| Location | Jun | Jul | Aug | Sep | view later dates |
|---|---|---|---|---|---|
| Location | Oct | Nov | Dec | Jan | view earlier dates |
| King William Street, EC4 | |- | |- | |- | |- | ![]() |
| Location | Oct | Nov | Dec | Jan | view earlier dates |
|---|---|---|---|---|---|
| King William Street, EC4 | |- | |25 | |- | |- | ![]() |

| 25 Nov | 5 or more places available | £1,995 exc VAT | |
| Developing Secure Java Web Applications – Mitigating the OWASP Top 10 Security Vulnerabilities training in King William Street, EC4 | |||
| Manchester | |- | |- | |- | |23 | ![]() |
| Location | Oct | Nov | Dec | Jan | view earlier dates |
|---|---|---|---|---|---|
| Manchester | |- | |- | |- | |- | ![]() |

| 23 Sep | 5 or more places available | £1,995 exc VAT | |
| Developing Secure Java Web Applications – Mitigating the OWASP Top 10 Security Vulnerabilities training in Manchester | |||
This course provides the necessary skills and techniques to identify security risks in Java web applications and mitigate those risks through writing secure code. The course aligns to the OWASP Top 10 most critical web application security risks and takes students through the exploitation of vulnerable code so that they may experience them first hand. It then discusses mitigations in depths and provides students with the opportunity to secure the risks they have just exploited.
The course is presented as a mixture of lectures and hands-on exercises. Students are actively involved in exercising the practices an attacker would employ so that they can fully experience the risks and outcomes of a successful attack first hand. They will also leverage various manual and automated tools to help probe for vulnerabilities in a consistent fashion with what many attackers would use.
Module 1: Introduction to Web Security
Module 2: OWASP #1: Injection
Module 3: OWASP #2: Cross Site Scripting - XSS
Module 4: OWASP #3: Broken Authentication and Session Management
Module 5: OWASP #4: Insecure Direct Object References
Module 6: OWASP #5: Cross-Site Request Forgery - CSRF
Module 7: OWASP #6: Security Misconfiguration
Module 8: OWASP #7: Insecure Cryptographic Storage
Module 9: OWASP #8: Failure to Restrict URL Access
Module 10: OWASP # 9: Insufficient Transport Layer Protection
Module 11: OWASP #10: Unvalidated Redirects and Forwards
Module 12: Other risks and tools
Module 13: Summary
The latest release of Apple’s Operating System is here, and in this blog Principal Technologist for Apple, Scott Hayes examines some of the new features and functionality which make this new release the best yet.
Windows Server 2012 introduces a new technology that allows any application to be enabled to allow SAN based storage to copy files internally rather than be copied by the Windows Server across the network.
The VMware Data Protection backup problem is fairly straight forward to setup, the hardest bit is remembering the initial root password
With huge amounts of machine data generated in dynamic, virtual and cloud infrastructures on a daily basis, there is an acute need to apply analytics-based technologies to solve IT problems. VMware vCenter Log Insight extends VMware’s leadership in analytics capabilities to unstructured data and log files, giving you operational intelligence and deep, enterprise-wide visibility across all tiers of your IT infrastructure and applications, without the need to know the data beforehand.
Nominations for the Microsoft Apprentice of the Year award 2013.