Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

YouTube

Fixing XSS with Content Security Policy

OWASP Foundation via YouTube

Overview

Explore the intricacies of Content Security Policy (CSP) as a defense against cross-site scripting (XSS) attacks in this conference talk from OWASP AppSec California 2015. Delve into the differences between CSP 1.0 and CSP 1.1, understanding how these versions impact web application developers. Learn how CSP protects web applications from XSS vulnerabilities and whether traditional defenses like input validation and output encoding are still necessary. Discover the varying levels of browser support for CSP and gain practical insights on implementing this technology on your website. Benefit from the expertise of Ksenia Dmitrieva, a Senior Security Consultant with extensive experience in web application security, as she shares her knowledge on this promising HTML5 feature and its potential to enhance web security.

Syllabus

Fixing XSS with Content Security Policy - Ksenia Dmitrieva - OWASP AppSec California 2015

Taught by

OWASP Foundation

Reviews

Start your review of Fixing XSS with Content Security Policy

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.