Please note, this is a STATIC archive of website developer.mozilla.org from 03 Nov 2016, cach3.com does not collect or store any user information, there is no "phishing" involved.

Revision 545295 of Безопасность

  • URL ревизии: Security
  • Заголовок ревизии: Security
  • ID ревизии: 545295
  • Создано:
  • Автор: Jesse
  • Это текущая ревизия? Нет
  • Комментарий

Содержание ревизии

Web security

Content Security Policy
An added layer of security that helps to detect and mitigate certain types of attacks, including Cross Site Scripting (XSS) and data injection attacks. These attacks are used for everything from data theft to site defacement or distribution of malware.
Scripts and the Same Origin Policy
The same origin policy prevents a document or script loaded from one origin from getting or setting properties of a document from a different origin.
Securing your site
Tips and best practices for security your site and your users' data.

Finding browser vulnerabilities

Known Vulnerabilities and Fixes in Mozilla
Learn from our past mistakes.
Bug bounties
We appreciate all bug reports, but we appreciate reports of severe security bugs with $3000 rewards.
Debugging Mozilla with Valgrind
A memory debugger that can also track use of uninitialized memory.
Building Firefox with Address Sanitizer
A memory debugger that can also find non-heap errors.
Dehydra
Mozilla's framework for custom static analyses.
Clang Static Analysis
A static analysis tool to find common bugs in C-family languages.
Is my crash exploitable?
A quick set of heuristics if you don't have time to debug fully.
Fuzz testing
The art of generating random input in order to break software.

View All...

Community

  • Forums
    • {{ Forum("dev-security", "mozilla.dev.security") }}
    • {{ Forum("dev-tech-crypto", "mozilla.dev.tech.crypto") }}

 

Источник ревизии

<table class="topicpage-table">
  <tbody>
    <tr>
      <td>
        <h2 class="Documentation" id="Documentation" name="Documentation">Web security</h2>
        <dl>
          <dt>
            <a href="/en-US/docs/Security/CSP" title="Security/CSP">Content Security Policy</a></dt>
          <dd>
            An added layer of security that helps to detect and mitigate certain types of attacks, including Cross Site Scripting (XSS) and data injection attacks. These attacks are used for everything from data theft to site defacement or distribution of malware.</dd>
          <dt>
            <a class="internal" href="/en-US/docs/Same_origin_policy_for_JavaScript" title="Same origin policy for JavaScript">Scripts and the Same Origin Policy</a></dt>
          <dd>
            The same origin policy prevents a document or script loaded from one origin from getting or setting properties of a document from a different origin.</dd>
          <dt>
            <a href="/en-US/docs/Security/Securing_your_site" title="Security/Securing your site">Securing your site</a></dt>
          <dd>
            Tips and best practices for security your site and your users' data.</dd>
        </dl>
        <h2 class="Tools" id="Finding_browser_vulnerabilities">Finding browser vulnerabilities</h2>
        <dl>
          <dt>
            <a class="external" href="https://www.mozilla.org/projects/security/known-vulnerabilities.html">Known Vulnerabilities and Fixes in Mozilla</a></dt>
          <dd>
            Learn from our past mistakes.</dd>
          <dt>
            <a class="external" href="https://www.mozilla.org/security/bug-bounty.html" title="https://www.mozilla.org/security/bug-bounty.html">Bug bounties</a></dt>
          <dd>
            We appreciate all bug reports, but we appreciate reports of severe security bugs with $3000 rewards.</dd>
          <dt>
            <a class="internal" href="/en-US/docs/Debugging_Mozilla_with_Valgrind" title="Debugging Mozilla with valgrind">Debugging Mozilla with Valgrind</a></dt>
          <dd>
            A memory debugger that can also track use of uninitialized memory.</dd>
          <dt>
            <a href="/en-US/docs/Building_Firefox_with_Address_Sanitizer" title="Building Firefox with Address Sanitizer"><span class="internal">Building Firefox with Address Sanitizer</span></a></dt>
          <dd>
            A memory debugger that can also find non-heap errors.</dd>
          <dt>
            <a href="/en-US/docs/Dehydra" title="Dehydra">Dehydra</a></dt>
          <dd>
            Mozilla's framework for custom static analyses.</dd>
          <dt>
            <a href="/en-US/docs/Clang_Static_Analysis" title="Clang Static Analysis">Clang Static Analysis</a></dt>
          <dd>
            A static analysis tool to find common bugs in C-family languages.</dd>
          <dt>
            <a href="/en-US/docs/Is_my_crash_exploitable" title="Is my crash exploitable">Is my crash exploitable?</a></dt>
          <dd>
            A quick set of heuristics if you don't have time to debug fully.</dd>
          <dt>
            <a href="/en-US/docs/Fuzz_testing" title="Fuzz testing">Fuzz testing</a></dt>
          <dd>
            The art of generating random input in order to break software.</dd>
        </dl>
        <p><span class="alllinks"><a href="/en-US/docs/tag/Security" title="tag/Security">View All...</a></span></p>
      </td>
      <td>
        <h2 class="Community" id="Community" name="Community">Community</h2>
        <ul>
          <li>Forums
            <ul>
              <li>{{ Forum("dev-security", "mozilla.dev.security") }}</li>
              <li>{{ Forum("dev-tech-crypto", "mozilla.dev.tech.crypto") }}</li>
            </ul>
          </li>
        </ul>
        <ul>
          <li>IRC channels
            <ul>
              <li><a class="link-irc" href="irc://irc.mozilla.org/security" title="irc://irc.mozilla.org/security">#security</a> on irc.mozilla.org</li>
              <li><a class="link-irc" href="irc://irc.mozilla.org/fuzzing" title="irc://irc.mozilla.org/fuzzing">#fuzzing</a> on irc.mozilla.org</li>
              <li><a class="link-irc" href="irc://irc.mozilla.org/websectools" title="irc://irc.mozilla.org/websectools">#websectools</a> on irc.mozilla.org</li>
            </ul>
          </li>
          <li>Blogs
            <ul>
              <li><a class="link-https" href="https://blog.mozilla.com/security/" title="https://blog.mozilla.com/security/">https://blog.mozilla.com/security/</a></li>
            </ul>
          </li>
          <li>Twitter
            <ul>
              <li><a class="link-https" href="https://twitter.com/#!/mozsec" title="https://twitter.com/#!/mozsec">@mozsec</a></li>
            </ul>
          </li>
        </ul>
        <h2 class="Related_Topics" id="Related_Topics" name="Related_Topics">Related Topics</h2>
        <ul>
          <li><a href="/en-US/docs/Developer_Guide" title="Developing_Mozilla">Developing Mozilla</a></li>
        </ul>
      </td>
    </tr>
  </tbody>
</table>
<p>&nbsp;</p>
Вернуть эту версию