Akula Posted June 25, 2012 Report Share Posted June 25, 2012 I am starting to write a Web App Hacking Class for work. Anyone on here interested in looking at it when I am done? I am probably going to run it in September sometime. Quote Link to comment Share on other sites More sharing options...
BIGGU Posted June 25, 2012 Report Share Posted June 25, 2012 I would be interested in seeing it. Quote Link to comment Share on other sites More sharing options...
Supplicium Posted June 25, 2012 Report Share Posted June 25, 2012 in for that Quote Link to comment Share on other sites More sharing options...
AWW$HEEET Posted June 25, 2012 Report Share Posted June 25, 2012 I am starting to write a Web App Hacking Class for work. Anyone on here interested in looking at it when I am done? I am probably going to run it in September sometime. i am completely down. should have my GCIH completed by then. Quote Link to comment Share on other sites More sharing options...
Rally Pat Posted June 25, 2012 Report Share Posted June 25, 2012 Also mildly interested. Quote Link to comment Share on other sites More sharing options...
nyall86 Posted June 25, 2012 Report Share Posted June 25, 2012 Interested. Quote Link to comment Share on other sites More sharing options...
Gergwheel1647545492 Posted June 25, 2012 Report Share Posted June 25, 2012 in for free learning Quote Link to comment Share on other sites More sharing options...
Akula Posted June 25, 2012 Author Report Share Posted June 25, 2012 Ok, looks like I have enough interest to use C-Bus as the test market. Its going to be pretty introductory and we will be hacking a site called the BodgeIt store. Quote Link to comment Share on other sites More sharing options...
zeitgeist57 Posted June 25, 2012 Report Share Posted June 25, 2012 Its going to be pretty introductory HOW introductory? Quote Link to comment Share on other sites More sharing options...
Mowgli1647545497 Posted June 25, 2012 Report Share Posted June 25, 2012 Interested in seeing it as well. Do you own the IP to it? Or is it owned by your company? If you own the IP would you be interested in giving a class elsewhere? Shoot me a PM. Quote Link to comment Share on other sites More sharing options...
dsm_sleeper Posted June 25, 2012 Report Share Posted June 25, 2012 I'm in. Quote Link to comment Share on other sites More sharing options...
AWW$HEEET Posted June 25, 2012 Report Share Posted June 25, 2012 probably sql injections, xss attacks, buffer overflows, etc? Quote Link to comment Share on other sites More sharing options...
Akula Posted June 25, 2012 Author Report Share Posted June 25, 2012 Automated scanning tool for dynamic assessment (that's what I do). Then validating results and extending the knowledge for things like logic flaw testing, finding things that will take you further into the app, etc... It will assume you are going to be interested in web app testing but haven't had formal education in it. Its my class but its for a specific purpose within my company, as I said the focus will on dynamic assessments. Quote Link to comment Share on other sites More sharing options...
CRed05 Posted June 25, 2012 Report Share Posted June 25, 2012 Wouldn't mind checking it out. Quote Link to comment Share on other sites More sharing options...
mrs.cos Posted June 25, 2012 Report Share Posted June 25, 2012 I would as well as Nathan I think Quote Link to comment Share on other sites More sharing options...
unfunnyryan Posted June 25, 2012 Report Share Posted June 25, 2012 In Quote Link to comment Share on other sites More sharing options...
Richard Cranium Posted June 26, 2012 Report Share Posted June 26, 2012 I'd be interested to take a peak. Quote Link to comment Share on other sites More sharing options...
c2cahoon Posted June 26, 2012 Report Share Posted June 26, 2012 Im interested! Quote Link to comment Share on other sites More sharing options...
AWW$HEEET Posted September 12, 2012 Report Share Posted September 12, 2012 Any updates? Just passed my GCIH, so I've had a decent dosing of this. Id like to learn more in depth though. I feel like that curriculum went a mile wide and an inch deep. Quote Link to comment Share on other sites More sharing options...
nurkvinny Posted September 12, 2012 Report Share Posted September 12, 2012 Just out of curiosity, can your automated tool scan against a java app running in an applet? Quote Link to comment Share on other sites More sharing options...
Akula Posted September 12, 2012 Author Report Share Posted September 12, 2012 No, not if it requires a runtime environment. IBM Rational AppScan is the tool that can do that. We scan HTML(4/5)/JavaScript or basically anything that can run on a web browser without a plugin. I have most of the class written and the labs are getting worked out. Been a bit bogged down. Quote Link to comment Share on other sites More sharing options...
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.