Ce talk contient du code
pouvant heurter

la sensibilité des plus crafts.


Welcome to Pangloss !

"all is for the best in the best of all possible worlds"



Julien Topçu

Tech Coach




Comment se faire h4ck3r

bien comme il faut !



' OR '1'='1' LIMIT 1 --



Human Readable Encryption

a.k.a clear-text



Dear Pangloss user,

We are really happy to offer you a 80% discount!!!

This is a limited offer, don't loose any time and visit this link!



Salary                                             +1759

Ashley Madison                             -169

Pangloss Order                    -1000000

Balance                                   -997 904







Broken Authentication

Sensitive data exposure

XML External Entities (XXE)

Broken Access Control

Security misconfigurations

Cross Site Scripting (XSS)

Insecure Deserialization

Using Components with known vulnerabilities

Insufficient logging and monitoring

Hackers-proof software

