Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

编写安全插件开发手册计划 #186

Open
zsxsoft opened this issue May 2, 2018 · 0 comments
Open

编写安全插件开发手册计划 #186

zsxsoft opened this issue May 2, 2018 · 0 comments

Comments

@zsxsoft
Copy link
Contributor

zsxsoft commented May 2, 2018

包含以下内容:

  • 权限验证
  • 预防SQL注入
  • 预防CSRF
  • 预防XSS
    • CSP nonce的使用
  • 预防任意文件读取
  • 预防关键信息泄漏
  • 预防任意代码上传/执行

need more fucking time...

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

No branches or pull requests

1 participant