Podcast Addict
App
Podcast promotion
العربية (Arabic)
中文 (Chinese)
Hrvatski (Croatian)
Čeština (Czech)
Dansk (Danish)
Nederlands (Dutch)
English
Eesti (Estonian)
Suomi (Finnish)
Français (French)
Deutsch (German)
Ελληνικά (Greek)
עברית (Hebrew)
हिन्दी (Hindi)
Magyar (Hungarian)
Bahasa Indonesia (Indonesian)
Italiano (Italian)
日本語 (Japanese)
한국어 (Korean)
Norsk (Norwegian)
فارسی (Persian)
Polski (Polish)
Português (Portuguese)
Русский (Russian)
Español (Spanish)
Svenska (Swedish)
Українська (Ukrainian)
Absolute AppSec
By Ken Johnson and Seth Law
Nov 07 2024
265 ep.
293
A weekly podcast of all things application security related. Hosted by Ken Johnson and Seth Law.
Technology
RSS feed
Share
Share
Copy RSS
Subscribe on Podcast Addict
Episodes
Reviews
You may also like
Episode 266 - Scope of Penetration Testing, Attack Modeling
Nov 07 2024
Seth (@sethlaw) and Ken (@cktricky) return for an in-depth discussion on penetration testing expectations, driven by recent posts and slack activity from Andrew Wilson. Essentially, certain clients expect that a single penetration test finds everything possible, whether or not those expectations are appropriate. The duo expounds on their experience with similar expectations and how
Episode 265 - w/ Scott Norberg - Static Analysis
Oct 31 2024
Scott Norberg joins Ken Johnson and Seth Law for an episode of Absolute AppSec all about SAST. Scott is an ASP.NET Security Consultant, Author, Researcher and Speaker. In addition to running his Opperis Technologies consultancy, Scott has recently begun working as lead application security architect at CDW. Before that he worked as Lead Application Security engineer at Gallagher an
Episode 264 - w/ Jeremy Long - Software Composition Analysis
Oct 17 2024
Jeremy Long (@ctxt on social media), Principal Security Engineer at Service Now and project founder and lead for the OWASP Dependency Check project joins Ken Johnson (@cktricky) and Seth Law (@sethlaw). Jeremy spent a decade and a half as a lead application security engineer and principal engineer at Wells Fargo before joining ServiceNow. He has spent years developing processes for
Episode 263 - WebApp Fuzzing, Mobile Testing, Secrets Management
Oct 08 2024
Ken and Seth return for Episode #263 and start with a discussion around web application fuzzing and the deficiencies of vulnerability and exploit-focused dynamic testing, a common thread in Seth's ranting. This is followed by a discussion on mobile testing and attempting to control security through client-side controls, spurred by an article that compares security in the McDonald's
Episode 262 - w/ Ariel Shin - Building a Security Program
Oct 01 2024
Ariel Shin joins Ken Johnson (@cktricky on social media) and Seth Law (@sethlaw) for a special episode of Absolute AppSec. Ariel is currently a Security Engineering Manager at Datadog after a three-year stint at Twilio where she worked as an engineering manager in product security, a product security team lead, and a senior product security engineer. This year at Bsides SF 2024, sh
Episode 261 - Security Economy, Password Resets, Vendor Consolidation
Sep 24 2024
Ken (@cktricky) and Seth (@sethlaw) are back to review this weeks news and commiserate about industry happenings. First up are their thoughts on the current economic climate and how it has affected the security industry over the last 5 years. This is followed with evolving nature of password reset requirements as frequent changes are not recommended by NIST. The duo digs into possi
Episode 260 w/ Darren Meyer of Endor Labs - Dependency Management
Sep 19 2024
Absolute AppSec welcomes Darren Meyer (@DarrenPMeyer on infosec.exchange and X platform) from Endor Labs as a guest on the show to discuss Endor Lab’s newly released 2024 Dependency Management Report. Implementation of reachability analysis as a sine qua non of effective dependency management is one of the top-line takeaways from the newly released report. The discussion dives de
Episode 259 - Special Melbourne Australia Edition w/Paul McCarty and Daniel Ting
Sep 17 2024
Seth and Ken take the podcast global this week while traveling to Melbourne, Australia. The duo is joined this episode are joined by Paul McCarty and Daniel Ting, both involved in the local application security community. The discussion starts with a comparison of industries in Australia and the United States, both differences and similarities. This is followed by thoughts on secur
Episode 258 - Engaging Developers, ALBeast, Dangerous TLDs
Sep 03 2024
Seth (@sethlaw) and Ken (@cktricky) are back this week with some hot takes on the recent cancellation of OWASP's San Francisco Developer Days that were running alongside Global AppSec San Francisco. OWASP has struggled to engage the development community over the years and this is no surprise for anyone in AppSec/ProdSec. This is followed by review of the ALBeast (why do all vulner
Episode 257 - In-Person vs. Virtual Training, Compliance Violations
Aug 27 2024
Ken (@cktricky) returns alongside Seth (@sethlaw) for the week. This starts with an in-depth discussion on the pros and cons of in-person and virtual trainings. In short, the duo prefers in-person due for the advantages, but understand that financial pressures come into play, so virtual is a good substitute. This is followed by thoughts on the recent lawsuit by thy government again
More Episodes
Loading...
Loading...
Loading...
CodeNewbie
CodeNewbie
May 22 2024
366 ep.
48 mins
28.4k
Beers with Talos Podcast
Cisco Talos
Aug 01 2024
144 ep.
50 mins
2.8k
Off The Hook
2600 Enterprises
Oct 30 2024
10 ep.
55 mins
6.6k
ISF Podcast
Information Security Forum Podcast
Oct 28 2024
278 ep.
21 mins
181
Podcast – DTNS Headlines
Tom Merritt
Oct 09 2024
10 ep.
985
GNU World Order Linux Cast
Oct 26 2024
366 ep.
4.9k
Daily Tech News Show
Tom Merritt
Oct 30 2024
12 ep.
42.2k
Lullabot Podcast
Matt Kleve, Morgan Eck
Mar 29 2024
25 ep.
1.1k
Daily Tech Headlines
Tom Merritt
Oct 30 2024
12 ep.
8.8k
The Azure Podcast
Cynthia Kreng, Kendall Roden, Cale Teeter, Evan Basalik, Russell Young and Sujit D'Mello
Oct 28 2024
100 ep.
2.3k