this source code conduct with fully vulnerabilities, this source code we intentionally made that condition for learning about vulnerabilities and security flaws
- Manual Security Code Review (time 60 minutes)
- CTF(Capture The Flag) (time 30 minutes)
- Application Penetration Testing (time 30 minutes)
- Final Interview (time 30 minutes)
Goal of this testing is to know the level of analisys and problem solving skill of the candidate in code development area
- create acount and clone the repo
- please find the vulnerabilities inside this repo
- please command in the code and give the reason why that code is vulnerable? what is type of vulnerabilities?
- please give the solution of that vulnerabilities
- after finish the code review and the you come out with the solution please push the code with your branch
- branch format "alto_test-dd-mm-yy_candidatename" example: alto_test-16-03-20_sandyardiansyah
- can runing the code with the local database
- can demo it the vulnerabilities
Goal of this testing is to know the level of analisys skill of the candidate in security hole of aplication
please find username and password of the application the url will provide by interviewer
Goal of this testing is to know the level of Penetration Testing skill of the candidate
please find the vulnerabilities and exploit that vulnerabilities
Goal of this testing is to know the caracter of the candidate