Loading…
Wednesday, November 20 • 1:00pm - 1:50pm
HTML5: Risky Business or Hidden Security Tool Chest?

Sign up or log in to save this to your schedule and see who's attending!

Video of session
https://www.youtube.com/watch?v=fzjpUqMwnoI&list=PLpr-xdpM8wG8ODR2zWs06JkMmlRiLyBXU&index=15

The term "HTML5" encompasses a number of new subsystems that are currently being implemented in browsers. Most of these were created with a focus on functionality, not security. But the impact of these features is not all negative for security. Quite the oposit. New abilities to store data on the client, or having access to hardware sensors like geolocation and tilt sensors have the ability to enhance session tracking and make authentication more secure and easier to use. This talk will select a number of examples to demonstrate the positive, as well as sometimes negative, impact of these features for web application security. Code samples for any demonstrations will be made available.

Speakers
avatar for Johannes Ullrich

Johannes Ullrich

Dean of Research and a faculty member, SANS Technology Institute
Johannes Ullrich, dean of research at the SANS Technology Institute, is currently responsible for the SANS Internet Storm Center (ISC) and the GIAC Gold program. His research interests include IPv6, network traffic analysis and secure software development. In 2004, Network World named... Read More →


Wednesday November 20, 2013 1:00pm - 1:50pm
Salon 2 (5th Floor Ballroom) NY Marriott Marquis

Attendees (0)