开发、系统安全文档

记录下,之后作解决方案参考~git

GlobaLeaks Application Security

Design and Details

Goalgithub

Introductionapp

Key conceptsjvm

Tipui

Receiver interactionsgoogle

Whistleblower interactionsspa

Tip elementsip

Authenticationci

Authentication Matrixelement

Authentication Methods

Password

Receipt

Technical Implementation

Receipt

Password

Bruteforce protection

Password Security

Password Strength

Password Lockout

Password Recovery (Not yet implemented)

Password Storage

Web Application Security

Session Management

XSRF Prevention

Input Validation (Server)

(File) Content-Type Validation

Input Validation (Client)

CORS Security

Enhanced HTTP Security Header

HTTP Link Referrer Privacy

Crawlers Policy

DoS resiliency approach

Delivery task

Cleaning task

Notification task

File encryption

Related Project Documentation

Operating system security

https://github.com/globaleaks/GlobaLeaks/wiki/Operating-system-security

Security Advice for Whistleblowers

https://docs.google.com/document/d/1ZrndvBj9eTg-ooIRfKbXxX18Ie-ODlcjnHjKXSY78Ew/pub

Cookie:

一键查看内网IP地址:http://net.ipcalf.com/

相关文章
相关标签/搜索