Application Security
Presentations and examples
Exercises
- Exercises set 1, Cryptography
Due date: 12.3.2014
- Exercises set 2, SQL Injection, XSS
.NET,
Java "Kangaroos",
Java "Tigers",
Python,
Due date: 19.3.2014
- Exercises set 3, Injections, CSRF and other attacks
Due date: 26.3.2014
- Exercises set 4, Certificates
.NET,
Java "Kangaroos",
Java "Tigers",
Python,
Due date: 10.4.2014
- Exercises set 5, Access Control
.NET,
Java "Kangaroos",
Java "Tigers",
Python,
Due date: 17.4.2014
- Exercises set 6, Tokens and web services
.NET,
Java "Kangaroos",
Java "Tigers",
Python,
Due date: 7.5.2014
- Exercises set 7, OAuth2 and OpenID Connect
.NET,
Java "Kangaroos",
Java "Tigers",
Python,
Due date: 21.5.2014
- Exercises set 8, Database security
.NET,
Java "Kangaroos",
Java "Tigers",
Python,
Due date: 4.6.2014
- Exercises set 9, Penetration tests
.NET,
Java "Kangaroos",
Java "Tigers",
Python,
Due date: 11.6.2014
Roadmap
- 26.2 Introduction, Cryptography in .NET
- 5.3 OWASP Top 10, part 1
- 12.3 OWASP Top 10, part 2
- 19.3 Certificates
- 26.3 Access Control
- 16.4 Web Services Security
- 23.4 JWT, OAuth2
- 7.5 OpenID Connect
- 14.5 WS-Trust, WS-Federation
- 21.5 Security in a database
- 4.6 Penetration tests