Secure Application Development |
||
|---|---|---|
Hands-on web security
Learning objectives
OverviewThis practical web security module starts with a short, basic introduction on widely used web technologies. With the core mechanisms of these technologies in mind, an overview of web vulnerabilities is given and the most important ones are shortly discussed:
Finally, the participants are guided in a hands-on security lab on exploiting and protecting vulnerable web applications.
PrerequisitesTo fully benefit from this session, participants are advised to bring a laptop that has WebGoat 5.1 and WebScarab installed. WebGoat 5.1 (unzip, click and run edition) can be downloaded from Google Code. The latest version of WebGoat runs on privileged ports, so participants need admininistration/root rights on their laptop. More detailed installation instructions can be found at Google Code and OWASP. For more information on WebGoat consult the WebGoat project home. WebScarab can be downloaded from the OWASP WebScarab project download page. There is more information on the WebScarab project on the OWASP WebScarab project pages. |
||
| Partners: | |||
|---|---|---|---|
|
|
|
|
| Sponsors: | |||
|
|
||
| Affiliates: | |||
|
|
|
|
| webmaster | Login |
Contents of the secappdev.org web site is licensed under a Creative Commons Attribution-Noncommercial 3.0 License. |
|