LearnUmbraco7 icon indicating copy to clipboard operation
LearnUmbraco7 copied to clipboard

Add security bit

Open kgiszewski opened this issue 9 years ago • 8 comments

Strip headers/add misleading headers Rewrite /umbraco to something else

kgiszewski avatar Jun 11 '15 13:06 kgiszewski

Use ssl use request forgery validation on forms Deny iframe by header xframe options Xss and inline upgrade often

kgiszewski avatar Jun 11 '15 13:06 kgiszewski

Based on @CGaskell 's cg15 presentation Sanitize input social engineering server side sanitizing and model validation Sql injection

kgiszewski avatar Jun 11 '15 13:06 kgiszewski

Hey Kevin, I'm happy to take the chapter if you like and type it up. Although it sounds like you may be more qualified!

CGaskell avatar Jun 12 '15 08:06 CGaskell

Please write it if you could please! I curate all sumissions for formatting and structure so expect me to edit some items after you send a PR. Thanks!

kgiszewski avatar Jun 12 '15 10:06 kgiszewski

Add a new chapter for this btw.

kgiszewski avatar Jun 12 '15 10:06 kgiszewski

@CGaskell Still have the time for this? If not, I can get something written up.

kgiszewski avatar Jul 08 '15 22:07 kgiszewski

I'm struggling right now Kevin (still haven't got round to blogging about the talk!) I will have some time in a month or so if you'd like me to pick it up then?

CGaskell avatar Jul 13 '15 09:07 CGaskell

Sounds good :+1:

kgiszewski avatar Jul 13 '15 10:07 kgiszewski