All Collections
HackEDU Lesson Help
Broken Authentication Lesson Help
Account Access Vulnerability Is Not Fixed (Broken Authentication Lesson)
Account Access Vulnerability Is Not Fixed (Broken Authentication Lesson)

This article provides instructions on how to resolve "account access vulnerability is not fixed" error

Rachel Yonan avatar
Written by Rachel Yonan
Updated over a week ago

Error:

The broken authentication login vulnerability has not been fixed.
โ€‹

Test 1

If you login in with username=alice and password=monkey1 and then logout are you able to get into a session without logging in? Please review the Defense section of the lesson and try again.

Test 2

If you login in with username=bob and password=password and then logout are you able to get into a session without logging in? Please review the Defense section of the lesson and try again.
โ€‹

Test 3

If you login in with username=alice and password=monkey1 and then logout are you able to get into a session without logging in? Please review the Defense section of the lesson and try again. Did you just solve for specific cases or the general case?

Did this answer your question?