This site is archived.
Abstract: 

Co-presenters: Greg Knaddison, Matt Cheney, and Ezra Gildesgame.

Demonstrations of developer security problems and their solutions. How to work with the Drupal Security Team.

Presenters: 

Neil Drumm
Greg Knaddison
Matt Cheney
Ezra Gildesgame

Our slides

Agenda

Demos, explanations and how to avoid:

  • Cross-site scripting attacks
  • Cross-site request forgery
  • SQL injection
  • Menu access checks
  • Node access checks

How to manage security issues with the Drupal Security Team.

Goals

Learn how to identify and fix security issues in your code and how to work with the Drupal Security Team.

Resources