Lukas Weichselbaum

@we1x

Security Researcher Opinions are my own.

2011(e)ko urtarrilak(e)tik Twitterren

@we1x blokeatuta dago

Ziur zaude Txio hauek ikusi nahi dituzula? Txioak ikusteak ez du @we1x desblokeatuko.

  1. Finkatutako Txioa
    2016 ira. 26

    CSP-Evaluator () got released today! Find out if your is among the 95% that can be trivially bypassed!

  2. urt. 19

    Wrote up a summary of some of the content security policy related work we have been up to on

  3. urt. 11

    Edge now fully supports version 2 (incl. nonces). is on their radar.

  4. 2016 aza. 28

    Glad to present at in Zürich "Breaking Bad Content Security Policies" with tomorrow, at 9:15, CAB G 61 –

  5. 2016 aza. 25

    Goodbye ! GAE Scaffold now supports Closure Templates (strict autoescape!) with auto-noncing and nonce-based with .

  6. 2016 aza. 11

    Thx everyone for joining my talk at You can read up everything about strict csp here:

  7. 2016 aza. 10

    strict-dynamic support for landed in Firefox (nightly now, stable in FF52)! Kudos to the FF team

  8. 2016 aza. 7
  9. 2016 aza. 4

    Join my + 's tutorial on Adopting Strict Content Security Policy for XSS Protection

  10. 2016 urr. 27

    Great work on CSP. Evaluation and defense proposal. by

  11. 2016 urr. 25

    picked a particular nice place for dinner this year!

  12. 2016 urr. 19
  13. 2016 urr. 18

    I just pushed our open source version of CSP-Evaluator to github. Feel free to reuse checks & whitelist bypass list!

  14. 2016 ira. 26

    We just released a blog post, docs and a couple of tools (Evaluator, Mitigator) to help adopting a secure

  15. 2016 ira. 2

    This is one of the most important web sec papers in recent history: (section 3.4 is where the juicy bits are)

  16. 2016 ira. 2

    Most offer no XSS protection and are based on whitelists(median 12) helps

  17. 2016 ira. 1

    Our ( ) paper is out. 95% bypassable, whitelisting is doomed, helps.

  18. 2016 ira. 1

    Our ( ) research paper (ACM CSS) is public now. It's time to drop whitelists!

  19. 2016 abu. 4

    Want to learn how to adopt strict ? Drop by our ( ) tutorial for in Boston organized by !

  20. Lukas Weichselbaum(e)k jarraitu du: , , and 70 others

Badirudi kargak luze hartuko duela.

Baliteke Twitterren kapazitatez gaindi egotea edo momentuko gainkarga bat izatea. Berriro saiatu edo Twitterren Egoera ikusi informazio gehiagorako.

    Agian hau ere gustuko duzu

    ·