LAB 244 - Defending Java Applications Against Security Misconfiguration


Course Overview

This lab simulates a Security Misconfiguration vulnerability found in the DigiExchange Cyber Range. The challenge includes a Web App developed in Java that fails to implement the security principle of “Validate all Untrusted Input Before Using”.

Using Visual Studio Code, participants will analyze code to identify and mitigate instances of “Failure to universally validate policy constraints”. The objective of this lab is to find the vulnerable code and fix the weakness.

Upon completion of this lab participants will:

  • Apply strategic principles to keep Java applications safe from security misconfiguration
  • Demonstrate the skills needed to discover security misconfiguration
  • Fix security misconfiguration in Java

Looking To Learn More?

Request more information on our courses and labs.

Course Details

Course Number: LAB 244

Course Duration: 12 minutes

Course CPE Credits: 0.25

Platform

Standard

Technology

Type

Foreign Languages Available:

  • English