Популярное

Музыка Кино и Анимация Автомобили Животные Спорт Путешествия Игры Юмор

Интересные видео

2025 Сериалы Трейлеры Новости Как сделать Видеоуроки Diy своими руками

Топ запросов

смотреть а4 schoolboy runaway турецкий сериал смотреть мультфильмы эдисон
dTub
Скачать

The Parts of JWT Security Nobody Talks About | Philippe De Ryck, Google Developer Expert

Автор: Israeli Tech Radar

Загружено: 2019-06-16

Просмотров: 38152

Описание:

Join the "Full Stack Developers Israel" future meetups @ http://www.meetup.com/full-stack-deve...

JSON Web Tokens (JWT) have become the de facto standard to transfer application claims between the client and the server. By design, they incorporate the use of signatures to ensure the integrity of the data. However, merely signing the data alone is not enough to guarantee security.

In this talk, we zoom into the security properties of JWTs. After introducing the different signature schemes, we dive into the hard parts nobody talks about. How do you manage and identify the keys used for the signature? How do you handle key rotation? And what about encrypting JWTs? This talk answers all these questions. You will walk away with a set of best practices for adequately securing JWTs.

Philippe De Ryck is the founder of Pragmatic Web Security, where he travels the world to train developers on web security and security engineering. He holds a Ph.D. in web security from KU Leuven. Google recognizes Philippe as a Google Developer Expert for his knowledge of web security and security in Angular applications.

video production: מדיה'לה | Mediale

The Parts of JWT Security Nobody Talks About | Philippe De Ryck, Google Developer Expert

Поделиться в:

Доступные форматы для скачивания:

Скачать видео mp4

  • Информация по загрузке:

Скачать аудио mp3

Похожие видео

Getting API security right - Philippe De Ryck - NDC London 2023

Getting API security right - Philippe De Ryck - NDC London 2023

OAuth 2.0 and OpenID Connect (in plain English)

OAuth 2.0 and OpenID Connect (in plain English)

JWT - JSON Web Token Crash Course (NodeJS & Postgres)

JWT - JSON Web Token Crash Course (NodeJS & Postgres)

AWS re:Invent 2024 - Getting started building serverless SaaS architectures (SEG209)

AWS re:Invent 2024 - Getting started building serverless SaaS architectures (SEG209)

Microservice Authentication and Authorization | Nic Jackson

Microservice Authentication and Authorization | Nic Jackson

The Many Meanings of Event-Driven Architecture • Martin Fowler • GOTO 2017

The Many Meanings of Event-Driven Architecture • Martin Fowler • GOTO 2017

Common API Security Pitfalls • Philippe De Ryck • GOTO 2019

Common API Security Pitfalls • Philippe De Ryck • GOTO 2019

Attacking JWT - Header Injections

Attacking JWT - Header Injections

Design Microservice Architectures the Right Way

Design Microservice Architectures the Right Way

Authentication as a Microservice

Authentication as a Microservice

Common API security pitfalls by Philippe De Ryck

Common API security pitfalls by Philippe De Ryck

The Nuts and Bolts of API Security: Protecting Your Data at All Times

The Nuts and Bolts of API Security: Protecting Your Data at All Times

Музыка для работы - Deep Focus Mix для программирования, кодирования

Музыка для работы - Deep Focus Mix для программирования, кодирования

What is JWT? JSON Web Tokens Explained (Java Brains)

What is JWT? JSON Web Tokens Explained (Java Brains)

Mastering Chaos - A Netflix Guide to Microservices

Mastering Chaos - A Netflix Guide to Microservices

100% Stateless with JWT (JSON Web Token) by Hubert Sablonnière

100% Stateless with JWT (JSON Web Token) by Hubert Sablonnière

Cracking JWT tokens (...) - Luciano Mammino - Codemotion Milan 2017

Cracking JWT tokens (...) - Luciano Mammino - Codemotion Milan 2017

Cookies, Sessions, JSON Web Tokens (JWT) and More 🍪🔐

Cookies, Sessions, JSON Web Tokens (JWT) and More 🍪🔐

Common API Security Pitfalls - Philippe De Ryck

Common API Security Pitfalls - Philippe De Ryck

Session против JWT: различия, о которых вы могли не знать!

Session против JWT: различия, о которых вы могли не знать!

© 2025 dtub. Все права защищены.



  • Контакты
  • О нас
  • Политика конфиденциальности



Контакты для правообладателей: [email protected]