Web Security Workshop
Web Security Workshop
Use nmap
Create a user
ssh username@127.0.0.1
Exercise 2. Password Sniffing using Wireshark
Task 2.2 Launch a vulnerable website which does not use https
http://testphp.vulnweb.com/login.php
Task 2.1
Launch Webgoat
https://hackmd.io/@DaLaw2/ByD70wAM2#Cross-Site-Scripting
Task 4 Dictionary Attack
Password spraying
Create a file
Dictionary Attack
more rockyou.txt
cat rockyou.txt
Task 5 ZAP