Hostile JavaScript: Attacking and Defending the Browser - Stir Trek 2023

Опубликовано: 18 Март 2025
на канале: Stir Trek
48
like

Recorded at Stir Trek 2023
https://stirtrek.com/speakers/2023

Todd Gardner

How much JavaScript is on your website? Do you know what it does? No really, have you looked at the code and seen what it does? Probably not. JavaScript controls the client side environment, and we can use it to compromise users, consume resources, and steal data. Yet many websites continue to add scripts without review, audit, or thought. Let’s explore what JavaScript can do to a browser, the vectors that JavaScript can get added to websites, and how we can defend against JavaScript attacks.

Download slides and other resources:
https://github.com/stirtrek/2023MaySt...