Overview
Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only!
Explore the complexities of authorization testing for web applications in this 47-minute conference talk from AppSec Ca 2016. Delve into common authorization insecurity patterns and the challenges faced by pen-testers when evaluating access controls. Learn effective methods for mapping intricate authorization models and discover AuthMatrix, a Burp Suite extension designed to streamline and simplify authorization test cases. Gain insights from security engineer Mick Ayzenberg as he shares his expertise on developing tools to reduce redundancy in testing unique targets and improve the overall process of detecting vulnerabilities in web application authorization systems.
Syllabus
AuthMatrix: Simplified Authorization Testing for Web Applications - Mick Ayzenberg - AppSec Ca 2016
Taught by
OWASP Foundation