Wednesday, May 05, 2010

Web Application Exploits and Defenses

Web Application Exploits and Defenses [jarlsberg]

Check out this Web Application Security workshop and challenge setup by Google. Best resource to get started in web application security.


In Google's words -


Want to beat the hackers at their own game?

  • Learn how hackers find security vulnerabilities!
  • Learn how hackers exploit web applications!
  • Learn how to stop them!
This codelab shows how web application vulnerabilities can be exploited and how to defend against these attacks.


And the warning -
WARNING: Accessing or attacking a computer system without authorization is illegal in many jurisdictions. While doing this codelab, you are specifically granted authorization to attack the Jarlsberg application as directed. You may not attack Jarlsberg in ways other than described in this codelab, nor may you attack App Engine directly or any other Google service. You should use what you learn from the codelab to make your own applications more secure. You should not use it to attack any applications other than your own, and only do that with permission from the appropriate authorities (e.g., your company's security team).

0 comments:

Post a Comment