DevelopSec: Developing Security Awareness

DevelopSec: Developing Security Awareness

100 episodes

Curious about application security? Want to learn how to detect security vulnerabilities and protect your application. We discuss different topics and provide valuable insights into the world of application security.

Podcasts

Ep. 117: How Browsers are Helping with Security

Published: Feb. 9, 2020, 1:10 p.m.
Duration: 13 minutes 50 seconds

Listed in: Technology

Ep. 116: Chrome Retires XSS Auditor

Published: Nov. 15, 2019, 4:59 p.m.
Duration: 14 minutes 8 seconds

Listed in: Technology

Ep. 115: Is CSRF Really Dead?

Published: Nov. 6, 2019, 12:27 p.m.
Duration: 15 minutes 10 seconds

Listed in: Technology

Ep. 114: Investing in People for Better Application Security

Published: Oct. 29, 2019, 5:18 p.m.
Duration: 24 minutes 38 seconds

Listed in: Technology

Ep. 113: What is your mother's maiden name?

Published: May 28, 2019, 2:55 p.m.
Duration: 21 minutes 1 second

Listed in: Technology

Ep. 112: Application Fingerprinting

Published: Jan. 22, 2019, 4:13 p.m.
Duration: 21 minutes 5 seconds

Listed in: Technology

Ep. 111: Authentication Alerts

Published: Jan. 14, 2019, 8:41 p.m.
Duration: 16 minutes 8 seconds

Listed in: Technology

Ep. 110: Implementation Matters

Published: Jan. 7, 2019, 7:49 p.m.
Duration: 19 minutes 18 seconds

Listed in: Technology

Ep. 109: 2018 Reflection

Published: Jan. 2, 2019, 6:42 p.m.
Duration: 27 minutes 27 seconds

Listed in: Technology

Ep. 108: Dunkin Donuts Breach, Maybe??

Published: Dec. 12, 2018, 2:30 p.m.
Duration: 18 minutes 26 seconds

Listed in: Technology

Ep. 107: Credential Stuffing

Published: Nov. 9, 2018, 7:46 p.m.
Duration: 18 minutes 37 seconds

Listed in: Technology

Ep. 106: Facebook Breach Take-aways and Insights

Published: Oct. 4, 2018, 3:40 p.m.
Duration: 31 minutes 19 seconds

Listed in: Technology

Ep. 105: Interview with Eric Johnson

Published: Sept. 20, 2018, 1:30 p.m.
Duration: 57 minutes 12 seconds

Listed in: Technology

Ep. 104: Securing Devops with Julien Vehent

Published: Aug. 30, 2018, 12:12 p.m.
Duration: 45 minutes 8 seconds

Listed in: Technology

Ep. 103: Is 3rd Party Authentication Right For Your Application?

Published: Aug. 16, 2018, 2:18 p.m.
Duration: 18 minutes 17 seconds

Listed in: Technology

Ep. 102: Intro to Web Security Policies

Published: June 26, 2018, 4:54 p.m.
Duration: 16 minutes 42 seconds

Listed in: Technology

Ep. 101: You're not always right and that is ok

Published: June 18, 2018, 2:34 p.m.
Duration: 20 minutes 59 seconds

Listed in: Technology

Ep. 100: Choosing Security Tools

Published: June 7, 2018, 2:53 p.m.
Duration: 26 minutes 37 seconds

Listed in: Technology

Ep. 99: Shifting Left in the SDLC

Published: May 30, 2018, 3:23 p.m.
Duration: 19 minutes 57 seconds

Listed in: Technology

Efail and News Hype

Published: May 15, 2018, 8:21 p.m.
Duration: 18 minutes 8 seconds

Listed in: Technology

EP. 97: Gmail / Netflix Potential Scam

Published: April 23, 2018, 11:59 a.m.
Duration: 18 minutes 28 seconds

Listed in: Technology

Ep. 96: Security Flaws as Defects

Published: April 16, 2018, 4 p.m.
Duration: 27 minutes 36 seconds

Listed in: Technology

Ep. 95: MyFitnessPal Breach Take-Aways

Published: April 9, 2018, 2 p.m.
Duration: 18 minutes 25 seconds

Listed in: Technology

Ep. 94: Penetration Testing

Published: April 2, 2018, 9:04 a.m.
Duration: 26 minutes 10 seconds

Listed in: Technology

Ep. 93: Code Review

Published: March 9, 2018, 5 p.m.
Duration: 25 minutes 54 seconds

Listed in: Technology

Ep. 92: 2-Factor Authentication

Published: March 6, 2018, 9:12 p.m.
Duration: 21 minutes 42 seconds

Listed in: Technology

DevelopSec Podcast #91 - OWASP Top 10 2017 Thoughts

Published: Feb. 9, 2018, 2:46 p.m.
Duration: 28 minutes 46 seconds

Listed in: Technology

Ep. 90: 5 Steps to Help Secure Your Database

Published: Jan. 16, 2018, 5:41 p.m.
Duration: 44 minutes 13 seconds

Listed in: Technology

Ep. 89: New Year's Resolutions

Published: Jan. 4, 2018, 11:02 p.m.
Duration: 18 minutes 35 seconds

Listed in: Technology

Ep. 88: Meteor Security with Tim Medin

Published: Dec. 11, 2017, 3 p.m.
Duration: 42 minutes 34 seconds

Listed in: Technology

Ep. 87: Apple Sign-in Bug Take-Aways

Published: Dec. 1, 2017, 6 p.m.
Duration: 24 minutes 21 seconds

Listed in: Technology

Ep. 86: Vulnerable 3rd Party Components

Published: Nov. 23, 2017, 11:58 p.m.
Duration: 18 minutes 35 seconds

Listed in: Technology

Ep. 85: Open Redirect Revisited

Published: Nov. 17, 2017, 1:50 a.m.
Duration: 25 minutes 2 seconds

Listed in: Technology

Ep. 84: Understanding the Technology

Published: Oct. 31, 2017, 6:02 p.m.
Duration: 23 minutes 31 seconds

Listed in: Technology

Ep. 83: Authorization Overview

Published: Oct. 18, 2017, 12:35 p.m.
Duration: 20 minutes 55 seconds

Listed in: Technology

Ep. 82: Equifax Take-aways

Published: Sept. 29, 2017, 6:31 p.m.
Duration: 25 minutes 56 seconds

Listed in: Technology

Ep. 81: JavaScript in HREF and SRC (XSS)

Published: Sept. 18, 2017, 4:39 p.m.
Duration: 20 minutes 21 seconds

Listed in: Technology

Ep. 80: Understanding Security of Your Platforms

Published: Aug. 23, 2017, 1:02 p.m.
Duration: 19 minutes 36 seconds

Listed in: Technology

Ep. 79: Marketing with USB Drives

Published: July 31, 2017, 2:30 p.m.
Duration: 15 minutes 41 seconds

Listed in: Technology

Ep. 78: MySpace Lessons - Looking At Account Recovery

Published: July 24, 2017, 10:13 p.m.
Duration: 19 minutes 15 seconds

Listed in: Technology

Ep. 77: Interactive Application Security Testing

Published: July 7, 2017, 2:32 p.m.
Duration: 14 minutes 48 seconds

Listed in: Technology

Ep. 76: Validation - Client vs. Server

Published: June 19, 2017, 7:54 p.m.
Duration: 13 minutes 10 seconds

Listed in: Technology

Ep. 75: IAM with Geurt van Wijk

Published: June 5, 2017, 1 p.m.
Duration: 41 minutes 46 seconds

Listed in: Technology

Ep. 74: Audio Driver Key Logger Lessons Learned

Published: May 24, 2017, 11 a.m.
Duration: 16 minutes 26 seconds

Listed in: Technology

Ep. 73: Identity with Vittorio Bertocci

Published: May 17, 2017, 11 a.m.
Duration: 30 minutes 27 seconds

Listed in: Technology

Ep. 72: Where to Perform Output Encoding

Published: May 11, 2017, 1:17 p.m.
Duration: 13 minutes 38 seconds

Listed in: Technology

Ep. 71: Sub Resource Integrity

Published: April 17, 2017, 3:29 a.m.
Duration: 14 minutes 48 seconds

Listed in: Technology

Ep. 70: Considering security when selecting an application platform

Published: March 27, 2017, 3:50 p.m.
Duration: 21 minutes 3 seconds

Listed in: Technology

Ep. 69: Concurrent User Sessions

Published: March 10, 2017, 3 p.m.
Duration: 21 minutes 24 seconds

Listed in: Technology

Ep. 68: How the AWS disruption can help us

Published: March 3, 2017, 1:16 p.m.
Duration: 15 minutes 23 seconds

Listed in: Technology

Ep. 67: Clearing up HTTPOnly and Secure Cookie Attributes

Published: Feb. 24, 2017, 5 p.m.
Duration: 9 minutes 24 seconds

Listed in: Technology

Ep. 66: Forgot Username

Published: Feb. 22, 2017, 3:45 p.m.
Duration: 14 minutes 46 seconds

Listed in: Technology

Security Questions: Good or Bad?

Published: Feb. 15, 2017, 1:40 p.m.
Duration: 18 minutes 8 seconds

Listed in: Technology

Ep. 64: Using Stolen Passwords to Protect User Accounts

Published: Jan. 23, 2017, 1:30 p.m.
Duration: 14 minutes 28 seconds

Listed in: Technology

Ep. 63: Remember Me Feature: Security Considerations

Published: Jan. 17, 2017, 3:59 p.m.
Duration: 15 minutes 7 seconds

Listed in: Technology

Ep. 62: MongoDB Ransomware Attacks

Published: Jan. 10, 2017, 1:39 p.m.
Duration: 13 minutes 54 seconds

Listed in: Technology

Ep. 61: Multi-factor Authentication

Published: Jan. 5, 2017, 5:34 p.m.
Duration: 17 minutes 25 seconds

Listed in: Technology

Ep. 60: Yahoo Breach Takeaways

Published: Dec. 15, 2016, 7:28 p.m.
Duration: 18 minutes 50 seconds

Listed in: Technology

Ep. 59: All About Cookie Protection

Published: Dec. 14, 2016, 3:54 p.m.
Duration: 23 minutes 7 seconds

Listed in: Technology

Ep. 58: "Untrusted" Data

Published: Nov. 16, 2016, 1:42 p.m.
Duration: 21 minutes 41 seconds

Listed in: Technology

Ep. 57: Source Code Review

Published: Nov. 4, 2016, 4:22 p.m.
Duration: 22 minutes

Listed in: Technology

Ep. 56: Security Contacts

Published: Oct. 26, 2016, 2:03 p.m.
Duration: 12 minutes 33 seconds

Listed in: Technology

Ep. 55: Scoping an application security assessment (Applications)

Published: Sept. 28, 2016, 1:17 p.m.
Duration: 12 minutes 4 seconds

Listed in: Technology

Ep. 54: WAFs and Pen Testing

Published: Sept. 21, 2016, 1:36 p.m.
Duration: 16 minutes 20 seconds

Listed in: Technology

Ep. 53: Chrome Changing Secure Notifications

Published: Sept. 15, 2016, 1:07 p.m.
Duration: 17 minutes 10 seconds

Listed in: Technology

Login Forms and HTTPS

Published: Sept. 7, 2016, 5:26 p.m.
Duration: 10 minutes 29 seconds

Listed in: Technology

Ep. 52: Importance of UI to Security

Published: Sept. 5, 2016, 4 p.m.
Duration: 11 minutes 38 seconds

Listed in: Technology

Ep. 51: Everything is a target

Published: Aug. 29, 2016, 2:45 p.m.
Duration: 12 minutes 49 seconds

Listed in: Technology

Ep. 50: How Serious is Username Enumeration

Published: July 28, 2016, 2 p.m.
Duration: 23 minutes 7 seconds

Listed in: Technology

Ep. 49: Should Password Change Invalidate Access Tokens?

Published: July 25, 2016, 8:25 p.m.
Duration: 16 minutes 14 seconds

Listed in: Technology

Ep. 48: Pokemon Go Security Discussions

Published: July 18, 2016, 2 p.m.
Duration: 18 minutes 59 seconds

Listed in: Technology

Ep. 47: Account Lockouts and auto-unlock

Published: June 17, 2016, 2 p.m.
Duration: 10 minutes 55 seconds

Listed in: Technology

Ep. 46: Password Confirm Boxes

Published: June 10, 2016, 1:39 p.m.
Duration: 11 minutes 42 seconds

Listed in: Technology

Ep. 45: The importance of WHY

Published: June 3, 2016, 3:48 p.m.
Duration: 22 minutes 46 seconds

Listed in: Technology

Ep. 44: "We don't support Macs"

Published: May 27, 2016, 1:41 p.m.
Duration: 12 minutes 3 seconds

Listed in: Technology

Ep. 43: Reflecting on Current AppSec Training

Published: May 21, 2016, 4 p.m.
Duration: 22 minutes 2 seconds

Listed in: Technology

Ep. 42: The Need for Better Secure Code Examples

Published: April 24, 2016, 1:07 p.m.
Duration: 21 minutes 39 seconds

Listed in: Technology

Ep. 41: Why You Need an Application Inventory

Published: April 19, 2016, 9:41 p.m.
Duration: 18 minutes 22 seconds

Listed in: Technology

Ep. 40: Getting More Value from Pen Tests

Published: March 8, 2016, 6:55 p.m.
Duration: 16 minutes 49 seconds

Listed in: Technology

Ep. 39: Authentication

Published: Feb. 29, 2016, 7:24 p.m.
Duration: 19 minutes 50 seconds

Listed in: Technology

Static Analysis: Tips for Successful Program

Published: Feb. 7, 2016, 10:06 p.m.
Duration: 39 minutes 15 seconds

Listed in: Technology

Ep. 37: CSRF Chaining

Published: Jan. 26, 2016, 2:19 p.m.
Duration: 17 minutes 52 seconds

Listed in: Technology

Ep. 36: Intro to Cross Site Request Forgery (CSRF)

Published: Jan. 7, 2016, 12:47 p.m.
Duration: 23 minutes 47 seconds

Listed in: Technology

Ep. 35: An Introduction to Open Redirects

Published: Dec. 15, 2015, 2 p.m.
Duration: 17 minutes 6 seconds

Listed in: Technology

Ep. 34: Importance of Hacking

Published: Dec. 11, 2015, 8:05 p.m.
Duration: 25 minutes 19 seconds

Listed in: Technology

Ep. 33: Holiday Gift Security Considerations

Published: Nov. 24, 2015, 1:30 p.m.
Duration: 18 minutes 39 seconds

Listed in: Technology

Ep. 32: Dynamic Analysis: An Overview

Published: Nov. 21, 2015, 8:32 p.m.
Duration: 22 minutes 28 seconds

Listed in: Technology

Ep. 31: Response Splitting and Header Injection

Published: Nov. 9, 2015, 3 p.m.
Duration: 18 minutes 41 seconds

Listed in: Technology

Newscast - Oct. 20, 2015

Published: Oct. 20, 2015, 1:30 p.m.
Duration: 26 minutes 17 seconds

Listed in: Technology

Newscast - Sept. 30, 2015

Published: Oct. 1, 2015, 12:47 a.m.
Duration: 23 minutes 53 seconds

Listed in: Technology

Newscast - Sept. 23, 2015

Published: Sept. 24, 2015, 2:43 a.m.
Duration: 15 minutes 32 seconds

Listed in: Technology

Ep. 30: HTTP Strict Transport Security (HSTS): Intro

Published: Sept. 18, 2015, noon
Duration: 14 minutes 42 seconds

Listed in: Technology

Ep. 29: FTC Start with Security Guidelines

Published: July 30, 2015, 2:30 p.m.
Duration: 24 minutes 59 seconds

Listed in: Technology

Ep. 28: What is Penetration Testing

Published: July 17, 2015, 2 p.m.
Duration: 20 minutes 46 seconds

Listed in: Technology

Ep. 27: Importance of Security for BA and PM

Published: June 18, 2015, 8:53 p.m.
Duration: 15 minutes 55 seconds

Listed in: Technology

Ep. 26: The Importance of Security for QA

Published: May 26, 2015, 6 p.m.
Duration: 22 minutes 21 seconds

Listed in: Technology

Ep. 25: Static Analysis: Analyzing the Options

Published: April 10, 2015, 7:53 p.m.
Duration: 17 minutes 10 seconds

Listed in: Technology

Ep. 24: The Importance of Baselines

Published: April 2, 2015, 10:09 a.m.
Duration: 14 minutes 45 seconds

Listed in: Technology

Ep. 23: 3rd Party CMS Security Thoughts

Published: March 11, 2015, 2:34 a.m.
Duration: 21 minutes 36 seconds

Listed in: Technology

Ep. 22: Black lists vs. White Lists

Published: Feb. 19, 2015, 1:33 p.m.
Duration: 16 minutes 36 seconds

Listed in: Technology