AppSec related lessons from full lecture (on master) with reduced
number of exercises which require lots of interaction. Aimed at
participant groups >30 and assumes the use of a webinar system which
offers Q&A/chat and voting capabilities.
-
- Motivation (Vulnerabilities, Exploits, Threat Actors, Case Studies)
- Open Web Application Security Project (OWASP)
- Cross-Site Scripting (XSS)
- Injection
- Authentication Flaws
- Authorization Flaws
- Sensitive Data
- Insecure Dependencies & Configuration
- XXE & Deserialization
- Secure Development Lifecycle
This work is licensed under a Creative Commons Attribution-ShareAlike 4.0 International License.
