SP: Lab 4
SECURE PROGRAMING LAB 4: WEB ATTACKS
Here are:
- Introduction slides
- Lab handout (Cross Site Request Forgery) and Labsetup.zip
- Checkpoint questions
- SEED Lab Setup Guide
The lab uses the SEED Lab on CSRF. You are welcome to try the SEED Lab Virtual Machine on your own laptop and bring that along rather than use the workstation machines.
If you have extra time you might like to also try the SEED Lab on XSS.
You do not need to submit a lab report to us, but please keep answers to the checkpoint questions for your own use, to check your understanding and when revising the material for the lab.
Please do not post solutions on any forum. If solutions are distributed it will spoil the experience for other students using SEED labs around the world.
The main place to get help is during the lab session, but we can answer questions in Piazza for a limited time afterwards, for lingering questions or for those unable to attend because of timetable clashes or illness. Please note that attendance at labs will be recorded.