https://discourse.ubuntu.com/t/improvin ... rols/69101
A lot of these have probably already been extensively discussed on this site, but this is still a nice list. The first tip is intriguing, I've seen websites use HttpOnly+Secure cookies for some UI settings but did not realize that was a security measure.
Security tips for website operators in 2025
Security tips for website operators in 2025
*Always* check the changelogs BEFORE updating that important software!
Mozilla/5.0 (X11; Linux x86_64; rv:144.0) Gecko/20100101 Firefox/144.0