5. Take notes

And Start hacking


Best
wishes

You might also like