Class Central is learner-supported. When you buy through links on our site, we may earn an affiliate commission.

LinkedIn Learning

Node.js: Security

via LinkedIn Learning

Write review

Overview

Google, IBM & Meta Certificates – 40% Off
One Coursera Plus subscription covers most Professional Certificates on Coursera.
Unlock All Certificates
Learn to secure Node.js applications by understanding and implementing protections against the OWASP Top 10 vulnerabilities.

Syllabus

Introduction
  • Securing your Node.js projects
  • What you should know
1. Security Overview
  • Introduction to OWASP and other sources
  • OWASP Top 10 in Node.js
  • Overview of broken access control
  • Overview of cryptographic failures
  • Overview of injections
2. Best Practices: Packages
  • Hands-on base template overview
  • Maintain package dependencies
  • Add 2-factor and read-only tokens with NPM
3. Best Practices: Data
  • Data handling with type and validation
  • Use prepared statements for SQL and NoSQL
  • Set proper HTTP headers with Helmet
  • Encrypt user data and session management
4. Best Practices: Server Level
  • Use secure HTTPS protocol
  • Rate limiting against DoS attacks
  • Use a library to prevent CSRF attacks
  • Use cookie attributes
5. Tools for Testing
  • Introduction to OWASP dependency check
  • Find vulnerabilities with Snyk
  • Penetration testing with Burp Suite
Conclusion
  • Next steps

Taught by

Emmanuel Henri

Reviews

4.7 rating at LinkedIn Learning based on 35 ratings

Start your review of Node.js: Security

Never Stop Learning.

Get personalized course recommendations, track subjects and courses with reminders, and more.

Someone learning on their laptop while sitting on the floor.