New recruits learn how to protect their web applications against threads with the help of technical presentations and interactive tutorials. Today, Google is making its “Web Application Exploits and Defenses” available to everybody on the Internet. Part of this includes Jarlsberg , a full-featured microblogging application that was developed with a single purpose: to be hacked. Sponsor Jarlsberg was written specifically to teach developers about vulnerabilities and for this , the is full of flaws. According to the tutorial, “Jarlsberg has multiple bugs ranging from cross-site scripting and cross-site request forgery, to information disclosure, denial of service, and remote code execution.” The application is written in Python, though Google notes that the bugs are not Python-specific

