Webhooks: Lessons (Un)learned
Keith Casey
PHP Tek 2023
Intermediate (some prior knowledge necessary)
Standard Session (45-60 minutes)
Webhooks are a pillar of modern application development. They notify us of that new commit, an incoming text message, our email was delivered, and a payment was processed. Our systems can’t function without webhooks sending data seamlessly and securely across the internet. But what happens if they’re not secure? What happens if your webhooks are intercepted, manipulated, or even replayed against your systems? What are the best ways - as both a provider and consumer - to protect our systems? In this session, we’ll delve into the 100+ implementations we explored to build webhooks.fyi to identify the best and worst patterns to protect our systems now and in the future.
Up Next from PHP Tek 2023
Funding PHP
Sara Golemon · Shorty (30-35 minutes)
Stop Committing Your Secrets - GIt Hooks To The Rescue!
Dwayne McDaniel · Shorty (30-35 minutes)
Tmux and Vim for fun and profit
Gunnard Engebreth · Shorty (30-35 minutes)
Setting up GitHub Actions for your PHP projects
Jason McCreary · Standard Session (45-60 minutes)