EdX

Penetration Testing - Exploitation (edX)

Offered by New York University, NYUx,
Penetration Testing - Exploitation (edX)

Learn exploitation phase of penetration testing, including the foundations of explorations, application debugging, reverse engineering, exploitation development and web application exploitation. This is a self-paced course that continues the development of ethical hacking skills. The curriculum provides an introduction to the exploitation phase of penetration testing topics. Among the topics covered are foundations of explorations, application debugging, reverse engineering, exploitation development, and web application exploitation.

Class Deals by MOOC List - Click here and see EdX's Active Discounts, Deals, and Promo Codes.

This is the 8th course in the intermediate, undergraduate-level offering that makes up the larger Cybersecurity Fundamentals MicroBachelors Program. We recommend taking them in order, unless you have a background in these areas already and feel comfortable skipping ahead.

These topics build upon the learnings that are taught in the introductory-level Computer Science Fundamentals MicroBachelors program, offered by the same instructor.
In this class, students learn the third phase of penetration testing; exploitation. In the exploitation phase, the penetration testers try to exploit security weaknesses actively. Exploits are developed to, for example, gather sensitive information or to enable the ethical hacker to compromise a system and manifest themselves on it. Once a device is successfully compromised, it is quite often possible to penetrate more systems because the malicious users now have access to more potential targets that were not available before. The additional marks are accessible because the compromised system can interact with internal devices that are not accessible from the Internet. For any new targets, the reconnaissance and enumeration phases are re-entered, to gather information about these new systems and exploit them.

What you'll learn

  1. Apply methodology to penetration tests to ensure they are consistent, reproducible, rigorous, and under quality control.
  2. Analyze the results from automated testing tools to validate findings, determine their business impact, and eliminate false positives.
  3. Discover key application flaws.
  4. Use programming to create testing and exploitation scripts during a penetration test.
  5. Discover and exploit SQL Injection flaws to determine true risk to the victim organization.
  6. Create configurations and test payloads within other web attacks.
  7. Fuzz potential inputs for injection attacks.
  8. Explain the impact of exploitation of application flaws.
  9. Analyze traffic between the client and server application using tools.
  10. Discover and exploit Cross-Site Request Forgery (CSRF) attacks.

Syllabus

Week 1 - Exploitation Pt 1 - Foundations
Week 2 - Exploitation Pt 2 – App Debugging Reversing, and Exploit Development
Week 3 - Exploitation – Web App Pt 1
Week 4 - Exploitation – Web App Pt 2
Week 5 - Final Exam

Go to Class
MOOC List is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

Related Courses

Excel/VBA for Creative Problem Solving, Part 1 (Coursera) Coursera
University of Colorado Boulder

Excel/VBA for Creative Problem Solving, Part 1 (Coursera)

Excel/VBA for Creative Problem Solving, Part 1" is aimed at learners who are seeking to augment, expand, optimize, and increase the efficiency of their Excel spreadsheet skills by tapping into the powerful programming, automation, and customization capabilities available with Visual Basic for Applications (VBA).

Sep 7th 2026
5-12 Weeks
Network Security - Protocols (edX) EdX
New York University,NYUx

Network Security - Protocols (edX)

Learn more fundamentals of network security, including cryptographic algorithms used in networking protocols, TLS/SSL, IPSec Layer 2 Security and Wireless Security. Students are provided with a broad understanding of cryptography, from its classical applications dating from the Roman empire to modern cryptography, including the public key cryptography and hashing techniques today.

Future dates to be announced
5-12 Weeks
Algorithmic Toolbox (Coursera) Coursera
University of California, San Diego,Higher School of Economics - HSE University

Algorithmic Toolbox (Coursera)

The course covers basic algorithmic techniques and ideas for computational problems arising frequently in practical applications: sorting and searching, divide and conquer, greedy algorithms, dynamic programming. We will learn a lot of theory: how to sort data and how it helps for searching; how to break a large problem into pieces and solve them recursively; when it makes sense to proceed greedily; how dynamic programming is used in genomic studies. You will practice solving computational problems, designing new algorithms, and implementing solutions efficiently (so that they run in less than a second).

Sep 7th 2026
5-12 Weeks
Penetration Testing - Post Exploitation (edX) EdX
New York University,NYUx

Penetration Testing - Post Exploitation (edX)

Learn post-exploitation phases of penetration testing, including Owning, Pivoting, Privilege Escalation and other advanced penetration testing topics. The machine's value is determined by the sensitivity of the data stored on it and the machine's usefulness in further compromising the network.

Not Available
Course Not Available
Writing, Running, and Fixing Code in C (Coursera) Coursera
Duke University

Writing, Running, and Fixing Code in C (Coursera)

Building on the course Programming Fundamentals, this course will teach you how to write code by first planning what your program should do—an important approach for novice and professional programmers. You will learn how to compile and run your program, and then how to test and debug it. This course builds on the Seven Steps you have already learned and provides a framework for systematically testing for problems and fixing them, so you can find and fix problems efficiently.

Sep 7th 2026
4 Weeks
Software Engineering: Implementation and Testing (Coursera) Coursera
The Hong Kong University of Science and Technology - HKUST

Software Engineering: Implementation and Testing (Coursera)

Software Development Life Cycle (SDLC) is the process of developing software through planning, requirement analysis, design, implementation, testing, and maintenance. This course focuses on the implementation and testing phases of SDLC, and you will examine different software development processes for large software systems development, and understand the strengths (pros) and weaknesses (cons) of different software development processes.

Sep 14th 2026
5-12 Weeks