#115 Scott Helme, Fighting Cross-Site Scripting with Content Security Policy and Subresource Integrity episode artwork

EPISODE · Feb 18, 2019 · 40 MIN

#115 Scott Helme, Fighting Cross-Site Scripting with Content Security Policy and Subresource Integrity

from no dogma podcast · host Bryan Hogan

Summary Security researcher Scott Helme tells me how Content Security Policy and Subresource Integrity are used to fight cross site scripting. Details Who he is, what he does. What cross site scripting is; well known examples; how it works; crypto mining with cross site scripting (XSS). Input validation, output encoding, more frameworks are handling validation. Content Security Policy (CSP), what it is, how it works; trusting CDNs; how to use CSP on a site, CSP Wizard, browser support; future changes. Subresource Integrity, what it is, how it works; trusting third party scripts; what happens if script fails validation. NoScript, browser extensions, DNS filters and VPNs. Scott's upcoming events; training. Full show notes

Episode metadata supplied by the publisher feed · Published Feb 18, 2019

Embed this episode

Security researcher Scott Helme tells me how Content Security Policy and SubResource Integrity are used to fight cross-site scripting.

Distinct summary based on available episode metadata or transcript content.

NOW PLAYING

#115 Scott Helme, Fighting Cross-Site Scripting with Content Security Policy and Subresource Integrity

0:00 40:02

No transcript for this episode yet

We transcribe on demand. Request one and we'll notify you when it's ready — usually under 10 minutes.

No similar episodes found.

No similar podcasts found.

Frequently Asked Questions

How long is this episode of no dogma podcast?

This episode is 40 minutes long.

When was this no dogma podcast episode published?

This episode was published on February 18, 2019.

Can I download this no dogma podcast episode?

Yes. Use the download control on the episode player to save the publisher-provided media file.
URL copied to clipboard!