Overview
Coursera Flash Sale
40% Off Coursera Plus for 3 Months!
Grab it
Learn how Google implements scalable defenses against Cross-Site Scripting (XSS) attacks in this 24-minute conference talk from BSidesLV. Discover Google's comprehensive approach to frontend security through strict Content Security Policy (CSP) implementation, Trusted Types deployment, and compile-time protection mechanisms. Explore the practical challenges and solutions encountered during large-scale rollout of these security measures, gaining insights into best practices that developers can apply to their own projects. Examine the evolution toward a "post-XSS world" where platform-level defaults provide robust anti-XSS protections by design, and understand how these emerging standards will reshape frontend security practices across the industry.
Syllabus
- Date/Time: Tuesday, 11:00–11:20
Taught by
BSidesLV