Heads up! To view this whole video, sign in with your Courses account or enroll in your free 7-day trial. Sign In Enroll
Well done!
You have completed Introduction to Application Security!
You have completed Introduction to Application Security!
We are going to discuss what could happen if you fail to adequately protect your websites, apps, services, and APIs, and why entire companies have gone out of business and countries have gone offline due to improper security controls.
New Terms
- Cross-Site Scripting (XSS): a type of computer security vulnerability typically found in web applications. XSS enables attackers to inject client-side scripts into web pages viewed by other users. A cross-site scripting vulnerability may be used by attackers to bypass access controls such as the same-origin policy.
- Samy Worm: An XSS worm that spread throughout MySpace in the mid-2000s caused by famous security researcher Samy Kamkar.
Documentation
More about XSS - Cross-site Scripting (XSS)
Technical explanation of Samy Worm, or JS.Spacehero worm, from Samy Kamkar
Links to details and story from Samy Kamkar on Samy Worm
Worldβs Biggest Data Breaches visualization
Further Reading
Ashley Madison Data Breach - Wiki
The hacker who broke into Mark Zuckerberg's Facebook page will get a $12,000 reward from online donors, by Joshua Gardner and Hayley Peterson
Equifax Data Breach - Epic
Related Discussions
Have questions about this video? Start a discussion with the community and Treehouse staff.
Sign upRelated Discussions
Have questions about this video? Start a discussion with the community and Treehouse staff.
Sign up
You need to sign up for Treehouse in order to download course files.
Sign upYou need to sign up for Treehouse in order to set up Workspace
Sign up