Cyber Hack Theatre

Wed 3rd Oct 14:00 to 14:50

XSS Everywhere!: What is it, why should I care, and how can I avoid it?

Cross-Site Scripting (XSS) is by far the most widespread high impact vulnerability present even in the best of web applications, regardless of the framework or programming language employed - a burly steadfast member of the OWASP Top Ten. The client-side nature of typical XSS has led to a general underappreciation of its exploitation potential, though a good understanding of the vulnerability and its subtle variations will show how it can be used to devastating effect... and more importantly: how it can be avoided.

In this seminar we will build up piece-by-piece an understanding of XSS that spares no detail whilst being accessible also at a non-technical level.

What you will take away from this session

  • An understanding of XSS and its core conditions
  • An appreciation of the exploitation potential of XSS
  • An understanding of how to avoid XSS


Nick Blundell Nick Blundell View Profile