
Give an example of a script you wrote recently in Python and how you used it?(I told them I had strong python scripting skill) What languages can you read and understand what the code is doing? What programming languages are you comfortable writing? What is the difference between http and https? How do SSL certificates work? What are the contents of a SSL certificate? What do you know in cryptography? What is asymmetric and symmetric algs? What fuzzing tools have you used in Kali? How does burp suite work? What are some of burp suites tools? How is Intruder, Repeater, Sequencer, Decoder used?
Burp suite interview questions how to#
What is Insecure Deserialization? How to mitigate? What is XXE? What is XML used for? Give an example of how you could exploit XXE? What is XSS? Types of XSS? Different XSS payloads? Why is UNION used in error based SQL Injection?


What are some of the payloads you've used while doing SQL Injection? SQL Injection? What are the types of SQL Injection attacks? It was also a proper paid internship(lot of unpaid internships in India) and the monthly stipend was pretty high, so it was a serious company. I am a 4th year CSE University student and they told me they were looking for an intern who they wanted as a full-time employee after graduation so they would offer a job depending on the performance during the internship. Hey guys, so I had applied for a Web App Security Research Intern position at a small/medium sized IT company in India and these were the questions I was asked during the technical interview.
