Talk:Testing for Bypassing Authentication Schema
From OWASP
Can't seem to delete sections 4. It is redundant. Also, there is a mispelling of the word Authentication in the image.
Direct page request image
Is it possible to replace the image below Direct Page Request with one that is more intuitive? I'm not exactly sure what the intent of that image was.

