public marks

PUBLIC MARKS with tags security & "cross-site scripting"

2014

An Introduction to Content Security Policy - HTML5 Rocks

by dzc
Instead of blindly trusting everything that a server delivers, CSP defines the Content-Security-Policy HTTP header that allows you to create a whitelist of sources of trusted content, and instructs the browser to only execute or render resources from those sources. Even if an attacker can find a hole through which to inject script, the script won’t match the whitelist, and therefore won’t be executed.

2009

PUBLIC TAGS related to tag security

api +   blog +   blogs +   business +   code +   computer +   css +   delicious +   design +   dev +   development +   english +   extension +   extensions +   firefox +   gmail +   google +   guide +   hack +   hacking +   hacks +   howto +   internet +   malware +   microsoft +   network +   opensource +   privacy +   programming +   proxy +   reference +   research +   reviews +   rss +   search +   SearchEngine +   sécurité +   software +   spam +   surveillance +   tech +   technology +   tips +   tool +   tools +   tutorials +   usability +   web +   webdev +   xss +  

Active users

dzc
last mark : 02/09/2014 11:02