CRLF, NASA, & GitHub – Application Security Weekly #46

    Another server security lapse at NASA exposed staff and project data, CRLF Injection Into PHP’s cURL Options, System Down: A systemd-journald exploit, GitHub now gives free users unlimited private repositories, Twitter is Broken, Government shutdow… Continue reading CRLF, NASA, & GitHub – Application Security Weekly #46

Aleksei Tiurin, Acunetix – Application Security Weekly #42

Aleksei Tiurin is the Senior Security Researcher for Acunetix. He is performing a technical segment on reverse proxies using weblogic, Tomcat, and Nginx. To learn more about Acunetix, go to: www.acunetix.com/securityweekly Full Show Notes Follow us on … Continue reading Aleksei Tiurin, Acunetix – Application Security Weekly #42

Daniel Cuthbert, Banco Santander – Application Security Weekly #38

Daniel Cuthbert is the Global Head of Security Research for Banco Santander. He joins Keith and Paul this week for an interview! Full Show NotesFollow us on Twitter: https://www.twitter.com/securityweekly Hosts
The post Daniel Cuthbert, Banco Santander… Continue reading Daniel Cuthbert, Banco Santander – Application Security Weekly #38

Git Project, Google+, & Facebook – Application Security Weekly #35

In the Application Security News, Git Project patches Remote Code Execution Vulnerability, Google is Shutting Down Google+ after 500k accounts potentially affected by a data breach, Facebook wants people to Invite its cameras into their homes, GitHub i… Continue reading Git Project, Google+, & Facebook – Application Security Weekly #35

Garrett Gross, Rapid7 – Application Security Weekly #35

Garrett Gross received his first modem at age six and has been plugged in ever since. Today, Garrett is a Senior Solutions Engineer with a specialization in application security at Rapid7. He serves as an escalation layer to the applied engineering dep… Continue reading Garrett Gross, Rapid7 – Application Security Weekly #35

Bugs, Breaches, and More – Application Security Weekly #34

Facebook discloses the loss of at least 50M Access Tokens also covered by Motherboard Formjacking is on the rise, Google admits to allowing hundreds of companies read your email, FireFox Monitor will alert you when your accounts have been Pwned, Micros… Continue reading Bugs, Breaches, and More – Application Security Weekly #34

Newegg, Ticketmaster, & iOS 12 – Application Security Weekly #33

In the Application Security News, Hackers stole customer credit cards in Newegg data breach, John Hancock now requires monitoring bracelets to buy insurance, the man who broke Ticketmaster, new security settings available in iOS 12, State Department co… Continue reading Newegg, Ticketmaster, & iOS 12 – Application Security Weekly #33

DevOps or DevSecOps? – Application Security Weekly #10

Does DevOps handle security, or does it need to be DevSecOps? Maybe your not doing DevOps if you’re not doing security. This week Paul and Keith discuss the debate between the two! Topic: Is it DevOps or DevSecOps? – Musings on setting up a Secur… Continue reading DevOps or DevSecOps? – Application Security Weekly #10