Video Description

This lesson focuses on application security, specifically: - Security by design: anything that is built - Security by default: software has doors closed and can only be opened by users, nothing is installed and nothing is enabled - Security by deployment: Deploy an application in a secure manner and lockdown deployment process and minimize user interaction. Participants also learn about general application issues: - Error and exception handling - Privilege escalation - Improper storage - Input validation - Race conditions - Resource exhaustion The lesson also teaches about issues specifically related to web applications: - Cross site scripting - Cross site request forgery - Click jacking - State/session management - SQL injection - Cookies

