How a vulnerability hack may happen and how to prevent it.

Presentation byBruno Bossola

Nowadays most of our code is opensource, and we use a large amount of it in our systems. But we need to keep an eye on those opensource components, as new vulnerabilities are discovered every day. What happens if we let our guard down? And what can we do to avoid it? In this presentation we take a look at a simple RCE vulnerability, how it can be exploited, sending pure (?) JSON to a server, in order to take control of it, in a live demo. After explaining what's happening, we then take a look at a free plugin to use directly in our IDE to prevent this, giving the power back to developers!

Presented with these Guilds
Cover Photo for JavaScript Monthly London Meetup
Primary Photo for JavaScript Monthly London Meetup

JavaScript Monthly London Meetup

Javascript evolution has sped up (a lot) in recent years and event the most veterans developers find it hard to keep up with the latest trends. This meetup group aims to bring you monthly bite-sized updates on the world of Javascript along with a healthy dose of nice people, beer and pizza.

  • Please use your full name when registering, as some of our venues require a full list of attendees beforehand. You have an idea and you want to be a speaker?

We are always looking for more speakers - submit your talk here (https://docs.google.com/forms/d/e/1FAIpQLSdFaatfveOUbrmer47jYb5J4J4ttxAFc1CgTjUDltBXmDOJmg/viewform)

1.1K Members
Similar Presentations

How a vulnerability hack may happen and how to prevent it.

Presentation byBruno Bossola

Nowadays most of our code is opensource, and we use a large amount of it in our systems. But we need to keep an eye on those opensource components, as new vulnerabilities are discovered every day. What happens if we let our guard down? And what can we do to avoid it? In this presentation we take a look at a simple RCE vulnerability, how it can be exploited, sending pure (?) JSON to a server, in order to take control of it, in a live demo. After explaining what's happening, we then take a look at a free plugin to use directly in our IDE to prevent this, giving the power back to developers!

Presented with these Guilds
Cover Photo for JavaScript Monthly London Meetup
Primary Photo for JavaScript Monthly London Meetup

JavaScript Monthly London Meetup

Javascript evolution has sped up (a lot) in recent years and event the most veterans developers find it hard to keep up with the latest trends. This meetup group aims to bring you monthly bite-sized updates on the world of Javascript along with a healthy dose of nice people, beer and pizza.

  • Please use your full name when registering, as some of our venues require a full list of attendees beforehand. You have an idea and you want to be a speaker?

We are always looking for more speakers - submit your talk here (https://docs.google.com/forms/d/e/1FAIpQLSdFaatfveOUbrmer47jYb5J4J4ttxAFc1CgTjUDltBXmDOJmg/viewform)

1.1K Members
Similar Presentations