We expect a high standard of professionalism from you at all times while you are taking any of our courses. We expect all students to act in good faith at all times.
TLDR: Don’t be a dick
George Muscat
Senior Security Engineering Consultant @ Asontu
Email: g.muscat@unsw.edu.au
Check WebCMS3 and first Lecture
marked individually
don’t leave them to the last minute, you’ll be sad :(
you should do the majority of the hacking individually, however you can help each other when really stuck
within the same week, the number will (mostly) correspond with difficulty
most won’t solve all the challenges. That is ok.
passive & active
Finding information about the target without interacting with the infra/site
A.K.A OSINT
Anything where you are interacting with the infra/site
if you use automated tools, pls dont use uni DNS servers, use these :)
Things to know (or google):
NOTE: When using these tools, ensure you rate limit yourself to avoid getting your IP restricted (Your family will hate this)
These tools need wordlists, Seclists is a good place to start
Hyper Text Transfer Protocol
Burp Suite