{"id":935,"date":"2010-03-16T11:21:00","date_gmt":"2010-03-16T11:21:00","guid":{"rendered":"https:\/\/www-new.brucon.org\/2018\/2010\/03\/16\/announcing-brucon-training-4-assessing-and-exploiting-web-applications-with-samurai-wtf\/"},"modified":"2010-03-16T11:21:00","modified_gmt":"2010-03-16T11:21:00","slug":"announcing-brucon-training-4-assessing-and-exploiting-web-applications-with-samurai-wtf","status":"publish","type":"post","link":"https:\/\/archive.brucon.org\/2023\/2010\/03\/16\/announcing-brucon-training-4-assessing-and-exploiting-web-applications-with-samurai-wtf\/","title":{"rendered":"Announcing BruCON Training #4: Assessing and Exploiting Web Applications with Samurai-WTF"},"content":{"rendered":"<p><span style=\"font-weight: bold\">Course abstract:<\/span><\/p>\n<p>This course will focus on using open source tools to perform web  application assessments. The course will take attendees through the  process of application assessment using the open source tools included  in the Samurai Web Testing Framework Live CD (Samurai-WTF). Day one will  take students through the steps and open source tools used to assess  applications for vulnerabilities. Day two will focus on the exploitation  of web app vulnerabilities, spending half the day on server side  attacks and the other half of the day on client side attacks. The latest  tools and techniques will be use throughout the course, including  several tools developed by the trainers themselves.<\/p>\n<p><b>Justin Searle &#8211; Biography<\/p>\n<p><\/b>Justin Searle, a Senior Security Analyst with InGuardians,  specializes in penetration testing and security architecture. Justin  currently leads the Smart Grid Architecture group of the Cybersecurity  Coordination Task Group (CSCTG) for the National Institute of Standards  and Technologies (NIST) and serves as a member of the Architecture Board  for the Advanced Security Acceleration Project for the Smart Grid  (ASAP-SG) group.<br \/>Previously, Justin served as JetBlue Airway\u2019s IT  Security Architect and has provided top-tier support for the largest  supercomputers in the world. Justin has taught hacking techniques,  forensics, networking, and intrusion detection courses for multiple  universities and corporations.<br \/>Justin has presented at top security  conferences including DEFCON, ToorCon, ShmooCon, and SANS. In his  rapidly dwindling spare time, Justin co-leads prominent open source  projects including The Middler, Samurai Web Testing Framework, and the  social networking pentest tools: Yokoso! and Laudnum. Justin has an MBA  in International Technology and is CISSP and SANS GIAC-certified in  incident handling and hacker techniques (GCIH) and intrusion analysis  (GCIA).<\/p>\n<p>More information on the course can be found <a style=\"font-weight: bold\" href=\"http:\/\/2010.brucon.org\/index.php\/Training_4\">here<\/a><span style=\"font-weight: bold\">.<\/p>\n<p>Related posts:<\/span><\/p>\n<ul>\n<li><a href=\"http:\/\/blog.brucon.org\/2010\/03\/announcing-brucon-training-3-social.html\" class=\"broken_link\" rel=\"nofollow\">Announcing  BruCON Training #3: Social engineering (for pentesters)<\/a><\/li>\n<\/ul>\n<ul>\n<li><a name=\"2047532942449364961\"><\/a><a href=\"http:\/\/blog.brucon.org\/2010\/03\/announcing-brucon-training-2-crash.html\" class=\"broken_link\" rel=\"nofollow\">Announcing  BruCON Training #2: A crash course in pentesting and securing VOIP  networks<\/a><a name=\"7971713263573308365\"><\/a><\/li>\n<li><a href=\"http:\/\/blog.brucon.org\/2010\/03\/announcing-brucon-training-1-pentesting.html\" class=\"broken_link\" rel=\"nofollow\">Announcing  BruCON Training #1: Pentesting High Security Environments<\/a><\/li>\n<\/ul>\n","protected":false},"excerpt":{"rendered":"<p>Course abstract: This course will focus on using open source tools to perform web application assessments. The course will take attendees through the process of application assessment using the open source tools included in the Samurai Web Testing Framework Live CD (Samurai-WTF). Day one will take students through the steps and open source tools used to assess applications for vulnerabilities. Day two will focus on the exploitation of web app vulnerabilities, spending half the day&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[5],"tags":[],"class_list":{"0":"post-935","1":"post","2":"type-post","3":"status-publish","4":"format-standard","6":"category-training"},"menu_order":0,"_links":{"self":[{"href":"https:\/\/archive.brucon.org\/2023\/wp-json\/wp\/v2\/posts\/935","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/archive.brucon.org\/2023\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/archive.brucon.org\/2023\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/archive.brucon.org\/2023\/wp-json\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/archive.brucon.org\/2023\/wp-json\/wp\/v2\/comments?post=935"}],"version-history":[{"count":0,"href":"https:\/\/archive.brucon.org\/2023\/wp-json\/wp\/v2\/posts\/935\/revisions"}],"wp:attachment":[{"href":"https:\/\/archive.brucon.org\/2023\/wp-json\/wp\/v2\/media?parent=935"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/archive.brucon.org\/2023\/wp-json\/wp\/v2\/categories?post=935"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/archive.brucon.org\/2023\/wp-json\/wp\/v2\/tags?post=935"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}