Content Security Policy: Zero to Hero

a year ago

Stuart Larsen #video


Description

This is a full length background on Content Security Policy that will cover everything you need to know about Content Security Policy and how to deploy it in your organization.

Table of Contents

  • 00:00 Introduction
  • 00:08 Outline
  • 00:53 What is Content-Security-Policy (CSP)?
  • 01:02 What is Cross Site Scripting (XSS)?
  • 03:19 How does CSP prevent XSS?
  • 04:35 How is Content-Security-Policy delivered?
  • 05:47 What are the different directives and sources for CSP?
  • 12:03 Inline Javascript and CSP
  • 18:37 What is report-uri?
  • 19:38 What is in a repot-uri violation report?
  • 21:52 How to build a policy?
  • 23:43 How long does it take to deploy CSP?
  • 25:00 What are the other CSP protections?
  • 26:50 Common Questions/Misconfigurations
  • 30:04 Useful Tools
  • 33:24 Useful Websites
  • 34:15 Conclusion

Hope you enjoy!

Ready to start?

Csper has the tools to help you understand, deploy and manage your content security policy. Get started in minutes. Report aggregations, classification, analysis, alerting, realtime and more. Free 14 day trial.