The bearer of this certificate earned 300 total points
by completing secure coding labs through Veracode Security Labs.
Labs are a form of secure code training that
involves hands-on-keyboard
exercises, where users demonstrate their abilities to exploit and patch
code using real applications.

Garry Lindsay
5e6caec696
19 Apr 2023
The following labs were completed toward certification:
| Lab Name | Topic Name | Language | Points |
|---|---|---|---|
| Bugs in Debug | OWASP 2021 A2: Cryptographic Failures [DEPRECATED] | 10 | |
| Helpful Stack Trace Challenge | OWASP 2021 A2: Cryptographic Failures [DEPRECATED] | 10 | |
| Own the Database | OWASP 2021 A3: Injection [DEPRECATED] | 10 | |
| To Protect and To Serve Secure Cookies | OWASP 2021 A1: Broken Access Control [DEPRECATED] | 20 | |
| Bobby Tables Challenge | OWASP 2021 A3: Injection [DEPRECATED] | 10 | |
| Fix the Sessions | OWASP 2021 A1: Broken Access Control [DEPRECATED] | 10 | |
| Parameterize all the things | OWASP 2021 A3: Injection [DEPRECATED] | 10 | |
| Hold the Line | OWASP 2021 A9: Security Logging and Monitoring Failures [DEPRECATED] | 10 | |
| Bad Cookie Challenge | OWASP 2021 A1: Broken Access Control [DEPRECATED] | 10 | |
| Timing is everything Challenge | OWASP 2021 A3: Injection [DEPRECATED] | 10 | |
| Down with Uploads | OWASP 2021 A3: Injection [DEPRECATED] | 20 | |
| Secrets in the Log | OWASP 2021 A1: Broken Access Control [DEPRECATED] | 10 | |
| Check your sources | OWASP 2021 A3: Injection [DEPRECATED] | 20 | |
| Suspicious Packages | OWASP 2021 A6: Vulnerable and Outdated Components [DEPRECATED] | 10 | |
| Really, really bad passwords | OWASP 2021 A7: Identification and Authentication Failures [DEPRECATED] | 10 | |
| Hash it, store it, salt - upgrade it | OWASP 2021 A7: Identification and Authentication Failures [DEPRECATED] | 10 | |
| Slow Down | OWASP 2021 A9: Security Logging and Monitoring Failures [DEPRECATED] | 10 | |
| Get there from here | OWASP 2021 A10: Server-Side Request Forgery [DEPRECATED] | 10 | |
| Brute Force Challenge | OWASP 2021 A9: Security Logging and Monitoring Failures [DEPRECATED] | 10 | |
| Stored XSS versus CSP | OWASP 2021 A3: Injection [DEPRECATED] | 20 | |
| Valid Deficit | OWASP 2021 A4: Insecure Design [DEPRECATED] | 10 | |
| Making Secure Decisions | OWASP 2021 A4: Insecure Design [DEPRECATED] | 10 | |
| Loose Lips Sink Servers | OWASP 2021 A1: Broken Access Control [DEPRECATED] | 10 | |
| Authentication Bypass | OWASP 2021 A7: Identification and Authentication Failures [DEPRECATED] | 10 | |
| Outdated Dependencies Challenge | OWASP 2021 A6: Vulnerable and Outdated Components [DEPRECATED] | 10 | |
| Terrible Password Challenge | OWASP 2021 A7: Identification and Authentication Failures [DEPRECATED] | 10 |