FireFox, Windows 10, DevOps, and BitHubLab – Application Security Weekly #19

Application news, DevOps food for thought, learning & tools from BitHubLab, and bugs, breaches, and more! News Bugs, Breaches, and More! 1.) FireFox uXSS and CSS XSS 2.) Windows 10 April 2018 Update Breaks SMBv1 3.) Some Signal Disappearing Message… Continue reading FireFox, Windows 10, DevOps, and BitHubLab – Application Security Weekly #19

Peter Chestna, Veracode – Application Security Weekly #19

Peter Chestna is the Director of Developer Engagement Veracode. He comes on the show to talk about the article he wrote called “The 3 Ways of DevSecOps”. Full Show Notes Follow us on Twitter: https://www.twitter.comsecurityweekly
The post P… Continue reading Peter Chestna, Veracode – Application Security Weekly #19

GitHub, Oracle, & GDPR – Application Security Weekly #18

In the news, how other companies are responding to GDPR, Oracle plans to drop Java Serialization Port, Microsoft acquires GitHub, the percentage of open source code in proprietary apps is rising, & more on this episode of Application Security Weekl… Continue reading GitHub, Oracle, & GDPR – Application Security Weekly #18

Agile vs. DevOps – Application Security Weekly #18

This week, Keith and Paul discuss what the difference is between Agile, CI/CD, and DevOps! Agile is focused on processed, highlighting change, all while accelerating delivery. CI/CD focuses on software-defined life cycles, highlighting tools, all that … Continue reading Agile vs. DevOps – Application Security Weekly #18

Nest, Node.js, & F.Secure – Application Security Weekly #

In the news, the entire Nest ecosystem of smart home devices goes offline, how Alphabet plans to keep hackers away from this year’s election, the Node.js Ecosystem is chaotic and insecure, open-source vulnerabilities plague enterprise codebase sy… Continue reading Nest, Node.js, & F.Secure – Application Security Weekly #

James Wickett, Signal Sciences – Application Security Weekly #17

James is the creator and founder of the Lonestar Application Security Conference which is the largest annual security conference in Austin, TX. He also runs DevOps Days Austin and is on the global DevOps Days board. He also holds several security certi… Continue reading James Wickett, Signal Sciences – Application Security Weekly #17

Text Bombs, Black Dots of Death, and Azure – Application Security Weekly #16

A remote code execution vulnerability is discovered in Electron, the Azure CTO reveals details about Azure confidential computing, and part 1 of 3 on the ways of DevSecOps. Full Show NotesVisit our website: http://securityweekly.com Follow us on Twitte… Continue reading Text Bombs, Black Dots of Death, and Azure – Application Security Weekly #16

Adam Gordon, ITProTV – Application Security Weekly #16

Adam Gordon comes on the show to talk about DevOps, SecOps, and DevSecOps. He explains how DevOps, as a solution, is the framework for defining software, the nature of automation, and the nature of configuration management today. Full Show NotesVisit o… Continue reading Adam Gordon, ITProTV – Application Security Weekly #16

Building Your AppSec Program – Application Security Weekly #15

Keith and Paul talk more about building your own AppSec program. They discuss working with developers as part of building your appsec program, and giving developers the tools to be able to move fast and break things. Full Show NotesVisit our website: h… Continue reading Building Your AppSec Program – Application Security Weekly #15

Twitter, Meltdown, & RSAC – Application Security Weekly #15

In the news, A Boeing 757 was hacked remotely while it sat on the runway, Twitter says all 336 million users should change their passwords, Meltdown patches return kernel page table directory to user space, somebody tried to hide a backdoor in a popula… Continue reading Twitter, Meltdown, & RSAC – Application Security Weekly #15