Web 2.0 tutorial: Security awareness for Web 2.0 attacks

Web 2.0 tutorial: Security awareness for Web 2.0 attacks

Web 2.0 tutorial: Security awareness for Web 2.0 attacks

Date: Jun 15, 2011

In this special Web 2.0 tutorial video, security luminary Robert “Rsnake” Hansen discusses serious Web 2.0 attacks that pose a severe threat to the Web security landscape. This exclusive in-depth presentation looks at an array of attack methods and what can be done to better recognize and secure these threats against your organization.

Topics include:
Primer of Same Origin Policy - 2:11
Cross Site Request Forgery - 3:56
CSRF Mitigation - 6:11
Cross Site Scripting - 8:58
XSS - 12:29
XSS + CSRF - 13:41
Clickjacking - 14:50
CLickjacing examples - 17:15
Google Bowling - 19:44
PHP File includes - 22:58
SEO via PHP RFI - 25:38
Malvertizing - 26:29
Future of spamming - 30:03
Clouds of insecurity - 32:34
Other related threats - 34:14

More on Web Application and Web 2.0 Threats