Fork me on GitHub
#web-security
<
2023-01-10
>
robert-stuttaford12:01:53

@lvh are you aware of any web security courseware worth doing? we've some young new joiners on our team and i'd like to give them a solid start in this arena!

lvh19:01:58

Hey! Sorry, missed this notification

lvh19:01:10

It’s not that the web security courseware is bad, it’s just that…. it’s all very just-so

lvh19:01:38

ideally you’d be combining it with real hands on experience pretty quickly to get it to stick

lvh19:01:49

the portswigger labs exercises are free and totally fine

robert-stuttaford20:01:49

nice thank you sir

slipset13:01:41

We did something on Pluralsight with Troy Hunt, I found it a bit basic, but might be nice for new joiners. Also we have Ninjio for the whole org, again, a bit basic, but I think it’s nice for the larger org. Also my name is not @lvh

robert-stuttaford13:01:05

thank you not-lvh! 😄

robert-stuttaford14:01:30

ok, so i'm actually specifically looking for training for web app devs - how to not program any of the owasp top 10 in to your code, type thing

robert-stuttaford14:01:48

we've got gen-pop cybersec stuff coming out of our ears, we've even made some of our own 😂

slipset14:01:30

The Pluralsight thing was for web devs