BREW: A Breakable Web Application for IT-Security Classroom Use
Christoph Pohl, Kathrin Schlierkamp, Hans-Joachim Hof

TL;DR
BREW is an interactive, educational web application designed to teach IT security concepts through hands-on vulnerability identification and exploitation, supporting diverse student groups and enhancing motivation.
Contribution
It introduces a practical, easy-to-use tool for teaching IT security that aligns with learning psychology and has been successfully implemented internationally.
Findings
Effective in teaching vulnerability identification and exploitation
Enhances student motivation and engagement
Applicable in diverse educational settings
Abstract
This paper presents BREW (Breakable Web Application), a tool for teaching IT Security. BREWs main teaching targets are identification and exploitation of vulnerabilities, using technologies and methodologies for software auditing and testing, and bug detection, fixation, and writing of secure code. Main advantages of BREW include that it is easy to apply in practice, it is a perfect tool to create and retain motivation, it corresponds to the demands of the psychology of learning, and it can be used for a heterogeneous group of students. BREW has been success- fully used for teaching IT Security in Germany as well as on an Erasmus Project with international student groups.
Peer Reviews
No public reviews on file for this paper yet. If you reviewed it on a platform where reviews are public (OpenReview, ICLR, NeurIPS, ICML), you can paste yours below so the community can read it here.
Videos
No videos yet. Explain this paper in a talk, walkthrough, or lecture? Add one.
Taxonomy
TopicsMobile and Web Applications
