JavaScript Security Vulnerabilities Tutorial – With Code Examples

preview_player
Показать описание
Learn about 10 security vulnerabilities every JavaScript developer should know. First try to find the vulnerabilities in the different code examples. Then learn how to fix the issues.

✏️ Brandon from Semgrep developed this course.

🏗 Semgrep provided a grant to make this course possible.

🎉 Thanks to our Champion and Sponsor supporters:
👾 davthecoder
👾 jedi-or-sith
👾 南宮千影
👾 Agustín Kussrow
👾 Nattira Maneerat
👾 Heather Wcislo
👾 Serhiy Kalinets
👾 Justin Hual
👾 Otis Morgan

--

Рекомендации по теме
Комментарии
Автор

Turns out that I did not figure out any of these vulnerabilities which means that I have been shipping vulnerable code all this time 😬Thanks for the awesome tuts. Time to debug prod 😅

takanome-dev
Автор


Just the tutorial I was looking for learning code review.
As a security researcher and CTF player, this is a very Vital skill one should master. Or at least try to learn basic
Thanks a lot ❤️

random_guy
Автор

I really enjoyed your coding style, the clarity in presenting scenarios, and your explanations. I look forward to watching more of your videos. Additionally, I believe it's crucial to stay informed about security topics, especially given their significance in today's landscape.

developerGRohit
Автор

Thanks for including proper error management in the second example. I so often see during my tests apps sending global 200's or 500's - not really taking the time to correctly management them -> thus poor having logging information. Many teams should watch this video. Cheers.

jayseb
Автор

Awesome video as always. Would love to see more videos about cyber security/ethical hacking/pentesting!!

dreamofyesterday
Автор

Very nice + quick intro to secure code review!

saltymiche
Автор

Good one.
Would like to see more on this.

kooldandy
Автор

Thank you so much, this is incredible!

TheJohndward
Автор

Looking forward for more videos like this.. it's lit💥

gk_eth
Автор

That was an incredible tutorial, thank you very much for share with us.

keilerguardo
Автор

Amazing course. Thank you much for publishing it. Very usefull.

efezlfn
Автор

Giving examples is a good idea you should give more of them in your courses

ceciljoel
Автор

Thank you for this amazing video! Very informative.

chenmoasis
Автор

Does this guy have a course online? What a teacher

jpsfyjr
Автор

Great idea, would be really cool to increase font size and install more contrast theme just for the video, because I can't see comments from my phone and barely can read other code. But nevertheless, thanks!

alexbird
Автор

great video about security information

paras.developer
Автор

In 14:35, in this case won't we get an error before even entering the find method? because the request's body is in JSON format but the username is an object that can't be inserted into the request's body.

captainalpha
Автор

Please make a similar video for solidity . I would say it would help if fcc can upload the famous Secureum Bootcamp for Smart Contract Security it would be very beneficial 🙏

i_am_dumb
Автор

understood nothing but loved it! Watched almost 9 minutes of this tut, will come back later after learning the basics of js. Still trying to make a tic-tac-toe game> Wish me luck!

hpyvetx
Автор

Please change the color of your comment. I can't read it on a black screen, but otherwise you have a fantastic video.

johnsansevere