WEBVTT

0:00:00.140000 --> 0:00:04.960000
 Hello everyone and welcome to the authentication
 and session management

0:00:04.960000 --> 0:00:07.300000
 testing course summary.

0:00:07.300000 --> 0:00:11.840000
 So this is going to be the
 final video in this course.

0:00:11.840000 --> 0:00:16.080000
 And as I mentioned, when we got started
 with this course, this video is

0:00:16.080000 --> 0:00:22.880000
 going to be very important because it
 will allow us to essentially review

0:00:22.880000 --> 0:00:25.300000
 or go over what we covered
 in this course.

0:00:25.300000 --> 0:00:29.820000
 And more importantly, ensure that again,
 I covered everything that I was

0:00:29.820000 --> 0:00:37.480000
 supposed to or that I laid out in the course
 overview video and more importantly,

0:00:37.480000 --> 0:00:44.040000
 whether, you know, we actually, or
 I actually met all of the promised

0:00:44.040000 --> 0:00:48.760000
 deliverables with regards to what you
 should know and what you should

0:00:48.760000 --> 0:00:51.020000
 be able to do by the end of this course.

0:00:51.020000 --> 0:00:57.780000
 So, again, everything is pretty much
 the same as it was with regards to

0:00:57.780000 --> 0:01:04.500000
 the key concepts that we laid out in
 the course overview or introduction.

0:01:04.500000 --> 0:01:08.980000
 So let's just recap what some
 of the key concepts were.

0:01:08.980000 --> 0:01:12.980000
 And I think you'll sort of agree with
 me that we covered all bases with

0:01:12.980000 --> 0:01:15.140000
 regards to the key concept.

0:01:15.140000 --> 0:01:19.260000
 So first was, you know, modern authentication
 and session management mechanisms

0:01:19.260000 --> 0:01:20.620000
 in web applications.

0:01:20.620000 --> 0:01:21.800000
 You know, we covered that.

0:01:21.800000 --> 0:01:24.060000
 I would say quite well.

0:01:24.060000 --> 0:01:29.120000
 Pretty much most of the vulnerabilities
 you typically expect to find there

0:01:29.120000 --> 0:01:33.140000
 or within those two types
 of tests or testing.

0:01:33.140000 --> 0:01:39.080000
 Secondly, you know, testing for, you
 know, the techniques or for assessing

0:01:39.080000 --> 0:01:41.260000
 and testing authentication mechanisms.

0:01:41.260000 --> 0:01:47.060000
 Indeed, we covered, you know, various
 practical examples, mostly in real

0:01:47.060000 --> 0:01:48.540000
 world web applications.

0:01:48.540000 --> 0:01:52.000000
 So you, you know, I think we cover that
 quite extensively and quite well,

0:01:52.000000 --> 0:01:53.860000
 if you don't mind me saying.

0:01:53.860000 --> 0:01:58.140000
 You know, we then have techniques for assessing
 and testing session management

0:01:58.140000 --> 0:02:01.180000
 and, of course, identifying
 vulnerabilities.

0:02:01.180000 --> 0:02:07.440000
 Yeah, we also cover that quite in, you
 know, in a lot of detail with the,

0:02:07.440000 --> 0:02:10.900000
 that was further augmented
 by various examples.

0:02:10.900000 --> 0:02:16.140000
 And scenarios and that was further augmented
 by practical labs or practical

0:02:16.140000 --> 0:02:21.140000
 demonstrations that hopefully you
 went through on your own as well.

0:02:21.140000 --> 0:02:25.920000
 And then, of course, with regards to
 what I laid out as advanced topics,

0:02:25.920000 --> 0:02:28.400000
 which is, I'm guessing why
 you're taking this course.

0:02:28.400000 --> 0:02:33.640000
 We also covered JWT or JSON web tokens
 in quite a bit, you know, in quite

0:02:33.640000 --> 0:02:35.100000
 a bit of detail.

0:02:35.100000 --> 0:02:42.040000
 The whole, you know, JWT security, or off
 as well as two factor authentication

0:02:42.040000 --> 0:02:44.840000
 and how to bypass two
 factor authentication.

0:02:44.840000 --> 0:02:47.760000
 So overall, I think we hit each of these.


0:02:47.760000 --> 0:02:51.460000
 If we had to look at them as topics,
 but more, you know, more specifically

0:02:51.460000 --> 0:02:57.640000
 in this case key concepts that
 this course was built on.

0:02:57.640000 --> 0:03:02.740000
 In terms of the learning outcomes, we
 sort of have a recap of, and again,

0:03:02.740000 --> 0:03:06.240000
 this is unchanged from what was laid
 out in the course overview or intro

0:03:06.240000 --> 0:03:10.600000
 video. So let's revisit them and let's
 see whether we actually hit all

0:03:10.600000 --> 0:03:15.680000
 of the learning outcomes or whether,
 you know, you actually know what

0:03:15.680000 --> 0:03:20.940000
 you're supposed to know and you're able
 to perform what you, what I promised

0:03:20.940000 --> 0:03:23.880000
 you would be able to perform
 by the end of the course.

0:03:23.880000 --> 0:03:28.160000
 So, the first of which was, you know, to
 have an understanding of authentication

0:03:28.160000 --> 0:03:31.940000
 and session management, by that I meant
 you should be able to explain

0:03:31.940000 --> 0:03:36.200000
 core concepts of authentication, session
 management and their role in

0:03:36.200000 --> 0:03:41.320000
 web application security and of course,
 a huge focus of this course, a

0:03:41.320000 --> 0:03:44.900000
 huge segment of this course was dedicated
 just to authentication and session

0:03:44.900000 --> 0:03:48.960000
 management, both from a theoretical perspective
 also a practical perspective.

0:03:48.960000 --> 0:03:54.960000
 And then that was further augmented
 by the next learning outcomes being

0:03:54.960000 --> 0:03:58.460000
 authentication testing and
 session management testing.

0:03:58.460000 --> 0:04:01.940000
 So in the case of authentication testing,
 by the end of this course, you

0:04:01.940000 --> 0:04:05.480000
 should be able to identify common authentication
 flaws or vulnerabilities

0:04:05.480000 --> 0:04:08.920000
 and apply the appropriate techniques
 to test for these vulnerabilities.

0:04:08.920000 --> 0:04:13.360000
 And again, indeed, we covered that both
 theoretically as well as practically,

0:04:13.360000 --> 0:04:16.040000
 I would say, in equal measure.

0:04:16.040000 --> 0:04:20.920000
 Almost all of the videos that were focused
 on tests actually had a practical

0:04:20.920000 --> 0:04:24.720000
 demonstration with a live lab that
 you yourself could run through.

0:04:24.720000 --> 0:04:28.560000
 That also applies to session management
 testing where, again, by the end

0:04:28.560000 --> 0:04:32.020000
 of the course, you should, you should
 now be able to identify and exploit

0:04:32.020000 --> 0:04:36.320000
 session management flaws, including
 session fixation, hijacking cross

0:04:36.320000 --> 0:04:40.040000
 side request forgery and other cookie
 security vulnerabilities.

0:04:40.040000 --> 0:04:43.760000
 And again, indeed, we covered
 that to a T, I would say.

0:04:43.760000 --> 0:04:47.720000
 And then of course, we have a test
 token based authentication.

0:04:47.720000 --> 0:04:50.700000
 So by the end of the course, you should,
 you know, you should have an

0:04:50.700000 --> 0:04:56.040000
 understanding of and have the ability
 to test token based authentication

0:04:56.040000 --> 0:05:00.180000
 mechanisms like JWT and OAuth for vulnerabilities,
 including improper

0:05:00.180000 --> 0:05:07.520000
 signing, token leakage and misconfigurations,
 which we actually explored

0:05:07.520000 --> 0:05:12.520000
 quite a bit of. So in this particular
 outcome, in the case of this outcome,

0:05:12.520000 --> 0:05:14.540000
 I think we went beyond
 what I laid out here.

0:05:14.540000 --> 0:05:16.780000
 So I think that's a good thing.

0:05:16.780000 --> 0:05:21.100000
 And we covered both JWT and OAuth in equal
 measure and gave them the respect

0:05:21.100000 --> 0:05:24.480000
 and attention that they deserve,
 especially in the modern context.

0:05:24.480000 --> 0:05:29.280000
 And then finally, test two factor authentication
 or, you know, two, two

0:05:29.280000 --> 0:05:33.420000
 FA bypassing where, you know, by the
 end of the course, you should be

0:05:33.420000 --> 0:05:38.280000
 able now to identify potential bypass
 techniques for various to a systems,

0:05:38.280000 --> 0:05:43.240000
 but with a specific focus on OTP interception
 and replay attacks or, you

0:05:43.240000 --> 0:05:48.800000
 know, bypassing to a fame limitations
 that utilize OTP.

0:05:48.800000 --> 0:05:50.860000
 So overall, I think we did well.

0:05:50.860000 --> 0:05:54.820000
 I think you can also say that or look
 back at, you know, just how far

0:05:54.820000 --> 0:05:58.420000
 you've come from the first
 section to this point.

0:05:58.420000 --> 0:06:04.040000
 And hopefully my wish, my hope and actually,
 you know, my belief is that

0:06:04.040000 --> 0:06:08.280000
 you have come out of this knowing a
 lot more about authentication and

0:06:08.280000 --> 0:06:10.240000
 session management security.

0:06:10.240000 --> 0:06:14.560000
 But more important than that, this knowledge
 and experience has been grounded

0:06:14.560000 --> 0:06:20.180000
 in what I would consider to be, you
 know, what you're likely to find or

0:06:20.180000 --> 0:06:23.480000
 experience in the real world when performing
 a web app and test or, you

0:06:23.480000 --> 0:06:25.380000
 know, bug bounty hunting.

0:06:25.380000 --> 0:06:29.700000
 But with that being said, I also want
 to outline, you know, some of the

0:06:29.700000 --> 0:06:34.520000
 other benefits that this course has
 provided to you or what I think it's

0:06:34.520000 --> 0:06:35.600000
 provided to you.

0:06:35.600000 --> 0:06:39.700000
 You know, outside of just looking at it
 as a, you know, black box of knowledge

0:06:39.700000 --> 0:06:44.040000
 and experience, how, you know, how
 does this apply to the real world.

0:06:44.040000 --> 0:06:47.340000
 So the first of which is a
 comprehensive skill set.

0:06:47.340000 --> 0:06:50.620000
 So this is one of the things that I
 think this course, you know, gives

0:06:50.620000 --> 0:06:55.380000
 you that being the fact that it covers
 essential topics like authentication,

0:06:55.380000 --> 0:06:59.280000
 testing, session management,
 JWT, OAuth and 2FA.

0:06:59.280000 --> 0:07:03.420000
 I think I would be hard pressed myself
 to find a course or a resource

0:07:03.420000 --> 0:07:07.960000
 that actually covers all
 of these comprehensively.

0:07:07.960000 --> 0:07:11.160000
 And the objective there was to, you know,
 sort of give you this historical

0:07:11.160000 --> 0:07:16.080000
 view of authentication and session management,
 but also show you the evolution

0:07:16.080000 --> 0:07:22.160000
 of these mechanisms, as well as the
 evolution of the attacks in tandem,

0:07:22.160000 --> 0:07:26.960000
 right? And that's why, you know, we
 also covered newer technologies like

0:07:26.960000 --> 0:07:30.500000
 JWTs or 2FA authentication.

0:07:30.500000 --> 0:07:35.600000
 And the objective is to give you this,
 you know, very well to essentially

0:07:35.600000 --> 0:07:42.380000
 make you a very well traveled person in
 regards to, you know, authentication,

0:07:42.380000 --> 0:07:52.240000
 testing, session management,
 testing, etcetera.

0:07:52.240000 --> 0:07:55.560000
 And that's given that this course addresses
 contemporary security challenges

0:07:55.560000 --> 0:08:00.380000
 like JWT vulnerabilities or OAuth flaws,
 and of course bypassing multi

0:08:00.380000 --> 0:08:01.560000
 factor authentication.

0:08:01.560000 --> 0:08:04.320000
 And again, I have to revisit
 what I said earlier.

0:08:04.320000 --> 0:08:07.860000
 You know, I myself would be hard pressed
 to find any resource like this

0:08:07.860000 --> 0:08:12.740000
 out there that, you know, essentially
 covers all of these mechanisms or

0:08:12.740000 --> 0:08:16.380000
 technologies, you know, especially
 the modern ones, but also shows you

0:08:16.380000 --> 0:08:21.440000
 if they do exist, the links
 between these mechanisms.

0:08:21.440000 --> 0:08:26.100000
 And so that's why we, you know, speaking
 of the course as a whole, we

0:08:26.100000 --> 0:08:31.100000
 started from authentication, authentication,
 authentication, testing.

0:08:31.100000 --> 0:08:34.160000
 We then went to, and we saw the link
 between authentication, authorization

0:08:34.160000 --> 0:08:35.920000
 and session management.

0:08:35.920000 --> 0:08:37.800000
 We then went into session management.

0:08:37.800000 --> 0:08:41.500000
 We understood, you know, what session
 IDs are all about, what the session

0:08:41.500000 --> 0:08:46.240000
 management process is like, the role
 of cookies, etcetera, that then led

0:08:46.240000 --> 0:08:50.700000
 into session management testing, which
 led us, you know, naturally as

0:08:50.700000 --> 0:08:51.420000
 it did in the region.

0:08:51.420000 --> 0:08:55.720000
 So we also have a real world to the
 use of JWT's, the use of OAuth.

0:08:55.720000 --> 0:08:58.480000
 And so hopefully by the end of the
 course, you've sort of been on that

0:08:58.480000 --> 0:09:03.600000
 journey of seeing what authentication was
 like at, you know, basic fundamental

0:09:03.600000 --> 0:09:07.640000
 level, all the way to bypassing to factor
 authentication, which I think

0:09:07.640000 --> 0:09:12.100000
 is pretty cool. And then finally, this
 is just my personal opinion, but

0:09:12.100000 --> 0:09:17.400000
 I think it gives you much better bug
 bounty intelligence, if you will,

0:09:17.400000 --> 0:09:21.640000
 in that, you know, it prepares you
 as a pen tester or, you know, as a

0:09:21.640000 --> 0:09:28.500000
 bug bounty hunter to essentially improve
 your methodology and help you

0:09:28.500000 --> 0:09:33.100000
 find high impact vulnerabilities that
 are commonly rewarded in big bounty

0:09:33.100000 --> 0:09:37.520000
 programs and to, you know, find vulnerabilities
 that other other individuals

0:09:37.520000 --> 0:09:38.620000
 have missed out on.

0:09:38.620000 --> 0:09:42.980000
 So that was the reason for using
 the WSDGS sort of a reference.

0:09:42.980000 --> 0:09:47.020000
 The OS web security testing guide was
 to show you, you know, just how

0:09:47.020000 --> 0:09:50.700000
 many vulnerabilities exist within, for
 example, session management, right?

0:09:50.700000 --> 0:09:55.240000
 And the fact that, you know, prior
 to using a resource like that, you

0:09:55.240000 --> 0:10:00.940000
 would have limited session, session
 management testing to maybe cross

0:10:00.940000 --> 0:10:05.660000
 site request forgery and a couple of
 others, of course, but now you know,

0:10:05.660000 --> 0:10:09.420000
 you know, just how many
 vulnerabilities exist.

0:10:09.420000 --> 0:10:13.740000
 But more importantly, the variability
 of these vulnerabilities and how

0:10:13.740000 --> 0:10:18.000000
 the target web application that you're
 targeting or attacking will ultimately

0:10:18.000000 --> 0:10:23.680000
 depend on, you know, will essentially
 determine what techniques or what

0:10:23.680000 --> 0:10:27.440000
 tests to run and to essentially give
 you that intelligence of knowing

0:10:27.440000 --> 0:10:30.960000
 when to use or when to test for something
 or, you know, for a specific

0:10:30.960000 --> 0:10:34.560000
 vulnerability, as opposed to just running
 every test, which is not really

0:10:34.560000 --> 0:10:36.860000
 what a smart pen tester does.

0:10:36.860000 --> 0:10:41.520000
 So hopefully that gives you, you know,
 better understanding as to, you

0:10:41.520000 --> 0:10:46.120000
 know, how this information or knowledge
 applies in the real world.

0:10:46.120000 --> 0:10:50.580000
 Taking a look at the next steps and what
 I recommend, I would highly recommend

0:10:50.580000 --> 0:10:54.580000
 that you apply the concepts learned by engaging
 in, you know, CTFs, challenges,

0:10:54.580000 --> 0:11:00.220000
 bug bounty programs or testing out IANES,
 sonar labs or the labs on sonar.

0:11:00.220000 --> 0:11:03.440000
 I'd also recommend that you explore
 or keep up to date with the latest

0:11:03.440000 --> 0:11:10.060000
 OS guides, the OS cheat sheet, security
 cheat sheet, especially the WSTG,

0:11:10.060000 --> 0:11:14.500000
 just keep up to date with, you know,
 at least in the case of this course,

0:11:14.500000 --> 0:11:18.320000
 but widely speaking, the authentication
 and session management tests,

0:11:18.320000 --> 0:11:19.420000
 vulnerabilities, etc.

0:11:19.420000 --> 0:11:23.580000
 I would also recommend that you dive deeper
 into token based authentication

0:11:23.580000 --> 0:11:27.760000
 mechanisms like OAuth and JWT by, you
 know, reviewing their specifications

0:11:27.760000 --> 0:11:29.480000
 and real world implementations.

0:11:29.480000 --> 0:11:34.500000
 I would really emphasize the real world
 implementation side, because again,

0:11:34.500000 --> 0:11:39.980000
 the more you expose yourself to how
 these technologies are or mechanisms

0:11:39.980000 --> 0:11:43.720000
 are implemented in the real world, the
 better that makes you as a tester

0:11:43.720000 --> 0:11:48.120000
 and the more that improves your ability
 to identify these vulnerabilities

0:11:48.120000 --> 0:11:52.380000
 in the world. And finally, I would recommend
 that you start applying your

0:11:52.380000 --> 0:11:55.640000
 skills specifically with regards to
 the vulnerabilities outlined in this

0:11:55.640000 --> 0:12:00.220000
 course to bug bounty programs, you know,
 on hacker one, bug crowd, etc.

0:12:00.220000 --> 0:12:05.160000
 Read reports related to authentication
 and session management vulnerabilities.

0:12:05.160000 --> 0:12:08.400000
 And of course, practice creating your
 own reports, you know, documenting

0:12:08.400000 --> 0:12:14.520000
 your findings. And, you know, always good
 to include actionable remediation

0:12:14.520000 --> 0:12:19.960000
 steps. So that's my recommendation
 to you in terms of what you should

0:12:19.960000 --> 0:12:25.080000
 do next or where to go on from here
 next, specifically with, in relation

0:12:25.080000 --> 0:12:29.240000
 to authentication and session management
 testing, of course, the other

0:12:29.240000 --> 0:12:32.240000
 courses, but, you know, within
 this learning path.

0:12:32.240000 --> 0:12:36.580000
 But if you want to dive deeper,
 this is what I recommend.

0:12:36.580000 --> 0:12:38.620000
 So that brings us to the
 end of the course.

0:12:38.620000 --> 0:12:40.880000
 Thank you very much for
 making it this far.

0:12:40.880000 --> 0:12:43.740000
 If you have made it this far and I
 would highly recommend that you go

0:12:43.740000 --> 0:12:45.540000
 through the labs again.

0:12:45.540000 --> 0:12:49.980000
 You know, never hurts and the labs for the
 most part have all the documentation

0:12:49.980000 --> 0:12:54.580000
 in alignment with the, you know, the
 demonstrations I gave you, but don't

0:12:54.580000 --> 0:12:56.140000
 take too much of your time.

0:12:56.140000 --> 0:12:58.860000
 That's going to be it from from my end.

0:12:58.860000 --> 0:13:01.980000
 And hopefully I'll be seeing
 you in another course.

