This lab simulates a Cross-Site Scripting (XSS) vulnerability found in the Account All Cyber Range. The challenge includes an HR Back Office System that fails to implement the security principle of “Establish Secure Defaults”.
Leveraging a virtual machine, participants will apply ATT&CK Mitigation “M1051 Update Software” to fix the vulnerable Java Web Application Server Software.
Learning Objectives
On successful completion of this course, learners should have the knowledge and skills required to:
- Understand the ATT&CK Mitigation M1051 Update Software