Client side code is a growing part of the modern web and those common patterns or libraries, that are supposed to help developer's life, have the drawbacks to add complexity to the code exposing unexpected features with no or little warning.
Several code example and live demos during the talk will try to clear both exploitation techniques and positive coding strategies.
The presentation will also show some interesting case study, collected and identified during two years of real world applications analysis.
Slides of the talk I did at Appsec EU 2013 in Hamburg.
Video will be linked asap.