csc 299 SOPH LAB IN APPLIED COMPUTING

profilelouxiadefengjing
Week_8_Slides.pptx

Security Training Platforms Pt. 3

By Li-Wey Lu

Agenda

Homework

Quiz

Security Training Platforms

Next Week

Homework

Homework – Extension

Week 6 Homework has been extended to 11/12

Homework – Week 3

Graded with Feedback

Homework – Checklist

Simplified version of OWASP Security Testing Checklist

Available on D2L at Content > General > Checklist

Helpful for Homework

Helpful for Final

Homework – Upcoming

No more homework and quizzes

Focus on completing the remaining assignments

Extra credit is available

Homework – Due Dates

Due November 12th (3 Weeks From Now):

Week 3 Homework (Missing 3 Submissions)

Week 4 Homework (Missing 8 Submissions)

Week 5 Homework (Missing 21 Submissions)

Week 6 Homework (Missing 5 Submissions)

Week 7 Homework (Missing 24 Submissions)

Homework is 30% of final grade

I am available via Email, Slack, or Office Hours

Quiz

Quiz – Week 7 Answers

Q1. What does SDLC stand for?

A1. Software Development Life Cycle

Q2. Which of the following sections is not part of the OWASP Testing Checklist?

A2. Server Testing

Q3. What section does Testing for Privilege Escalation fall under?

A3. Authorization Testing

Q4. A testing methodology should always be the same no matter the situation

A4. False

Q5. Web Crawlers can assist with mapping a web application.

A5. True

Security Training Platforms

Security Training Platforms – CTF

CTFd (Scoring Platform)

https://ctfd.io/

http://10.15.1.10:8088

OWASP Juice Shop (Training Platform)

https://www2.owasp.org/www-project-juice-shop/

http://10.15.1.10:8089

Next Week

Next Week

Topic:

Security Training Platforms Pt. 4

Assignments:

Week 3 Homework

Week 4 Homework

Week 5 Homework

Week 6 Homework

Week 7 Homework