Explore common and subtle security issues in Python web applications through hands-on labs, code review exercises, and real CVEs from popular frameworks.
Exploit unsafe deserialization in Pickle and PyYAML, then review Python code for command injection, insecure deserialization patterns, and remote code execution flaws.
Review cross-site scripting, filter bypass techniques, timing attacks, padding oracle, and transport security issues in Python applications and real CVEs.