Veracode Security Labs Champion Level 3 Certificate

The bearer of this certificate earned 300 total points by completing secure coding labs through Veracode Security Labs. Labs are a form of secure code training that involves hands-on-keyboard exercises, where users demonstrate their abilities to exploit and patch code using real applications.
The following labs were completed toward certification:
Lab NameTopic NameLanguagePoints
Get there from here OWASP 2021 A10: Server-Side Request Forgery [DEPRECATED] NodeJS10
Bugs in Debug OWASP 2021 A2: Cryptographic Failures [DEPRECATED] NodeJS10
Bad Cookie ChallengeOWASP 2021 A1: Broken Access Control [DEPRECATED] NodeJS10
Fix the Sessions OWASP 2021 A1: Broken Access Control [DEPRECATED] Java10
Time and Time Again Secure C++ Programming: Best Practices C++10
Forbidden Functions Secure C++ Programming: Best Practices C++10
Sleeping With the Enemy OWASP 2021 A8: Software and Data Integrity Failures [DEPRECATED] NodeJS10
Hold the Line OWASP 2021 A9: Security Logging and Monitoring Failures [DEPRECATED] NodeJS10
Mongo: like SQL, but messier OWASP 2021 A8: Software and Data Integrity Failures [DEPRECATED] NodeJS10
Own the Database OWASP 2021 A3: Injection [DEPRECATED] NodeJS10
Down with Uploads OWASP 2021 A3: Injection [DEPRECATED] NodeJS20
Can you see your reflection? OWASP 2021 A3: Injection [DEPRECATED] NodeJS10
Secrets in the Log OWASP 2021 A1: Broken Access Control [DEPRECATED] Java10
Suspicious Packages OWASP 2021 A6: Vulnerable and Outdated Components [DEPRECATED] NodeJS10
Slow Down OWASP 2021 A9: Security Logging and Monitoring Failures [DEPRECATED] NodeJS10
To Protect and To Serve Secure Cookies OWASP 2021 A1: Broken Access Control [DEPRECATED] NodeJS10
Bobby Tables ChallengeOWASP 2021 A3: Injection [DEPRECATED] NodeJS10
Alert ChallengeOWASP 2021 A3: Injection [DEPRECATED] NodeJS10
Parameterize all the things OWASP 2021 A3: Injection [DEPRECATED] NodeJS10
Valid Deficit OWASP 2021 A4: Insecure Design [DEPRECATED] NodeJS10
Loose Lips Sink Servers OWASP 2021 A1: Broken Access Control [DEPRECATED] NodeJS10
Tell Mongo "no-go" for untrusted code OWASP 2021 A8: Software and Data Integrity Failures [DEPRECATED] NodeJS10
Stored XSS versus CSP OWASP 2021 A3: Injection [DEPRECATED] NodeJS20
Authentication Bypass OWASP 2021 A7: Identification and Authentication Failures [DEPRECATED] NodeJS10
Terrible Password ChallengeOWASP 2021 A7: Identification and Authentication Failures [DEPRECATED] NodeJS10
Making Secure Decisions OWASP 2021 A4: Insecure Design [DEPRECATED] NodeJS10
Persistence ChallengeOWASP 2021 A3: Injection [DEPRECATED] NodeJS20