WarsawJS Talk

Writing secure JavaScript

Presented at Meetup #116 Wed, Jul 10, 2024
Location Paramount, ul. Mokotowska 19, Warsaw.

About this Talk

In my speech I want to talk about web security and how to write secure JavaScript. I will talk about how small bugs have opened huge vulnerabilities even in big companies like Google and Cloudflare.

What are the common and uncommon vulnerabilities in JS full stack applications (XSS, header poisoning, SQLi, clickjacking, directory traversal, RCE, open redirects and more), with real life examples, and how to detect, prevent and mitigate such vulnerabilities.

And at the end I'll give a short talk about how to set up a secure coding environment and why it's important (static code analysis, environment configuration, dependency management).

Andrii Romasiun

Andrii Romasiun

I am a full stack engineer with over 5 years of experience, working with various technologies like Remix, Nest, as well as other languages like C++ as a hobby. Throughout my career I have built e-commerce software, open source crypto trading terminals, COVID mitigation software for public places. I enjoy technical writing and open source. Founded an open source alternative to Google Analytics and reCaptcha.

View Full Profile

Share this talk

← Back to Talk Archive