The bearer of this certificate earned 300 total points
by completing secure coding labs through Veracode Security Labs.
Labs are a form of secure code training that
involves hands-on-keyboard
exercises, where users demonstrate their abilities to exploit and patch
code using real applications.

Arjun Kalidas
39e6bd3fcb
28 Oct 2022
The following labs were completed toward certification:
| Lab Name | Topic Name | Language | Points |
|---|---|---|---|
| Get there from here | OWASP 2021 A10: Server-Side Request Forgery [DEPRECATED] | 10 | |
| Timing is everything [DEPRECATED] Challenge | OWASP 2017 A1: Injection [DEPRECATED] | 10 | |
| Really, really bad passwords [DEPRECATED] | OWASP 2017 A2: Broken Authentication [DEPRECATED] | 10 | |
| Bugs in Debug | OWASP 2021 A2: Cryptographic Failures [DEPRECATED] | 10 | |
| Really, really bad passwords [DEPRECATED] | OWASP 2017 A2: Broken Authentication [DEPRECATED] | 10 | |
| Can you see your reflection? [DEPRECATED] | OWASP 2017 A7: Cross-Site Scripting (XSS) [DEPRECATED] | 10 | |
| Jot down this key [DEPRECATED] | OWASP 2017 A6: Security Misconfiguration [DEPRECATED] | 10 | |
| Really, really bad passwords [DEPRECATED] | OWASP 2017 A2: Broken Authentication [DEPRECATED] | 10 | |
| Hash it, store it, salt - upgrade it [DEPRECATED] | OWASP 2017 A2: Broken Authentication [DEPRECATED] | 10 | |
| Angular ERB sanitization [DEPRECATED] | OWASP 2017 A7: Cross-Site Scripting (XSS) [DEPRECATED] | 10 | |
| Angular HTML and URL sanitization [DEPRECATED] | OWASP 2017 A7: Cross-Site Scripting (XSS) [DEPRECATED] | 10 | |
| Sleeping With the Enemy | OWASP 2021 A8: Software and Data Integrity Failures [DEPRECATED] | 10 | |
| Own the Database | OWASP 2021 A3: Injection [DEPRECATED] | 10 | |
| Down with Uploads | OWASP 2021 A3: Injection [DEPRECATED] | 20 | |
| Can you see your reflection? | OWASP 2021 A3: Injection [DEPRECATED] | 10 | |
| Hash it, store it, salt - upgrade it | OWASP 2021 A7: Identification and Authentication Failures [DEPRECATED] | 10 | |
| Own the database [DEPRECATED] | OWASP 2017 A1: Injection [DEPRECATED] | 10 | |
| Parameterize all the things | OWASP 2021 A3: Injection [DEPRECATED] | 10 | |
| Parameterize all the things [DEPRECATED] | OWASP 2017 A1: Injection [DEPRECATED] | 10 | |
| Parameterize all the things [DEPRECATED] | OWASP 2017 A1: Injection [DEPRECATED] | 10 | |
| eXternal Entity (injection) | OWASP 2021 A5: Security Misconfiguration [DEPRECATED] | 10 | |
| Bobby Tables [DEPRECATED] Challenge | OWASP 2017 A1: Injection [DEPRECATED] | 10 | |
| eXternal Entity (injection) [DEPRECATED] | OWASP 2017 A4: XML External Entities (XXE) [DEPRECATED] | 10 | |
| Bugs in Debug [DEPRECATED] | OWASP 2017 A3: Sensitive Data Exposure [DEPRECATED] | 10 | |
| XML is always a challenge [DEPRECATED] Challenge | OWASP 2017 A4: XML External Entities (XXE) [DEPRECATED] | 10 | |
| Own the database [DEPRECATED] | OWASP 2017 A1: Injection [DEPRECATED] | 10 | |
| Down with Uploads [DEPRECATED] | OWASP 2017 A7: Cross-Site Scripting (XSS) [DEPRECATED] | 20 | |
| eXternal Entity (injection) [DEPRECATED] | OWASP 2017 A4: XML External Entities (XXE) [DEPRECATED] | 10 |