General Security
5 pen testing rules of engagement: What to consider while performing Penetration testing

Penetration testing and ethical hacking are proactive ways of testing web applications by performing attacks that are similar to a real attack that could occur on any given day. They are executed in a controlled way with the objective of finding as many security flaws as possible and to provide feedback on how to mitigate the risks posed by such flaws.

Read more
Web Security
WebGoat 8: An intentionally Insecure Web Application for WebApp Testing

As an instructor, from time to time to teach a concept, I need to perform an actual test to get my point across to the students.  Testing or hacking a live site may have some repercussions that I rather not have to deal with, so using an insecure application locally works great for me.  I […]

Read more