Laravel Security in Depth > Black Friday > 25% / 50% off > Forever ⭐
Get 25% off individual subscriptions, or 50% off teams. Forever.

Get 25% off individual subscriptions, or 50% off teams. Forever.
[Tip #122] Content Security Policies are awesome, but if you haven't fully configured all of your directives, it's possible to redirect requests, inherit Nonces, and get juicy CSP-bypassing XSS! 😈
[Tip #121] Technically, XSS involves injecting malicious Javascript, but sometimes you don't need any JS to get up to mischief! 😈
I almost missed it, but it's time to celebrate 4 years of Securing Laravel!
[Tip #120] How should we safely handle resetting forgotten passwords without compromising the protection that MFA provides?