Feed Sign in with OpenID OpenID

Simon Willison’s Weblog

Talks: When Ajax Attacks! Web application security fundamentals

@media Ajax 2008, London, UK, 15th-16th September 2008

Web application security is hard, and getting harder. New technologies and techniques mean new vulnerabilities, and keeping on top of them all is a significant challenge. This talk will dive deep in to the underbelly of JavaScript security, exploring topics ranging from basic cross-site scripting to CSRF, social network worms, HTML sanitisation, securing JSON, safe cross-domain JavaScript and more besides.

Presented on 16th September 2008

See talks in 2005, 2006, 2007, 2008

A django site