Pushing Content Security Policy to Production - Case Study of Real-World Implementation
Offered By: OWASP Foundation via YouTube
Course Description
Overview
Explore a real-world case study of implementing Content Security Policy (CSP) in a production environment. Learn about the challenges and solutions encountered while integrating CSP into SendSafely.com, a customer-facing web application heavily reliant on JavaScript and HTML5. Discover the nuances of CSP implementation across major browsers, techniques for converting inline JavaScript to comply with strict CSP, and strategies for handling third-party scripts. Gain insights into dealing with HTML5 API edge cases and the surprising results of runtime CSP violation reporting. Benefit from the speakers' experience to make informed decisions about implementing CSP in your own web applications, whether starting from scratch or retrofitting existing projects.
Syllabus
Pushing CSP to PROD - Brian Holyfield, Erik Larsson
Taught by
OWASP Foundation
Related Courses
Authentication & Authorization: OAuthUdacity Desarrollo de Aplicaciones Web: Seguridad
University of New Mexico via Coursera Web Application Development: Security
University of New Mexico via Coursera Hacking and Patching
University of Colorado System via Coursera Fundamentals of Computer Network Security
University of Colorado System via Coursera