CSP is leaking....

CSP is leaking....

Description:

Content Security Policy (CSP) is a great way to restrict client-side activities on most browsers, especially network activities. The maintenance is a bit of a hassle, but there some good tools out there to assist with the task. The problem is that CSP provides a false sense of security. There are several open attack vectors when relaying on CSP and in this short talk, we will discuss some, ways to gain visibility and ideas for mitigation.

Speakers:

Avishai Shafir

Director of Product, PerimeterX

Patch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo SegmentPatch Logo Segment

Snyk is a developer security platform. Integrating directly into development tools, workflows, and automation pipelines, Snyk makes it easy for teams to find, prioritize, and fix security vulnerabilities in code, dependencies, containers, and infrastructure as code. Supported by industry-leading application and security intelligence, Snyk puts security expertise in any developer’s toolkit.

Start freeBook a live demo

© 2024 Snyk Limited
Registered in England and Wales

logo-devseccon