Practical Security for Web Applications

 5 years ago 6,647 views
Presented by Chris Holland (@chrisholland)

November 14, 2019

Explore effective methods to identify & avoid the most common and devastating security pitfalls in Web Applications.

When it comes to an enterprise's exposure to security vulnerabilities, one could easily argue that its web presence is by far its greatest threat. There are many ways to build vulnerable applications and a few effective ways to "build them right". We'll instrument you to stay on right side of this equation.

About Chris
Chris Holland leads a small Software Engineering Team at an HR company. Throughout a career spanning more than 20 years, Chris has held Sr. Engineering and Leadership roles for small and large successful publicly-traded companies such as EarthLink and Internet Brands, serving business models across Content, Commerce, Travel & Finance on a wide variety of technology stacks including PHP/LAMP, Java/J2EE and C#/.Net, catering to audiences over 100 million monthly visitors.

Chris is also a contributor to NomadPHP and php[architect] magazine, and has been published in CIOReview.

SPONSORS

PHP Tutorials and Videos

SPONSORS

PHP Tutorials and Videos
Showing 1 to 1 of 1 comments.
sherriw - 5 years ago
It's no longer recommended to only strip risky values from an input to mitigate XSS instead of escaping/encoding them. You'll never detect all possible things to strip.

Instead, yes strip what you know is invalid... then also escape/encode the rest.

SPONSORS

PHP Tutorials and Videos