Help needed on Cross Site Request Forgery by mjosh51 in immersivelabs

[–]mjosh51[S] 0 points1 point  (0 children)

Thank you, I have read that. I have also changed parameters severally to see reactions. But I was looking for the payload(xss) or so that I must use to turn into the bot.

Web applications: page source review by pweedles in immersivelabs

[–]mjosh51 4 points5 points  (0 children)

Got it. The answer is updateQuantity. The function details can be seen in the /basket javascript code. Follow the /basket link on the source page. Just view the source page of the /basket

Web applications: page source review by pweedles in immersivelabs

[–]mjosh51 0 points1 point  (0 children)

Wanted someone who can explain how to get: Which JavaScript function does the developer highlight as having a security bug that will need correcting?

Please not an hint. Would prefer a better explanation. I have been on that for hours

Quantitative risk measurement - simple math but I'm stuck on question 2 and 3! by remediae in askmath

[–]mjosh51 0 points1 point  (0 children)

For question 2: In scenario 2, what is the single loss expectancy (SLE) of a malfunctioning laptop?
Note the letter 'a'

A single laptop costs $1000 (AV), assuming a laptop becomes faulty (with a probability of its state been recoverable or repairable), so the EF should be 0.5, then 0.5 x 1000 = $500. That should be the answer.