Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

The Evil Friend in Your Browser - Browser Extension Security Risks

OWASP Foundation via YouTube

Overview

Explore the security implications of browser extensions in this 40-minute conference talk from AppSec EU 2017. Delve into the dual nature of extensions as both useful tools and potential security risks. Examine the current security model for browser extensions and its limitations in addressing user privacy concerns. Learn about the analysis of over 2500 browser extensions, their usage of security features, and examples of high-risk extensions. Understand the threat model from a user perspective and discuss potential improvements to enhance browser extension security. Gain insights into short-term recommendations and enterprise-level strategies for managing extension risks.

Syllabus

Intro
Web Extensions
What are Extensions
Security mechanisms
Extensions
Extension Size
HTTP Headers
Simple Extension
Protecting the integrity
Outlook
Shortterm recommendation
Enterprise recommendation
Questions

Taught by

OWASP Foundation

Reviews

Start your review of The Evil Friend in Your Browser - Browser Extension Security Risks

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.