Nowadays most of our code is opensource, and we use a large amount of it in our systems. But we need to keep an eye on those opensource components, as new vulnerabilities are discovered every day. What happens if we let our guard down? And what can we do to avoid it? In this presentation we take a look at a simple RCE vulnerability, how it can be exploited, sending pure (?) JSON to a server, in order to take control of it, in a live demo. After explaining what's happening, we then take a look at a free plugin to use directly in our IDE to prevent this, giving the power back to developers!


Javascript evolution has sped up (a lot) in recent years and event the most veterans developers find it hard to keep up with the latest trends. This meetup group aims to bring you monthly bite-sized updates on the world of Javascript along with a healthy dose of nice people, beer and pizza.
We are always looking for more speakers - submit your talk here (https://docs.google.com/forms/d/e/1FAIpQLSdFaatfveOUbrmer47jYb5J4J4ttxAFc1CgTjUDltBXmDOJmg/viewform)
Platform Sponsors

Torc is a community-first platform bringing together remote-first software engineer and developer opportunities from across the globe. Join a network that’s all about connection, collaboration, and finding your next big move — together.
Join our community today!

Don't let broken lines of code, busted API calls, and crashes ruin your app. Join the 4M developers and 90K organizations who consider Sentry “not bad” when it comes to application monitoring. Use code “guild” for 3 free months of the team plan.
https://sentry.io
Nowadays most of our code is opensource, and we use a large amount of it in our systems. But we need to keep an eye on those opensource components, as new vulnerabilities are discovered every day. What happens if we let our guard down? And what can we do to avoid it? In this presentation we take a look at a simple RCE vulnerability, how it can be exploited, sending pure (?) JSON to a server, in order to take control of it, in a live demo. After explaining what's happening, we then take a look at a free plugin to use directly in our IDE to prevent this, giving the power back to developers!


Javascript evolution has sped up (a lot) in recent years and event the most veterans developers find it hard to keep up with the latest trends. This meetup group aims to bring you monthly bite-sized updates on the world of Javascript along with a healthy dose of nice people, beer and pizza.
We are always looking for more speakers - submit your talk here (https://docs.google.com/forms/d/e/1FAIpQLSdFaatfveOUbrmer47jYb5J4J4ttxAFc1CgTjUDltBXmDOJmg/viewform)
Platform Sponsors

Torc is a community-first platform bringing together remote-first software engineer and developer opportunities from across the globe. Join a network that’s all about connection, collaboration, and finding your next big move — together.
Join our community today!

Don't let broken lines of code, busted API calls, and crashes ruin your app. Join the 4M developers and 90K organizations who consider Sentry “not bad” when it comes to application monitoring. Use code “guild” for 3 free months of the team plan.
https://sentry.io
Get in touch!
hi@guild.host