Changes

Jump to: navigation, search

Community:SummerOfCode12:Brainstorming

330 bytes added, 23:46, 8 March 2012
Security Engineering
|-
| User Supplied CSP
| Develop Currently, a website can decide to mitigate attacks on their pages and their usersm attack by defining and implementing a Content Security Policy. However, users have no way of protecting themselves in cases where their favorite websites aren't using CSP. This project is to develop a firefox add-on that allows users to specify Content Security Policies for sites (i.e. don't ever iframe my banksbank website, don't allow inline script on my blog, etc). Monitor In addition, the add-on could monitor websites the user visits frequently to determine a default CSP policy for each site. Give the user the option to apply that policy to the website and potentially protect themselves from future exploits on the site caused by current or future vulnerabilities.
| Tanvi
| Tanvi
Canmove, confirm
285
edits

Navigation menu