Web Security - Teil 1
Veröffentlicht: 10.08.2026 - 06:00 | Laufzeit: 01:32:05
Was macht Webanwendungen so attraktiv als Ziel für Hacker? Welche Angriffe gibt es und welche Technologien können uns helfen, diese abzuwehren? Was steckt hinter all den Abkürzungen SOP, XSS, CORS, CSP?
Download als MP3
(92 MB)
Your browser does not support the audio element.
Kapitel
00:00:00 : Intro
00:00:24 : Begrüßung
00:05:05 : Thema: Websicherheit
00:05:45 : Warum ist Websecurity so relevant?
00:08:36 : Webassembly
00:10:27 : Ebenen einer Webanwendung
00:13:52 : Laden einer Webseite
00:15:08 : Rolle von JavaScript
00:21:28 : Sicherheitslücken durch JavaScript
00:23:02 : Warum sind Webanwendungen anfällig?
00:28:32 : OWASP Top 10
00:31:21 : Platz 1: Broken Access Control
00:33:25 : Platz 2: Security Misconfiguration
00:35:24 : Platz 3: Supply Chain Failure
00:36:37 : Platz 4: Cryptographic Failures
00:38:41 : Platz 5: Injection
00:39:41 : Platz 6: Insecure Design
00:40:32 : Shift Left
00:42:16 : Platz 7: Authentication Failures
00:42:50 : Platz 8: Software or Data Integrity Failures
00:44:46 : Platz 9: Security Logging and Alerting Failures
00:46:43 : Platz 10: Mishandling of Exceptional Conditions
00:48:35 : Injection Angriffe
00:50:01 : Cross Site Scripting (XSS)
00:54:13 : Same Origin Policy (SOP)
01:00:00 : Cross Origin Resource Sharing (CORS)
01:10:17 : XSS-Protection-Header
01:13:53 : Content Security Policy (CSP)
01:23:26 : JavaScript Filterung
01:29:47 : Cliffhanger
01:31:34 : Verabschiedung
01:31:41 : Outro
Thomas Smits
Martina Kraus