Completed
Solution
Class Central Classrooms beta
YouTube videos curated by Class Central.
Classroom Contents
Differences Between Web Application Scanning Tools When Scanning for XSS and SQLi
Automatically move to the next video in the Classroom when playback concludes
- 1 Introduction
- 2 Agenda
- 3 About Me
- 4 Verizon Data Breach Report
- 5 Notable Web Breaches
- 6 Automated Web Application Scanning
- 7 Why Johnny Cant Pentest
- 8 Experiment Setup
- 9 Experiment Overview
- 10 Key Findings
- 11 Attack Vectors
- 12 Stored XSS
- 13 Solution
- 14 Known Pitfalls
- 15 CAPTCHAs
- 16 Multistep Logins
- 17 Surf Tokens
- 18 NonStandard Error Messages
- 19 NonStandard Protocol
- 20 Name Level Check
- 21 Component Security