Apply a detailed four-step methodology to Web application penetration tests: recognition, mapping, discovery and exploitation
Analyze results of automated web test tools to validate results, determine their impact on the company, and eliminate false positives
Manually discover the main web applications
Use Python to create test and operating scripts during an intrusion test
Discover and exploit SQL* injection faults to determine the real risk to the victim organization
Create configurations and test payloads for other web attacks.