Explore the world of cybersecurity through a live hacking demonstration that exposes vulnerabilities in open source modules. Dive into a 50-minute conference talk from Devoxx Poland 2019 that uses a sample application, Goof, to showcase various security risks. Learn how to identify, exploit, and mitigate issues such as the infamous Struts vulnerability and Spring Break. Gain insights into DevSecOps practices, dependency management, and the importance of scrutinizing third-party code. Witness terminal hacks, regular expression exploits, and the dangers of untrusted data. Discover practical solutions to enhance your application's security and understand the critical steps needed before pushing code to production.
Overview
Syllabus
Introduction
DevSecOps
Demo
Attacking Struts
Dependencies
Open Source
Hacks
Terminal Hack
Regular Expressions
Untrusted Data
The Solution
Push to Production
Taught by
Devoxx