Web Security Workshop
Web Security Workshop
Use nmap
Create a user
ssh [email protected]
Exercise 2. Password Sniffing using Wireshark
Task 2.2 Launch a vulnerable website which does not use https
http://testphp.vulnweb.com/login.php
Task 2.1
Launch Webgoat
https://hackmd.io/@DaLaw2/ByD70wAM2#Cross-Site-Scripting
Task 4 Dictionary Attack
Password spraying
Create a file
Dictionary Attack
more rockyou.txt
cat rockyou.txt
Task 5 ZAP