Advertisement Β· 728 Γ— 90
#
Hashtag
#owasp_shp
Advertisement Β· 728 Γ— 90
Post image

πŸ“‘ OWASP Secure Headers Project: We have refactored the section on the browser’s "Local Network Access" feature.

#appsec #appsecurity #owasp_shp

πŸ“– owasp.org/www-project-...

1 0 1 0
Preview
⚠️ OWASP websites/projects/chapters migration. Β· OWASP www-project-secure-headers Β· Discussion #273 Hi, We (@riramar and myself) created this discussion to share/track with the OSHP community, in a open way, an important coming changes in the OSHP. The context πŸ“ The OWASP foundation has decided t...

πŸ“‘ OWASP Secure Headers Project: The OWASP Foundation has decided to migrate its content to a new CMS. As a result, OSHP content is frozen for the duration of the migration. You can find more information and explanations in the discussion below.

github.com/OWASP/www-pr...

#owasp_shp

0 0 0 0
Overview of the page.

Overview of the page.

πŸ“‘ OWASP Secure Headers Project: We have added information and examples regarding the Trusted Types feature of the Content-Security-Policy header.

πŸ“– owasp.org/www-project-...

#appsec #appsecurity #owasp_shp

0 1 0 0
Content of the page.

Content of the page.

Therefore, if you know of or find an HTTP response header that we have missed, please feel free to share this information with us via a "Feature Request" issue:

github.com/OWASP/www-pr...

#appsec #appsecurity #owasp_shp #http #headers

πŸ“– owasp.org/www-project-...

1 0 1 0

πŸ“‘ OWASP Secure Headers Project:

Over the years, we have compiled a collection of HTTP response headers that disclose technical information. We are continuing our research to find new ones on our own, but we have decided to ask our community for help in finding new ones.

#appsec #owasp_shp

2 1 1 0

πŸ“‘ OWASP Secure Headers Project:

- We added information about the HTTP response header "X-DNS-Prefetch-Control".
- We added the tool "shcheck" to the list of analysis tools.

#appsec #appsecurity #owasp_shp

4 1 1 0
Post image

πŸ“‘ OWASP Secure Headers Project: We added information about the response header "X-DNS-Prefetch-Control" based on technical tests we performed.

#appsec #appsecurity #owasp_shp

πŸ“– owasp.org/www-project-...

0 0 1 0
Post image

πŸ“‘ OWASP Secure Headers Project: We've reworked the section providing code snippets for configuring different web/application servers to leverage "LLM as a Service" providers.

#appsec #appsecurity #owasp_shp

πŸ“– owasp.org/www-project-...

0 0 0 0

πŸ“‘ OWASP Secure Headers Project: Update.

1) We've added a warning about support for the "Private Network Access" request header, as Google has suspended work on this.

2) We've started work on the "Reporting-Endpoints" response header.

#appsec #appsecurity #owasp_shp

0 0 2 0
Content updates

Content updates

πŸ“‘ OWASP Secure Headers Project: Spring updates nΒ°1.

1) Several updates were made to the content.
2) A redirection from previous links was implemented.

#appsec #appsecurity #owasp_shp

πŸ“– owasp.org/www-project-...

πŸ’‘ Related pull requests:

- github.com/OWASP/www-pr...
- github.com/OWASP/owasp....

0 0 0 0
Overview of the tab.

Overview of the tab.

πŸ“‘ OWASP Secure Headers Project: We've redesigned the way statistics are generated and presented. They are now integrated into the main site.

#appsec #appsecurity #owasp_shp

πŸ“Š owasp.org/www-project-...

9 5 1 0
Post image

πŸ“‘ OWASP Secure Headers Project: Section about Content-Security-Policy bypasses prevention updated with information related to the "base-uri" directive.

#appsec #appsecurity #owasp_shp #csp

πŸ“– owasp.org/www-project-...

10 2 2 0