Guidelines for writing secure code for Python developers. Hunter demonstrates vulnerable code and security issues that vary in severity, and explains how these issues can be mitigated.
I hope to touch upon all of the following topics:
- Authentication
- Cross-Site Request Forgery (CSRF)
- Generating CSRF tokens
- Cross-Site Scripting (XSS)
- Reflected XSS
- Stored XSS
- Self-XSS
- Cryptography
- HTTPS
- Randomness
- Password Storage
- Timing Attacks
- Denial of Service
- Information Disclosure
- SQL Injection
- Unvalidated / Open Redirects
- Best Practices
Hunter was created by @EdOverflow.
By contributing your code, you agree to license your contribution under the MIT License. By contributing to the docs, you agree to license your contribution under the Creative Commons Attribution 4.0 International License.