{"type":"video","version":"1.0","html":"<iframe src=\"https://www.loom.com/embed/0d1f3219338849c7ad4e71d3b8b3a23e\" frameborder=\"0\" width=\"1920\" height=\"1440\" webkitallowfullscreen mozallowfullscreen allowfullscreen></iframe>","height":1440,"width":1920,"provider_name":"Loom","provider_url":"https://www.loom.com","thumbnail_height":1440,"thumbnail_width":1920,"thumbnail_url":"https://cdn.loom.com/sessions/thumbnails/0d1f3219338849c7ad4e71d3b8b3a23e-8c5696370444e290.gif","duration":3950.478,"title":"Web Application Security","description":"This Loom introduces an end-to-end web application security lab using Azure Application Gateway with Web Application Firewall v2 in front of a deliberately vulnerable DVWA instance. The presenter sets expectations that it is not just a simple “turn on the firewall” exercise, emphasizing important design decisions such as how the vulnerable host is isolated and how the WAF policy is structured, including why signature-based filtering can fall short. The lab will demonstrate role-based attacks against the app and how the firewall blocks them. All resources and state are deployed using Terraform with a shared remote backend, as described in the repo layout."}