web-security
web-security copied to clipboard
Security Summer School, Web track
The linter suggests this. (SPDX license)
I think we should separate what goes into `_index.md`, which is displayed on the website vs what goes into `README.md`, which is displayed when you first access the repo, and...
Opened by @antonio-macovei in the internal repo on Dec 9, 2020.
Create a paragraph in the Framework & API Vulnerabilities session documentation and slides about GraphQL and some of its vulnerabilities and also add one or two challenges.
Present more recon techniques in the session and slides, but pay attention that we should focus on web, not go (too much) into infrastructure/network. We could start by telling about...
New challenge with two open ports: one web honeypot and one FTP with anonymous login or smth with default password
Mention changes in PHP 8 regarding string comparison and the other vulnerabilities presented in the Exotic Attacks session.