Your team discovers an XSS vulnerability in a feature scheduled to launch tomorrow. Do you delay release or patch it later?, Your company refuses to implement MFA because it “slows developers down.” How do you respond?, Your manager asks you to store user input directly into a database without validation to speed things up. What do you do?, A phishing email gets sent to your entire engineering team. Half the team clicked it. How do you recover?, Business Email Compromise hits your CEO. An attacker sends realistic instructions to accounting. Do you shut down systems? Notify users? What’s the protocol?, Your company wants to migrate to the cloud, but the architecture increases the attack surface. What measures would you propose?, You are asked to implement a login system using passwords only and no MFA, no passkeys. What improvements would you purpose?, You discover the mobile app sends session tokens in plain text over HTTP. How do you convince leadership that fixing this is urgent?.

Leaderboard

Visual style

Options

Switch template

)
Continue editing: ?