XSS and the Content Security Policy

Cross-site scripting can be effectively prevented, not least by using a Content Security Policy (CSP).

  • Introduction to XSS and its dangers
  • Detection and elimination of vulnerabilities
  • Using CSP to thwart XSS attacks
XSS and the Content Security Policy

Coming Up Next

Explore our upcoming training sessions

Live Coding

Event Sourcing

Requires programming experience

Learn event sourcing with practical examples and live coding. We will start from scratch in the IDE.

199 €
Apr 3, 2025 online (Zoom) Stefan Priebsch English
Deep Dive

Event Sourcing

Requires programming experience

Intensive workshop on event sourcing: modeling, implementation, CQRS integration, and practical applications.

399 €
May 22, 2025 online (Zoom) Stefan Priebsch English
Premium-Schulung

Event Sourcing

Für Interessierte auf allen Ebenen

Wir speichern unveränderliche Ereignisse und erzeugen daraus wieder Geschäftsobjekte und Projektionen.

1199 €
Jul 15-24, 2025 online (Zoom) Stefan Priebsch German
TDD

Test-Driven Development

for all developers

Develop software goal-oriented! The proven method of test-driven development (TDD) will help you.

799 €
Aug 19-29, 2025 online (Zoom) Sebastian Bergmann English
Premium-Schulung

Domain-Driven-Design

Nicht nur für Entwickler

DDD stellt die Fachlichkeit in den Mittelpunkt und ermöglicht die Zusammenarbeit aller Beteiligten.

1199 €
Dec 2-11, 2025 online (Zoom) Stefan Priebsch German
Hands-On Modelling

Event Storming

Not only for developers

Experience collaborative modeling to visually understand business processes and develop innovative solutions.

199 €
Feb 6, 2025 online (Zoom) Stefan Priebsch English
Deep Dive

5D - The Domain-Driven Design Deep Dive

Not only for developers

Master Domain-Driven Design principles to create solutions that truly align with business needs.

399 €
Oct 9, 2025 online (Zoom) Stefan Priebsch English
PHPUnit

Domänenspezifische Zusicherungen

für alle PHPUnit-Anwender:innen

Domain-Driven Design schafft gemeinsames Verständnis im Team und bildet dies im Code ab. Was bedeutet das für die Tests?

99 €
Aug 8, 2025 online (Zoom) Sebastian Bergmann German
Modern PHP

Tick-Tock, Async O'Clock

For everybody interested

PHP has no proper async support. Or has it? Let's dive into some of the amazing things that PHP 8 can do.

99 €
Nov 26, 2025 online (Zoom) Stefan Priebsch English
DevOps

The right logging strategy

for developers at all levels

Away from chaos & regex hell - towards an efficient logging strategy!

199 €
Jun 24, 2025 online (Zoom) Arne Blankerts English
DevOps

Rate Limiting APIs

for developers at all levels

In an API-driven world, constant availability is critical. Instead of adding more servers, simply rate limit access to the API

199 €
Jul 22, 2025 online (Zoom) Arne Blankerts English
DevOps

System services with PHP & Systemd

for developers and administrators at all levels

Whether time or event-controlled - modern applications work distributed in the background

199 €
Sep 16, 2025 online (Zoom) Arne Blankerts English
All training courses