• Online, Self-Paced
Course Description

Cross-site Scripting (XSS) is a client-side code injection attacks where the attacker aims to execute malicious scripts in a web browser of the victim by including malicious code in a legitimate web page or web application. This course teaches how to identify, test, and exploit these vulnerabilities.

Learning Objectives

On successful completion of this course, learners should have the knowledge and skills to:

  • Define the types of cross-site scripting vulnerabilities
  • Test applications for cross-site scripting vulnerabilities
  • Exploit cross-site scripting vulnerabilities

Framework Connections

The materials within this course focus on the Knowledge Skills and Abilities (KSAs) identified within the Specialty Areas listed below. Click to view Specialty Area details within the interactive National Cybersecurity Workforce Framework.