Web // Application Attack Surface

Application Security

This domain turns web and API material into an application-security reference focused on behaviour, trust boundaries, state handling, tooling and the patterns that repeatedly produce exploitable conditions.

13 notescurated referencespublic research surface

Domain overview

This domain focuses on how web applications behave under stress, misuse and hostile input. It links attack surface discovery, manual testing and tool-assisted validation into a defensible application-security workflow.

Related certification context

These paths map closely to application-security work covered on this page.

Curated public references

Brief index

brief

Introduction

Application-layer testing patterns for behaviour, trust boundaries and exploit validation.

3 focus points0 links
brief

Burp Suite Professional

A practical interception and testing platform for manual web assessment, replay and exploit verification.

10 focus points6 links
brief

Quick Reference

Application-layer testing patterns for behaviour, trust boundaries and exploit validation.

10 focus points0 links