KOSEN·KMITL — course material
Interactive simulations
Click through how an attack actually works, one step at a time. Each one is also embedded in the worksheet it belongs to; these are the full-size versions. Open to anyone, like the rest of the course material.
-
-
Classify the incident: which CIA property took the hit? (Week 1)
-
One signature, two spellings: (r, s) and (r, n − s) (Cryptography, Week 11)
-
Draw a card, tie it to your DFD — no printer needed (Week 1)
-
What actually crashes harness.c, computed live (Week 2)
-
Does this PR pass the gate? (Week 15)
-
How AWS actually evaluates a request (Cloud Infrastructure, Lesson 7)
-
Two findings, one statement: Action vs Resource wildcards (Week 13)
-
Editing a JWT: base64url is encoding, not sealing (Week 6)
-
Which fields actually get stored? (Week 10)
-
The /upload endpoint: same input, opposite outcomes (Week 1)
-
Three layers, watched one at a time (Week 14)
-
Which package actually installs? Computed live (Week 12)
-
How concatenation changes the SQL parse tree (Week 4)
-
What a stack canary detects and what FORTIFY_SOURCE prevents (Week 11)
-
Name the threat: STRIDE applied to one endpoint (Week 1)
-
Which bug is this really? Raw findings, deduplicated (Week 2)
-
Trust boundaries & threat chaining (Week 1)
-
One value, four sinks: why escaping is context-dependent (Week 5)