UUY-CYB 2222 units200 LevelSecond Semester

Web and Mobile Applications Security

B.Sc. Cybersecurity, University of Uyo

Attacking and defending web and mobile applications. Covers the OWASP Top 10 in depth, secure coding practices for Java/Python/Kotlin/Swift, audit and QA testing, and mobile-specific threats on iOS and Android platforms.

On Areté, UUY-CYB 222 comes with

  • 13 lecture-note topics
  • 81 practice questions
  • 62 past-paper questions
  • 2 recommended textbooks
  • an AI tutor that has read this course’s outline and notes
Sign in to study UUY-CYB 222

Free for University of Uyo students — sign in with your email, no password.

Course outline

  1. 01The impact of the internet and web applications on the business world
  2. 02Principles and strategies for the design and implementation of secure applications — writing software that makes it difficult for intruders to exploit security loopholes in applications/code
  3. 03Secure program development for mobile (Android, iOS) and web
  4. 04Delineation of web-based risks, common website attacks, weaknesses, and security best practices
  5. 05Value and importance of vulnerability and security assessment for web and mobile applications
  6. 06Attributes and qualities of secure coding practices
  7. 07Role and importance of audit compliance and quality assurance testing for web/mobile applications
  8. 08Next-generation challenges in securing web/mobile applications and data
  9. 09Lifecycle approach to web/mobile application security

Recommended textbooks

  • The Web Application Hacker's Handbook — Stuttard & Pinto

    2nd ed. — the definitive reference; highly detailed

  • Real-World Bug Hunting — Peter Yaworski

    Practical case studies of real vulnerabilities; very engaging

How to pass UUY-CYB 222

  • PortSwigger Web Security Academy is free and has labs for every OWASP Top 10 vulnerability — essential
  • DVWA (Damn Vulnerable Web Application) is a free practice target you can run locally
  • For every vulnerability, know: how it works, how to exploit it, and how to fix it
  • Bug bounty write-ups on HackerOne and Bugcrowd are the best real-world case studies

Other 200 Level courses

Lecture notes, practice questions and the AI tutor for UUY-CYB 222 are available once you sign in.

Sign in to Areté