
Secure .NET Application Development with OWASP is an intermediate Cybersecurity course delivered in person and online by SBEEH Software Academy in Amman, Jordan.
2 Days (16 Hours)
Last updated August 16, 2026
Main Topics:
Detailed Subtopics:
Hands-On Lab: Exploit a deliberately vulnerable ASP.NET Core login form using SQL injection to bypass authentication, then fix the vulnerability using parameterized queries and ASP.NET Core Identity's secure password hashing.
Real-World Scenario: A penetration test on a client's application found that an attacker could log in as any user by entering a crafted username, without knowing any password.
Learning Outcome: Participants can identify and correctly remediate injection and authentication vulnerabilities in ASP.NET Core applications.
Main Topics:
Detailed Subtopics:
Hands-On Lab: Exploit a stored XSS vulnerability and a broken access control flaw (viewing another user's data by changing an ID in the URL) in a sample application, then fix both, and configure security headers for the application.
Real-World Scenario: A user reports that changing a number in the URL of an invoice page lets them view other customers' invoices.
Learning Outcome: Participants leave able to identify and fix the OWASP Top 10 vulnerability classes in real ASP.NET Core code and configure baseline security headers correctly.
This is a hands-on technical course for developers who write ASP.NET Core code, not a general security awareness session for non-developers.
Working ASP.NET Core development experience is required; this is not an introductory or non-technical security course.
Upon successful completion of the training, participants will receive an official Certificate of Completion.

A look at our training sessions — hands-on training sessions with professionals across Jordan and the GCC.
Reach out and we'll help you plan the right training for your team.