Veracode Security Labs Champion Level 3 Certificate

The bearer of this certificate earned 300 total points by completing secure coding labs through Veracode Security Labs. Labs are a form of secure code training that involves hands-on-keyboard exercises, where users demonstrate their abilities to exploit and patch code using real applications.
The following labs were completed toward certification:
Lab NameTopic NameLanguagePoints
Get there from here OWASP 2021 A10: Server-Side Request Forgery [DEPRECATED] NodeJS10
Neglected endpoints [DEPRECATED] OWASP 2019 API 5: Broken Function Level Authorization [DEPRECATED] Java10
Bad Cookie ChallengeOWASP 2021 A1: Broken Access Control [DEPRECATED] NodeJS10
Bugs in Debug OWASP 2021 A2: Cryptographic Failures [DEPRECATED] NodeJS10
Do You Remember? Beyond OWASP Top 10: Other Web App Risks .NET10
Helpful Stack Trace ChallengeOWASP 2021 A2: Cryptographic Failures [DEPRECATED] .NET10
One ID to Access All Objects [DEPRECATED] OWASP 2019 API 1: Broken Object Level Authorization [DEPRECATED] .NET10
Own the Database OWASP 2021 A3: Injection [DEPRECATED] NodeJS10
Lesson Zero Security Labs – Getting Started NodeJS10
Revealing Schemas [DEPRECATED] OWASP 2019 API 3: Excessive Data Exposure [DEPRECATED] .NET10
Parameterize all the things OWASP 2021 A3: Injection [DEPRECATED] NodeJS10
Can you see your reflection? OWASP 2021 A3: Injection [DEPRECATED] NodeJS10
Secrets in the Log OWASP 2021 A1: Broken Access Control [DEPRECATED] Java10
Check your sources OWASP 2021 A3: Injection [DEPRECATED] Java20
Jot down this key OWASP 2021 A5: Security Misconfiguration [DEPRECATED] NodeJS20
In a Pickle OWASP 2021 A8: Software and Data Integrity Failures [DEPRECATED] Java10
To Protect and To Serve Secure Cookies OWASP 2021 A1: Broken Access Control [DEPRECATED] NodeJS10
Bobby Tables ChallengeOWASP 2021 A3: Injection [DEPRECATED] NodeJS10
Stored XSS versus CSP OWASP 2021 A3: Injection [DEPRECATED] NodeJS20
Making Secure Decisions OWASP 2021 A4: Insecure Design [DEPRECATED] Java10
Making Secure Decisions OWASP 2021 A4: Insecure Design [DEPRECATED] .NET10
Making Secure Decisions OWASP 2021 A4: Insecure Design [DEPRECATED] NodeJS10
Mongo: like SQL, but messier OWASP 2021 A8: Software and Data Integrity Failures [DEPRECATED] NodeJS10
eXternal Entity (injection) OWASP 2021 A5: Security Misconfiguration [DEPRECATED] NodeJS10
XML is always a... ChallengeOWASP 2021 A5: Security Misconfiguration [DEPRECATED] .NET10
Redirect Rodeo OWASP 2021 A1: Broken Access Control [DEPRECATED] .NET10
Prototype Protection Agency OWASP 2021 A8: Software and Data Integrity Failures [DEPRECATED] NodeJS10