You are the Secure Code Warrior
Opentable has provided it's engineers access to a tool called Secure Code Warrior to practice and learn secure coding best practices. There are various modules for different tech stacks. I'm taking the Reactjs module. Secure Code Warrior is a pretty cool interface. It presents scenarios as games. Attackers from all over the world are attacking your systems and you have to save the day. Gamification. I like it. You are tasked with fixing code that has one or more security holes. Below is a snapshot of the interface. Pretty cool. All that's missing is the Defcon countdown audio. Some of the Training questions and examples are unclear to understand what's needed. I'd appreciate a (better) introduction first for each security vulnerability before jumping straight into coding tests. Myself and others ended up repeating the same section because the UX of the tool is confusing. When a section is done don't hit "Continue", that means keep doing same...