You are here |
www.juanfernandes.uk | ||
| | | |
grayduck.mn
|
|
| | | | Just how bad is security in the top one million sites? Better! | |
| | | |
notes.elmiko.dev
|
|
| | | | ||
| | | |
ole.michelsen.dk
|
|
| | | | Protect your website against cross-site scripting (XSS) with a content security policy (CSP) with a custom header in Apache, nginx or IIS. | |
| | | |
www.cloudwithchris.com
|
|
| | In my blog post earlier this week, I mentioned that I recently spoke at the Northern Azure User Group. The other speaker for the evening was Scott Hanselman, who talked about his journey moving a 17 year old .NET App into Azure. This was his blog. Along the way, he called out some of the tools that he used along the way. One was a tool called securityheaders.com. As any engaged listener does, I took note of the tools that he used, and added them to my cloudwithchris.com backlog during the talk. When I later investigated the initial rating of the site, I received a score of an F - which appears to be the lowest possible score that you can receive! Given that I only allow HTTPS traffic to my site, I was surprised by this - so I begun looking into the recommendations further. |