Web application security: teaching resources and tools

Basil Hamdan · Journal of computing sciences in colleges · 2017

The workshop aims to introduce participants to the basics of Web Application Security. Attendees interested in cybersecurity in general and Web Application Security in particular will be introduced to a host of open-source and readily available technologies, resources, and tools. Depending on their specific teaching needs, participants stand to benefit from the workshop in two ways: (1) revamp the Web applications security module within their existing cybersecurity courses and/or (2) develop a stand-alone Web Application Security course. The workshop will guide the participants through a series of hands-on exercises to demonstrate different types of Web application attacks (e.g., cross-site scripting, SQL injection, and session hijacking). Participating faculty will be provided with a pre-built virtual machine (Ubuntu Linux) with all the workshop resources (vulnerable Web applications, tools, and exercises) pre-installed and configured. To maximize learning, we recommend attendees to bring laptops with virtualization software (e.g., VMware Player and/or VirtualBox) pre-installed on them.

Read the paper · More papers on PaperTik