The bearer of this certificate earned 300 total points
by completing secure coding labs through Veracode Security Labs.
Labs are a form of secure code training that
involves hands-on-keyboard
exercises, where users demonstrate their abilities to exploit and patch
code using real applications.

Manthan Machhi
7827f42d0b
20 Jun 2024
The following labs were completed toward certification:
| Lab Name | Topic Name | Language | Points |
|---|---|---|---|
| Get there from here | OWASP 2021 A10: Server-Side Request Forgery [DEPRECATED] | 10 | |
| Neglected endpoints [DEPRECATED] | OWASP 2019 API 5: Broken Function Level Authorization [DEPRECATED] | 10 | |
| Bad Cookie Challenge | OWASP 2021 A1: Broken Access Control [DEPRECATED] | 10 | |
| Bugs in Debug | OWASP 2021 A2: Cryptographic Failures [DEPRECATED] | 10 | |
| Do You Remember? | Beyond OWASP Top 10: Other Web App Risks | 10 | |
| Helpful Stack Trace Challenge | OWASP 2021 A2: Cryptographic Failures [DEPRECATED] | 10 | |
| One ID to Access All Objects [DEPRECATED] | OWASP 2019 API 1: Broken Object Level Authorization [DEPRECATED] | 10 | |
| Own the Database | OWASP 2021 A3: Injection [DEPRECATED] | 10 | |
| Lesson Zero | Security Labs – Getting Started | 10 | |
| Revealing Schemas [DEPRECATED] | OWASP 2019 API 3: Excessive Data Exposure [DEPRECATED] | 10 | |
| Parameterize all the things | OWASP 2021 A3: Injection [DEPRECATED] | 10 | |
| Can you see your reflection? | OWASP 2021 A3: Injection [DEPRECATED] | 10 | |
| Secrets in the Log | OWASP 2021 A1: Broken Access Control [DEPRECATED] | 10 | |
| Check your sources | OWASP 2021 A3: Injection [DEPRECATED] | 20 | |
| Jot down this key | OWASP 2021 A5: Security Misconfiguration [DEPRECATED] | 20 | |
| In a Pickle | OWASP 2021 A8: Software and Data Integrity Failures [DEPRECATED] | 10 | |
| To Protect and To Serve Secure Cookies | OWASP 2021 A1: Broken Access Control [DEPRECATED] | 10 | |
| Bobby Tables Challenge | OWASP 2021 A3: Injection [DEPRECATED] | 10 | |
| Stored XSS versus CSP | OWASP 2021 A3: Injection [DEPRECATED] | 20 | |
| Making Secure Decisions | OWASP 2021 A4: Insecure Design [DEPRECATED] | 10 | |
| Making Secure Decisions | OWASP 2021 A4: Insecure Design [DEPRECATED] | 10 | |
| Making Secure Decisions | OWASP 2021 A4: Insecure Design [DEPRECATED] | 10 | |
| Mongo: like SQL, but messier | OWASP 2021 A8: Software and Data Integrity Failures [DEPRECATED] | 10 | |
| eXternal Entity (injection) | OWASP 2021 A5: Security Misconfiguration [DEPRECATED] | 10 | |
| XML is always a... Challenge | OWASP 2021 A5: Security Misconfiguration [DEPRECATED] | 10 | |
| Redirect Rodeo | OWASP 2021 A1: Broken Access Control [DEPRECATED] | 10 | |
| Prototype Protection Agency | OWASP 2021 A8: Software and Data Integrity Failures [DEPRECATED] | 10 |