You are on page 1of 4

Web Application Pentesting

Vivek Ramachandran
SWSE, SMFE, SPSE, SISE, SLAE, SGDE Course Instructor

Certifications: http://www.securitytube-training.com

Pentester Academy: http://www.PentesterAcademy.com

©SecurityTube.net
Open Redirects: Hashing with Salt

©SecurityTube.net
Hashing with Salt

• Crypto Salt can be prepended/appended to


the URL before hashing

• Salt can be
– Static/Rotated and not transmitted
– Random and part of the URL params

©SecurityTube.net
Pentester Academy

©SecurityTube.net

You might also like