SE Radio 642: Simon Wijckmans on Third-Party Browser Script Security

  Рет қаралды 196

IEEEComputerSociety

IEEEComputerSociety

Күн бұрын

Simon Wijckmans, founder of c/side -- a company that focuses on monitoring, securing, and optimizing third-party JavaScript -- joins SE Radio host Kanchan Shringi for a conversation about the security risks posed by third-party browser scripts. Through real-world examples and insights drawn from his work in web security, Simon highlights the dangers, including malicious attacks such as the recent Polyfill.io incident. He emphasizes the need for vigilant monitoring, as these third-party scripts remain essential for website functionalities like analytics, chatbots, and ads, despite their potential vulnerabilities. Simon explores the use of self-hosting solutions and content security policies (CSPs) to minimize risks, but he stresses that these measures alone are insufficient to fully safeguard websites.
As the discussion continues, they delve into the importance of layering security approaches. Simon advocates for combining techniques like CSPs, real-time monitoring, and AI-driven analysis, which his company c/side employs to detect and block malicious scripts. He also touches on the complexities of securing single-page applications (SPAs), which allow scripts to persist across pages without full reloads, increasing the attack surface for third-party vulnerabilities. Brought to you by IEEE Computer Society and IEEE Software magazine.

Пікірлер
SE Radio 643: Ganesh Datta on Production Readiness
53:15
IEEEComputerSociety
Рет қаралды 190
SE Radio 640: Jonathan Horvath on Physical Security
59:25
IEEEComputerSociety
Рет қаралды 198
Every team from the Bracket Buster! Who ya got? 😏
0:53
FailArmy Shorts
Рет қаралды 13 МЛН
-5+3은 뭔가요? 📚 #shorts
0:19
5 분 Tricks
Рет қаралды 13 МЛН
Intro to the Zig Programming Language • Andrew Kelley • GOTO 2022
50:14
Employees as Customers: Designing Unified People Experiences
42:51
Learn Express JS In 35 Minutes
36:03
Web Dev Simplified
Рет қаралды 867 М.
SE Radio 641: Catherine Nelson on Machine Learning in Data Science
48:20
IEEEComputerSociety
Рет қаралды 243
OAuth 2.0 and OpenID Connect (in plain English)
1:02:17
OktaDev
Рет қаралды 1,8 МЛН
SE Radio 643: Tim McNamara on Error Handling in Rust
53:48
IEEEComputerSociety
Рет қаралды 265
IEEE CIS Webinar: The Neurobiology of Artificial Intelligence
1:04:31
IEEE Computational Intelligence Society
Рет қаралды 249
SE Radio 645: Vinay Tripathi on BGP Optimization
59:28
IEEEComputerSociety
Рет қаралды 105
Every team from the Bracket Buster! Who ya got? 😏
0:53
FailArmy Shorts
Рет қаралды 13 МЛН