Lukas Weichselbaum

@we1x

Security Researcher Opinions are my own.

Participa desde janeiro de 2011

@we1x está bloqueado

Tem certeza de que deseja ver estes Tweets? Visualizar os Tweets não desbloqueará @we1x.

  1. Tweet Fixado
    26 de set de 2016

    CSP-Evaluator () got released today! Find out if your is among the 95% that can be trivially bypassed!

  2. 19 de jan

    Wrote up a summary of some of the content security policy related work we have been up to on

  3. 11 de jan

    Edge now fully supports version 2 (incl. nonces). is on their radar.

  4. 28 de nov de 2016

    Glad to present at in Zürich "Breaking Bad Content Security Policies" with tomorrow, at 9:15, CAB G 61 –

  5. 25 de nov de 2016

    Goodbye ! GAE Scaffold now supports Closure Templates (strict autoescape!) with auto-noncing and nonce-based with .

  6. 11 de nov de 2016

    Thx everyone for joining my talk at You can read up everything about strict csp here:

  7. 10 de nov de 2016

    strict-dynamic support for landed in Firefox (nightly now, stable in FF52)! Kudos to the FF team

  8. 7 de nov de 2016
  9. 4 de nov de 2016

    Join my + 's tutorial on Adopting Strict Content Security Policy for XSS Protection

  10. 27 de out de 2016

    Great work on CSP. Evaluation and defense proposal. by

  11. 25 de out de 2016

    picked a particular nice place for dinner this year!

  12. 19 de out de 2016
  13. 18 de out de 2016

    I just pushed our open source version of CSP-Evaluator to github. Feel free to reuse checks & whitelist bypass list!

  14. 26 de set de 2016

    We just released a blog post, docs and a couple of tools (Evaluator, Mitigator) to help adopting a secure

  15. 2 de set de 2016

    This is one of the most important web sec papers in recent history: (section 3.4 is where the juicy bits are)

  16. 2 de set de 2016

    Most offer no XSS protection and are based on whitelists(median 12) helps

  17. 1 de set de 2016

    Our ( ) paper is out. 95% bypassable, whitelisting is doomed, helps.

  18. 1 de set de 2016

    Our ( ) research paper (ACM CSS) is public now. It's time to drop whitelists!

  19. 4 de ago de 2016

    Want to learn how to adopt strict ? Drop by our ( ) tutorial for in Boston organized by !

  20. Lukas Weichselbaum seguiu , , and 70 others

O carregamento parece estar demorando.

O Twitter deve estar sobrecarregado ou passando por algum problema momentâneo. Tente novamente ou acesse o Status do Twitterpara obter mais informações.

    Você também pode gostar

    ·