YoVDO

Building Secure ASP.NET Core MVC Applications

Offered By: OWASP Foundation via YouTube

Tags

Conference Talks Courses ASP.NET Core Courses Cross-Site Scripting (XSS) Courses Cross-Site Request Forgery (CSRF) Courses Web Application Security Courses Input Validation Courses MVC Architecture Courses

Course Description

Overview

Explore the security aspects of building ASP.NET Core MVC applications in this 32-minute conference talk from AppSecUSA 2017. Delve into the default security features of ASP.NET Core, a new open-source and cross-platform framework, and learn how it addresses common vulnerabilities like Cross-Site Scripting (XSS) and Cross-Site Request Forgery (CSRF). Discover the framework's modular approach and its flexibility in creating secure solutions across Windows, Mac, and Linux platforms. Gain insights from security researcher Niels Tanis as he examines the framework's APIs, demonstrates how to extend security measures, and shows how to validate existing solutions. Cover topics including controllers, data processing, input validation, SameSite cookies, and code analysis limitations. Enhance your understanding of secure application development in the context of ASP.NET Core MVC.

Syllabus

Introduction
ASPNET Core
ModelViewController
Starting a New Project
Controllers
Advanced Controller
Data Processing
Data Assignment
Content Result
Input Validation
SameSide Cookies
Using SameSide Cookies
Code Analysis
Limitations
Conclusion


Taught by

OWASP Foundation

Related Courses

Authentication & Authorization: OAuth
Udacity
Desarrollo de Aplicaciones Web: Seguridad
University of New Mexico via Coursera
Web Application Development: Security
University of New Mexico via Coursera
Hacking and Patching
University of Colorado System via Coursera
Fundamentals of Computer Network Security
University of Colorado System via Coursera