Главная
Study mode:
on
1
Intro
2
Web Extensions
3
What are Extensions
4
Security mechanisms
5
Extensions
6
Extension Size
7
HTTP Headers
8
Simple Extension
9
Protecting the integrity
10
Outlook
11
Shortterm recommendation
12
Enterprise recommendation
13
Questions
Description:
Explore the security implications of browser extensions in this 40-minute conference talk from AppSec EU 2017. Delve into the dual nature of extensions as both useful tools and potential security risks. Examine the current security model for browser extensions and its limitations in addressing user privacy concerns. Learn about the analysis of over 2500 browser extensions, their usage of security features, and examples of high-risk extensions. Understand the threat model from a user perspective and discuss potential improvements to enhance browser extension security. Gain insights into short-term recommendations and enterprise-level strategies for managing extension risks.

The Evil Friend in Your Browser - Browser Extension Security Risks

OWASP Foundation
Add to list