CSP is leaking....

CSP is leaking....

説明:

Content Security Policy (CSP) is a great way to restrict client-side activities on most browsers, especially network activities. The maintenance is a bit of a hassle, but there some good tools out there to assist with the task. The problem is that CSP provides a false sense of security. There are several open attack vectors when relaying on CSP and in this short talk, we will discuss some, ways to gain visibility and ideas for mitigation.

講演者:

Avishai Shafir

Director of Product, PerimeterX

Snyk (スニーク) は、デベロッパーセキュリティプラットフォームです。Snyk は、コードやオープンソースとその依存関係、コンテナや IaC (Infrastructure as a Code) における脆弱性を見つけるだけでなく、優先順位をつけて修正するためのツールです。世界最高峰の脆弱性データベースを基盤に、Snyk の脆弱性に関する専門家としての知見が提供されます。

無料で始める資料請求

© 2024 Snyk Limited
Registered in England and Wales

logo-devseccon