Lukas Weichselbaum

@we1x

Security Researcher Opinions are my own.

Uniuse en xaneiro 2011

Bloqueaches a @we1x

Estás seguro de querer ver estes chíos? Velos non desbloqueará a @we1x.

  1. Chío pegado
    26 set, 2016

    CSP-Evaluator () got released today! Find out if your is among the 95% that can be trivially bypassed!

  2. 19 xan

    Wrote up a summary of some of the content security policy related work we have been up to on

  3. 11 xan

    Edge now fully supports version 2 (incl. nonces). is on their radar.

  4. 28 nov, 2016

    Glad to present at in Zürich "Breaking Bad Content Security Policies" with tomorrow, at 9:15, CAB G 61 –

  5. 25 nov, 2016

    Goodbye ! GAE Scaffold now supports Closure Templates (strict autoescape!) with auto-noncing and nonce-based with .

  6. 11 nov, 2016

    Thx everyone for joining my talk at You can read up everything about strict csp here:

  7. 10 nov, 2016

    strict-dynamic support for landed in Firefox (nightly now, stable in FF52)! Kudos to the FF team

  8. 7 nov, 2016
  9. 4 nov, 2016

    Join my + 's tutorial on Adopting Strict Content Security Policy for XSS Protection

  10. 27 out, 2016

    Great work on CSP. Evaluation and defense proposal. by

  11. 25 out, 2016

    picked a particular nice place for dinner this year!

  12. 19 out, 2016
  13. 18 out, 2016

    I just pushed our open source version of CSP-Evaluator to github. Feel free to reuse checks & whitelist bypass list!

  14. 26 set, 2016

    We just released a blog post, docs and a couple of tools (Evaluator, Mitigator) to help adopting a secure

  15. 2 set, 2016

    This is one of the most important web sec papers in recent history: (section 3.4 is where the juicy bits are)

  16. 2 set, 2016

    Most offer no XSS protection and are based on whitelists(median 12) helps

  17. 1 set, 2016

    Our ( ) paper is out. 95% bypassable, whitelisting is doomed, helps.

  18. 1 set, 2016

    Our ( ) research paper (ACM CSS) is public now. It's time to drop whitelists!

  19. 4 ago, 2016

    Want to learn how to adopt strict ? Drop by our ( ) tutorial for in Boston organized by !

  20. Lukas Weichselbaum seguiu a , , and 70 others

Parece que a carga tarda un chisco

É posible que o Twitter estea por riba da súa capacidade ou teña un impo momentáneo. Téntao de novo ou visita o Estado do Twitter para obter máis información.

    Tamén che pode gustar

    ·