International PHP Conference
The Conference for PHP and Web Development

Practical Security in Web Applications

Session
Until the conference starts:
✓ Extra specials
✓ Group discount
Register now
Bis Konferenzbeginn:
✓ 5-Tages-Special
✓ Kollegenrabatt
Jetzt anmelden
Until October 1:
✓ PS Classic or C64 for free
✓ Group discount
✓ Save up to € 520
Register now
Bis 1. Oktober:
✓ PS Classic oder C64 Mini for free
✓ Kollegenrabatt
✓ Bis zu 520 € sparen
Jetzt anmelden
Infos
Tuesday, June 4 2019
10:30 - 11:15

Explore effective methods to identify & avoid the most common and devastating security pitfalls in Web Applications.

When it comes to an enterprise’s exposure to security vulnerabilities, one could easily argue that its web presence is by far its greatest threat. There are many ways to build vulnerable applications and a few effective ways to "build them right". We’ll instrument you to stay on right side of this equation.

Agenda:

Basic Resources and Tooling

  • We’ll look at the OWASP Top 10
  • Open-Source Code Analysis for your CI/CD
  • Open-Source Security Scanning

Low-level Threat Avoidance

  • Avoiding SQL Injections — Dangers of not properly-using an ORM
  • Avoiding CSRF
  • Avoiding XSS
    • Data Scrubbing
    • Data Rendering

Application Threat Avoidance

  • User Authentication / Password Hashing
  • OAuth Security
  • Resource Access
    • Multi Tenancy: Users & Companies

Architectural Considerations

  • Systems Architecture
  • Credentials Handling

This Session originates from the archive of Diese Session stammt aus dem Archiv von BerlinBerlin . Take me to the program of . Hier geht es zum aktuellen Programm von Munich München .

This Session originates from the archive of Diese Session stammt aus dem Archiv von BerlinBerlin . Take me to the program of . Hier geht es zum aktuellen Programm von Berlin Berlin .

This Session Diese Session originates from the archive of stammt aus dem Archiv von BerlinBerlin . Take me to the current program of . Hier geht es zum aktuellen Programm von Munich München or oder Berlin Berlin .

Stay tuned!

Behind the Tracks of IPC

PHP Core Technology
Best Practices & Application

General Web Development
General Web Development & more

Agile & Company Culture
Agility has become mainstream

Software Architecture
Concepts & Environments

Security
All about Web Security

Testing & Test Driven Development
More about software testing tools and strategies

DevOps & Continuous Delivery
DevOps is a philosophy

Docker, Kubernetes, Cloud
Cloud-based & native apps

#slideless (pure coding)
Showing how technology really works

PHP Frameworks
All about PHP Frameworks

Content Management Systems
Sessions on Content Management Systems