Practical exploitation of Drupal security vulnerabilities

40:56 · 24 Sep 2024 – 27 Sep 2024 · YouTube

About this talk

This talk focuses on the implications of website security breaches, specifically within the context of Drupal. The speaker explores various types of vulnerabilities, including Cross Site Scripting (XSS), Remote Code Execution (RCE), Server Side Request Forgery (SSRF), SQL Injection (SQLi), and Unsafe Deserialization, demonstrating how these can be exploited by malicious actors. Attendees gain insights into the significance of addressing these security issues beyond surface-level alerts and learn effective strategies for detection, mitigation, and prevention of web application vulnerabilities. This session is suitable for beginners eager to enhance their understanding of web security.

From event

DrupalCon Barcelona 2024

24 Sep 2024 – 27 Sep 2024

All event videos
Back to Watch