Master Burp Suite and gain a decisive advantage in your app testing

MCSI Knowledge Test

Burp Suite

Burp Suite is a popular web application penetration testing tool. It offers an extensive range of features that designed to speed up testing.

This bootcamp teaches the main capabilities of Burp Suite Community Edition. Many exercises involve using Burp Suite to identify and exploiting basic vulnerabilities.

This bootcamp teaches all the key features and capabilities of Burp Suite's free version:

  • Install and configure Burp Suite to test web applications and web services
  • Master key features such as the Repeater, the Sequencer, and Clickbandit
  • Exploit vulnerabilities such as SQL Injection, IDOR, LFI, and malicious file uploads
  • Use macros, session handling rules, SOCKS proxies, and Match and Replace
  • Augment your workflow with free Burp Extensions
  • Fuzz user inputs to discover critical vulnerabilities
Intermediate Level MCSI Certification Beginner
ic-certificate Bootcamp
cpe-points 36
ic-money $450

Course Overview

Master Burp Suite and speed up your web application testing!

Burp Suite is a tool for web application security testing. It is a Java based platform that comes as a Rich Client Platform (RCP) application. The Burp Suite toolkit contains a number of individual tools, each of which performs a specific function within the security testing process. The tools work together seamlessly and can be extended using a powerful API.

This bootcamp teaches all the key tools and features in Burp Suite Community edition. It will give you the skills and knowledge to safely and effectively test web applications. This course is ideal for beginners who wish to learn the very basics of application penetration testing.

Mastering the Repeater

The Repeater tool is one of the main tools in Burp Suite. It allows for the user to intercept and modify traffic. The Repeater tool is very useful for testing web applications. It can be used to test for vulnerabilities such as SQL injection and cross-site scripting.

Mastering the Intruder

Burp Intruder is a powerful tool that automates customized web application attacks. It is adaptable and can be used for a wide range of activities, from guessing web directories to actively exploiting sophisticated flaws. Burp Intruder is an essential tool for any pentester or security researcher.

Mastering the Sequencer

Burp Sequencer is a tool for evaluating the randomness quality of a set of data elements. It can be used to test session tokens and other key data items that are meant to be unpredictable. The tool works by inputting a set of data elements and then outputting a "randomness score" for each element. The higher the score, the more random the element is.

Mastering Clickbandit

Burp Clickbandit is a clickjacking attack generator tool. When you discover a web page that could be vulnerable to clickjacking, you can use Burp Clickbandit to create a payload and verify that the vulnerability can be exploited. Clickjacking is a type of attack where the attacker tricks the user into clicking on a button or link that they did not intend to. This can be done by placing the button or link on top of another element on the page, such as an ad or an innocent looking button. When the user clicks on the element, they are actually clicking on the hidden button or link, which can lead to them performing an action that they did not intend to, such as installing malware.

Using Burp Suite Extensions

Burp Suite Extensions are pieces of code that can be used to extend the functionality of the Burp Suite. These extensions can be written in the Java programming language and are typically used to add new features or to automate tasks. The Burp Suite provides a set of APIs that can be used by extensions to interact with the various components of the suite.

Identifying Web Vulnerabilities

This bootcamp will teach you how to use Burp Suite to identify the most common web vulnerabilities. You'll learn how to configure Burp Suite to your needs, and how to use its various features to assess the security of web applications. By the end of this bootcamp, you'll be able to use Burp Suite to confidently and effectively find and exploit common web vulnerabilities.

  • SQL Injection
  • XML Injection
  • Directory Traversal
  • Local File Inclusion
  • Insecure Direct Object References (IDOR)
  • Cross-Site Request Forgery (CSRF)
  • Missing Anti-Automation

Testing Mobile Applications and Web Services

Burp Suite is a powerful integrated platform for attacking web applications. It contains all of the necessary tools for testing mobile applications and web services. This bootcamp will teach you how to use Burp Suite to test mobile applications and web services. Android and iOS are both covered.

Training Modules

This course provides you with multiple training modules, each of which is designed to teach you practical skills that can help you solve important cyber problems. Each module offers exercises that will help you build your skills and capabilities.

  • BU-01: Getting Started with Burp Suite - 6 exercises
  • BU-02: Configuring Burp Suite - 6 exercises
  • BU-03: Hands-On with Burp Suite - 8 exercises
  • BU-04: Burp Suite Extended Capabilities - 5 exercises
  • BU-05: Burp Suite Extensions - 5 exercises
  • BU-06: Mobile Penetration Testing - 5 exercises
  • BU-07: Fuzzing with Burp Suite - 6 exercises

Certificate of Completion

You will receive a Certificate of Completion when you complete this course.

A Certificate of Completion can be very beneficial, especially when job hunting. It proves that you have completed a course and can be a great way to stand out among other candidates. Even if you do not have much experience, it shows that you are willing to learn and have the basic skills required for the job. In addition, some employers may require a Certificate of Completion for certain positions. Therefore, adding it to your portfolio is always an excellent choice.

Career Outcomes

This bootcamp is for aspiring penetration testers. You will learn how to use one of the most popular tool that professionals use to deliver application penetration tests.

Certification Detail

MCSI Bootcamps are high-quality training exercises created by seasoned professionals to help beginners learn vital cyber security skills faster. Our bootcamps have an established track record of achievement, with a high-rate of graduation success.

If you are seeking practical cyber training that will accelerate your career, our bootcamps are the perfect solution.

Sample Exercises

Use Burp Suite To Fuzz Parameters And Identify Blind SQL Vulnerabilities

exercise

Use Burp Suite's Sequencer Feature To Identify Weak Session Tokens And Compromise A User Account

exercise

Configure SSH SOCKS Proxy With Burp Suite To Tunnel All Testing Traffic Through A Cloud Server

exercise

Our Instructors

Student exercises are reviewed and graded by multiple instructors. This one-of-a-kind approach allows you to get highly personalized input from a number of successful professionals.

MCSI's teachers bring real-world experience and knowledge to the classroom, ensuring that students have the skills they need to excel in the field of information security. Due to their extensive experience in penetration testing, vulnerability assessment, reverse engineering, incident response, digital forensics, and exploit development, students will understand the most up-to-date defensive and offensive cybersecurity strategies and procedures.

Our instructors are passionate about information security and are always looking to further their own knowledge. Students who attend an MCSI course can be confident that they are learning from some of the best in the business. They can adapt their teaching approaches to match the demands of any student, regardless of their degree of expertise.

The MCSI team strives to provide the most comprehensive and up-to-date cybersecurity training available. Whether you are a seasoned security professional or new to the field, MCSI has a course that will meet your needs.

Receive personalized feedback from cybersecurity experts:

  • Overcome challenges and hurdles preventing you from advancing your skills
  • Receive guidance on how to focus your training efforts and avoid wasting time
  • Learn how to meet the industry's quality standards and produce high-quality work
  • When you're stuck, go to a support forum or ask inquiries to the instructors right on the platform

Help and Support

24/7 Discord Community

If you're looking for additional support during your studies, consider joining our Discord server. Our community of fellow students and instructors is always available to provide help and answer any questions you may have.

Personalized Support

Your submissions will be reviewed by MCSI instructors, who will provide you with personalized feedback. This input is critical since it can assist you in identifying the areas where you need to enhance your skills. The instructor's feedback will also tell you how well you did an exercise and what you can do to improve your performance even further.

Click here to see an example of personalized feedback.

Our personalized support will take your skills to the next level. Read what a student says about it:

Quick Questions

If you have any questions or need clarification on any of the exercises, MCSI offers a Quick Questions section on each exercise where you can ask for help. This is a great resource to use if you need assistance. This feature is only available for paid courses.

Actively Maintained Course

This course is actively maintained to ensure that it is current and error-free. We want to ensure that you have the best possible experience while taking this course, which includes having access to accurate and current information. This course is also tested for flaws on a regular basis, so you can be sure you're getting a high-quality product.

This course is constantly updated with the support of trustworthy industry peers to ensure that students are acquiring the most up-to-date information and skills. This dedication to staying ahead of the curve is what distinguishes this course as one of the greatest in the market.

Prerequisites

Proficiency in the English language

You must have the ability to comfortably read and understand IT documentation written in English. Ideally, they have an IELTS score of 6.5 with no band less than 6 (or equivalent).

Note: You can register for this course without having undertaken an English test.

Training Laptop Requirement

This course can be completed on a standard training laptop. To ensure you have the necessary hardware to complete the course, your machine should meet the following specifications:

  • 64-bit Intel i5/i7 2.0+ GHz processor or equivalent
  • 8GB of RAM
  • Ability to run at least (1) virtual machine using Virtual Box, or an equivalent virtualization software
  • Windows 10 or later, macOS 10 or later, or Linux
  • Local administrator privileges
Do you support older operating systems?

Yes. Many of the exercises can be completed on older OS versions. A few of our students are successfully using older equipment to learn cyber security.

Knowledge and Technical Requirements

  • Knowledge of the HTTP protocol
  • Knowledge of HTML, JavaScript, and CSS
  • Ability to install, configure and maintain virtual machines
  • Ability to install software utilities and use command line tools

Lab Environment

This course teaches you how to setup and configure your own cybersecurity lab.

There are numerous advantages to creating your own cybersecurity lab rather than paying for one. The cost savings are perhaps the most evident benefit. When compared to the expense of licensing a pre-built lab, creating your own lab can save you thousands of dollars. You also have the option of customizing the lab environment to meet your specific requirements. You can, for example, select the hardware and software that will be used in your lab.

Another advantage of setting up your own cybersecurity lab is that it allows you to learn new skills. Building a lab from the ground up necessitates knowledge of networking, system administration, and other technical subjects. This experience is invaluable in your career as a cybersecurity professional.

We frequently see students who can complete a task in a pre-built lab but cannot complete the same task at work. This is because these labs are meant to lessen work complexity, thereby creating an illusion of personal capabilities. It's also worth noting that you'll be expected to set up your own lab to test tools and techniques in the workplace. Employers may give you the resources to set up virtual computers and networks, but it will be up to you to manage the lab environment and maintain your tools.

Finally, you should know that pre-built labs are not commonly licensed by top cybersecurity professionals. They've realized that setting up a lab is simple, efficient, adaptable, cost-effective, and that it sparks creativity. It also nullifies risk of performing unauthorized actions against systems provisioned by a third-party.

Why is the MCSI Method™ World Class?

why MCSI

Comprehensive, Effective, Exceeds Standards

MCSI offers training suitable for beginners and experts alike. We teach skills immediately applicable in the field. You will be confident in your ability to solve real-world problems. The MCSI platform will automatically create a portfolio to help you apply for jobs.

why MCSI

Exercises reviewed by experts

MCSI instructors are seasoned industry experts. We provide you with concise, relevant, and positive feedback for all your exercises, even if you don't succeed on the first try. Our feedback is specific to your work and only relevant to the exercise you submitted. You have the option to resubmit until you pass.

why MCSI

Supported by Cognitive Science

The MCSI Method is supported by cognitive science. We break down complex topics into small tasks related to the end goal. This prevents cognitive overload. Our essential tools are rubrics and feedback. Everything is practical. We simulate the ways of working professionals employ in the field.

Enrollment and Fees

MCSI Bootcamps

Unlock all the MCSI bootcamps with a single purchase:

Terms and Conditions

  • No discounts
  • No refunds
  • No transfers
  • No renewal fees
  • No hidden fees

How does MCSI Compare?

If you are looking for a certification that will give you an edge in the job market, look no further than MCSI certifications. Thanks to our innovative approach, cybersecurity training is more affordable and effective than traditional methods.

MCSI Bootcamps Traditional Vendors Conference Workshop University Bootcamps Cyber Ranges
Cost $450 $5,000+ $4,000+ $5,000+ $3,000+
Hours of training 300+ hours 40-48 16-40 40 40-100
Online Yes Some No No Yes
Practical 100% 50% 50% 50% 100%
Maintenance Level High Low Low Low Low
Free Trial Yes No No No No
Access to instructors Yes Some Yes Yes Some

Our pricing is more affordable than our competitors because we have reinvented how cyber training is done online. Our innovative Online Learning Platform is highly effective at teaching cyber security. The platform provides a more engaging and interactive learning experience than traditional methods, which helps students learn and retain skills better. Try the free version and see for yourself.

Enroll now with lifetime access for $450

Bloom's Taxonomy

Bloom's Taxonomy is a system for categorizing distinct stages of intellectual growth. It is used in education to assist students comprehend and learn material more effectively. MCSI teaches students how to apply, analyze, evaluate, and create at the highest levels of the taxonomy. The majority of our competitors are simply concerned with getting you to remember concepts.

The intellectual developments outlined in Bloom's Taxonomy are directly tied to your capacity to advance in your cyber security career. Employers look for people who can solve challenges that are worth paying for. With us, you'll learn practical skills that are in demand and applicable to a wide range of cyber occupations.

Industry Recognized Skills

MCSI credentials are well-respected around the world, and organisations searching for people with real cyber security abilities seek them out. Obtaining an MCSI certification verifies your understanding of critical cyber security topics as well as your ability to provide real-world results.

The ability of MCSI's training programme to give students with real-world, hands-on experience is unrivalled. Students must conduct their own research and develop their own answers in order to complete our practical exercises, which are meant to give them the skills they need to be successful in the field.

With MCSI, you will build a comprehensive cybersecurity portfolio of your skills as you complete exercises. This portfolio is a powerful tool for displaying your cybersecurity knowledge and abilities. A portfolio, as opposed to typical resumes and paper-based credentials, presents a more thorough summary of your skills and accomplishments.

Students Feedback

Here's what students say about the MCSI Method™ and our Online Learning Platform:

Student Testimonials

Information Security Professionals made a median salary of $103,590 in 2020. Cybersecurity roles are regularly ranked #1 jobs in the United States.

If you are looking to increase your earning potential, this course will put you on track for jobs that offer a salary of $75,000 to $150,000 per year. Why spend tens of thousands of dollars on degrees or theoretical certifications when you can develop in-demand practical skills in a shorter amount of time?

Enroll now with lifetime access for $450

Frequently Asked Questions

What is the MCSI Method™?

Common Questions

  • Will I receive a certificate?
    • Yes! You will receive a Certificate of Completion when you complete the bootcamp.
  • Are solutions included in the bootcamps?
    • Yes, for some exercises. Our method of teaching cyber security consists of challenging you with real-world problem statements that you're expected to research and solve by doing your own research. This is how you'll be expected to work in the field. When you fail an exercise, we provide you with constructive feedback to improve and try again.
  • Do the videos provides the answers to exercises?
    • For exercises listed in bootcamps, yes, the videos show the answers.
  • Do I need to purchase cybersecurity tools or subscriptions?
    • No. Only free or trial versions are used in our exercises. You do not require making any purchases.

DO YOU HAVE A QUESTION?

We'll respond within 24 hours

Visit our Frequently Asked Questions (FAQ) page for answers to the most common questions we receive.

Ready to learn hands-on cyber security skills online?

Try 100 hours for free