470 подписчиков
40 видео
Troy Hunt: I’m Pwned. You’re Pwned. We’re All Pwned.
Evolving beyond the vulnerability whack-a-mole game - Jake Kouns
Content Security Policy: A successful mess between hardening and mitigation - Spagnuolo/Weichselbaum
Upstreaming Security to Rails - Neil Matatall
The seven habits of a highly effective DevSecOp - James Wickett
Gene Kim: Top Infosec Lessons Learned Researching And Co-Authoring The DevOps Handbook
Scott Helme: Revocation is broken, here's how we're fixing it
Bug Bounty Botox - Katie Moussouris
A good first impression can work wonders: creating AppSec training that developers ❤ - Leif Dreizler
s (software bill of materials) – the looming format skirmish - David nalley
JavaScript Supply Chain Security - Adam Baldwin
SDL at scale: growing security champions - Ryan O'boyle
Trusted types & the end of DOM XSS - Krzysztof Kotowicz
Have you adapted your AppSec? - David Lindner
Trust & Safety Engineering @ GitHub - Lexi Galantino
Bulletproof Shoes - Fikrie Yunaz, Nikki Brandt
Hana Hou Panel
The path to code provenance at uber - Matt Finifter, Debosmit Ray, Tony Ngo
How not to use OAuth - Dr. Fett
Recap and panel with Jeremiah Grossman, Troy Hunt, Gene Kim, Mike Arpaia
Multi-party vulnerability response in/with OSS - Jorge Lopez
Who wants a thousand free puppies? - Michael Scovetta
Shifting Product Security from FORCEFUL to RESOURCEFUL - Christine Gadsby
The truth about cookies, tokens and APIs - Phillipe de Ryck
John Melton: Starting an AppSec Program: An Honest Retrospective