Overview
Syllabus
Intro
ANGULAR APPLICATIONS RUN WITHIN THE BROWSER
CROSS-SITE SCRIPTING (XSS)
XSS REFRESHER
SERVER-SIDE DEFENSES AGAINST XSS
RESPECT THE AUTHORITY OF THE SANITIZER
SESSION MANAGEMENT IN THREE PROPERTIES
COOKIE FLAGS PATCH COOKIE BEHAVIOR
COOKIE PREFIXES TAKE IT A STEP FURTHER
THE UNDERESTIMATED THREAT OF CSRF
THE ESSENCE OF CSRF
TAKING CONTROL OF YOUR HOME NETWORK WITH CSRF
DEFENDING AGAINST CSRF ATTACKS
TRANSPARENT TOKENS AGAINST CSRF ATTACKS
ANGULARJS SUPPORTS TRANSPARENT TOKENS BY DEFAULT
THE SAMESITE COOKIE ATTRIBUTE
THE RESURRECTION OF THE AUTHORIZATION HEADER
ADOING THE AUTHORIZATION HEADER IN ANGULARUS
STORING SESSION DATA IN THE BROWSER
THE AUTHORIZATION HEADER VS COOKIES
JWTS ARE YOUNG, AND SUFFER FROM GROWING PAINS
Taught by
OWASP Foundation