Download this episode
You can't fight a war that you don't know you're waging. You can't defend your website against attack unless you know the tricks that the bad guys will use. Join the "Flight of the Pwnchords*" and learn the tricks that Andy "the hacker" will use and watch as Kirk "the developer" tries to defend his ASP.NET website against them. By the end of this session you will have an understanding of some of the common attacks, such as Cross-Site Scripting (XSS), Cross-Domain Request Forgery (CDRF), and will have an appreciation of how layering your defenses (defense-in-depth) can help protect you from exploit chaining. The session will also give you some practical tips that you can apply straight away in Visual Studio 2008 to help you build secure websites. (* AKA "New Zealand's fourth most popular comedy hacking duo")
Available formats for this video:
Actual format may change based on video formats available and browser capability.