Security Blog | It’s all about Security – Security Blog -

May/10

10

Jarlsberg – Web Application Exploits and Defenses

Jarlsber

A aparut un nou tool, creat chiar de ‘marele’ Google.
Ce ofera acest tool?!

Learn how hackers find security vulnerabilities!
Learn how hackers exploit web applications!
Learn how to stop them!

This codelab shows how web application vulnerabilities can be exploited and how to defend against these attacks. The best way to learn things is by doing, so you'll get a chance to do some real penetration testing, actually exploiting a real application. Specifically, you'll learn the following:

How an application can be attacked using common web security vulnerabilities, like cross-site scripting vulnerabilities (XSS) and cross-site request forgery (XSRF).
How to find, fix, and avoid these common vulnerabilities and other bugs that have a security impact, such as denial-of-service, information disclosure, or remote code execution.

To get the most out of this lab, you should have some familiarity with how a web application works (e.g., general knowledge of HTML, templates, cookies, AJAX, etc.).

O sa il incerc si eu, dupa licenta, ca deocamdata nu am timp. Daca ati reusit sa il testati voi, va rog dati-va cu parerea, sa stiu daca merita sa il incerc.
Apropo, NU sunt fan Google.

Website: http://jarlsberg.appspot.com/
Download: http://jarlsberg.appspot.com/jarlsberg-code.zip

· · · · · · ·

2 comments

  • ursu123 · May 11, 2010 at 12:50 pm

    L’am incercat eu, dar nu merge Jarlsberg’u’ – n’am reusit nici sa imi fac cont, nici sa vad alte homepage-uri – ambele fiind primele taskuri din tutorial. Posibil sa fie din cauza proxy-ului de la munca, am sa mai incerc acasa. Multam fain pentru link, oricum!

  • Author comment by inSecure · May 11, 2010 at 11:51 pm

    Aha, sa imi spui daca ti-a mers!
    Eu nu l-am incercat, poate vii si cu o descriere cat de cat, ti-as multumi!
    Te astept sa vii cu detalii :)

Leave a Reply

<<

>>

Get Adobe Flash playerPlugin by wpburn.com wordpress themes