EPAM Security Tech Webinar
"Cross Site scripting – More dangerous than you think"

"SQL Injection: Pwning a windows box from scratch"

language: English



Thursday, July 26,
5:00 - 7:00 PM EET










Register for FREE
Main language
Level
By clicking this button you submit your information to the webinar organizer, who will use it to communicate with you regarding the event and the openings.
Agenda
Ewerson Guimaraes
Senior Security Testing Engineer @ EPAM Poland
Topic: "Cross Site scripting – More dangerous than you think"
- What is an XSS (Cross-site scripting)
- Types of XSS
- Number of vulnerabilities found in 2017 and 2018
- But it's only an alert(1)
- How to exploit it properly
- How not to fix
- How to fix
- Additional security measures
- Tips and Tricks
- Demo
Rener Alberto Farias Silva
Senior Security Testing Engineer @ EPAM Poland
Topic: "SQL Injection: Pwning a windows box from scratch"
- Information Gathering: Using SQL Injection to obtain more information about the target system.
- Get unauthorized access: Taking the control of the web application.
- Take the full control of web server: How the web server and his network could be compromised.
- Bonus: Injecting a malicious binary in the system bypassing the antivirus protection.
Made on
Tilda