HBWH: Web Hacking 101

Hannah Brand

Start:
End:

Monday, 24.8. 10:00
Wednesday, 26.8. 9:45

Language: English

Credit Points: 1 CP upon agreement with the lecturer

Course description:

You send thousands of web requests per day. What could go wrong? As ethical hackers know, quite a lot! In this course you’ll learn the basics of web security: what’s really inside your favorite app, the most common vulnerabilities around today, and how to spot them in the wild. You will emerge understanding industry-standard frameworks like OWASP Top 10, CVSS 4.0, and the tools and tricks needed for web security research. Most importantly – you’ll be well-prepared to join a Capture The Flag challenge and try out your new hacking skills!

Prerequisites:

Participants should have some prior knowledge of the network stack and structure of a webpage. Knowledge of a coding language, specifically scripting languages or Python, may be helpful. None of these are absolute requirements and supplementary materials will be sent to prepare all participants.

Biography: Hannah Brand

Hannah Brand is a security researcher interested in networking and privacy-preserving technologies. Following five years investigating web security vulnerabilities with the Microsoft Security Response Center, she began graduate study at TU Darmstadt in 2025. She has a passion for connecting the technical and social aspects of security, and has previously led an autonomous tutorial on Open-Source and Society at TU. Her most recent work, with the Max Planck Institute for Security and Privacy, focuses on censorship-circumventing proxy protocols. In her spare time she can be found cycling and cooking (but not at the same time).