The Future of Cookies - Anders Abel - NDC Security 2024

Поделиться
HTML-код
  • Опубликовано: 27 ноя 2024

Комментарии • 8

  •  7 месяцев назад

    Very nice talk.

  • @deefdragon
    @deefdragon 8 месяцев назад +2

    The alarm triggering at the 20 minutes was very ammusing

  • @Ostap1974
    @Ostap1974 7 месяцев назад +1

    I thunk the cookie jar approach with http header that would whitelist origins where from the cookies are accepted, would be very robust and reliable solution.

  • @capability-snob
    @capability-snob 8 месяцев назад +5

    There's an even easier way to ensure your website was never vulnerable to CSRF or clickjacking: these are both instances of the Confused Deputy Problem. It turns out that when Norm Hardy first wrote about this problem in 1988, he also described the solution for it. If you've been building systems the way he described, you've looked on in bewilderment at the rest of the world as it grapples to plug holes in a legacy security model.

  • @01110100011101110110
    @01110100011101110110 Месяц назад

    Interesting talk, however, it's not really showing "the future of cookies," but rather "the past and present."

  • @Soliber
    @Soliber 8 месяцев назад +3

    So everyone wants to fix it so ads can still track us, but screw security 😅

  • @abylay9288
    @abylay9288 8 месяцев назад +3

    *biscuits