Practical exploitation of Drupal security vulnerabilities
About this talk
This talk focuses on the implications of website security breaches, specifically within the context of Drupal. The speaker explores various types of vulnerabilities, including Cross Site Scripting (XSS), Remote Code Execution (RCE), Server Side Request Forgery (SSRF), SQL Injection (SQLi), and Unsafe Deserialization, demonstrating how these can be exploited by malicious actors. Attendees gain insights into the significance of addressing these security issues beyond surface-level alerts and learn effective strategies for detection, mitigation, and prevention of web application vulnerabilities. This session is suitable for beginners eager to enhance their understanding of web security.