authentication 12
- Lab 13: Password brute-force via password change
- Lab 11: Password reset broken logic
- Lab 10: Offline password cracking
- Lab 09: Brute-forcing a stay-logged-in cookie
- Lab 08: 2FA broken logic
- Lab 07: 2FA simple bypass
- Lab 06: Broken brute-force protection, multiple credentials per request
- Lab 05: Username enumeration via account lock
- Lab 04 : Broken brute-force protection, IP block
- Lab 03: Username enumeration via response timing
- Lab 02: Username enumeration via subtly different responses
- Lab 01 : Username enumeration via different responses