Thanks Ian, I'm glad you liked it. I had some fun putting it all together. I think it's important to demonstrate the risks, so people are more likely to pay attention to the advice. We often see mentions of SQL injection, LFI local file inclusion, path disclosure vulnerabilities etc, but many people have no idea what these are and what they can do to protect themselves. Maybe I should do another demo at the Sydney Joomladay in November, I'm sure I could find some more vulnerabilities to demonstrate to keep it interested for those that attended last night