December 5-7, 2016
Vancouver, Canada

Introduction to Wordpress Code Security

In this talk, we will go over some of the most common attack vectors in code and how to protect against them while you write or edit a WordPress theme or plugin. Topics covered: escaping in WordPress, SQL and data sanitization, current_user_can(), using nonces to protect against CSRF, and WordPress and PHP security gotchas.

View all 104 sessions

Stéphane Boisvert

Automattic

Stéphane Boisvert is a French-Canadian international speaker who works for WordPress.com VIP working on some of the world's largest site. Stéphane spends his time helping clients with architectural decisions, reviewing code for security and performance and jumping in when a site is misbehaving.
He has over a decade of experience working on the web, specializing in WordPress, PHP, MySQL, and Javascript.

Read More

Vancouver 2016 sponsored by