PodcastyTechnologiaApplication Security Weekly (Audio)

Application Security Weekly (Audio)

Security Weekly Productions
Application Security Weekly (Audio)
Najnowszy odcinek

388 odcinków

  • Application Security Weekly (Audio)

    Creating Better Security Guidance and Code with LLMs - Mark Curphey - ASW #374

    17.03.2026 | 1 godz. 4 min.
    What happens when secure coding guidance goes stale? What happens LLMs write code from scratch? Mark Curphy walks us through his experience updating documentation for writing secure code in Go and recreating one of his own startups.
    One of the themes of this conversation is how important documentation is, whether it's intended for humans or for prompts to LLMs. Importantly, LLMs don't innovate on their own -- they rely on the data they're trained on. And that means there should be good authoritative sources for what secure code looks like. It also means that instructions to LLMs need to be clear and precise enough to produce something useful. Watch what happens when Mark prompts his agents to run a live demo for us!
    Visit https://www.securityweekly.com/asw for all the latest episodes!
    Show Notes: https://securityweekly.com/asw-374
  • Application Security Weekly (Audio)

    Making Medical Devices Secure - Tamil Mathi - ASW #373

    10.03.2026 | 1 godz. 3 min.
    Medical devices are a special segment of the IoT world where availability and patient safety are paramount. Tamil Mathi explains why many devices need to fail open -- the opposite of what traditional appsec approaches might initially think -- and what makes threat modeling these devices interesting and unique. He also covers how to get started in this space, from where to learn hardware hacking basics to reviewing firmware and moving up the stack to the application layer.
    Segment Resources:
    https://www.defconbiohackingvillage.org
    https://medium.com/@tamilmathimaddytamilthurai/securing-the-future-of-iot-with-trusted-execution-environments-tees-a-secure-scalable-and-1376f94e755c
    Visit https://www.securityweekly.com/asw for all the latest episodes!
    Show Notes: https://securityweekly.com/asw-373
  • Application Security Weekly (Audio)

    Modern AppSec that keeps pace with AI development - James Wickett - ASW #372

    03.03.2026 | 47 min.
    As more developers turn to LLMs to generate code, more appsec teams are turning to LLMs to conduct security code reviews. One of the biggest themes in all the discussion around LLMs, agents, and code is speed -- more code created faster. James Wickett shares why speed continues to pose a challenge to appsec teams and why that's often because teams haven't invested enough in foundational appsec principles.
    Visit https://www.securityweekly.com/asw for all the latest episodes!
    Show Notes: https://securityweekly.com/asw-372
  • Application Security Weekly (Audio)

    Helping Users with Practical Advice to Protect their Digital Devices - Runa Sandvik - ASW #371

    24.02.2026 | 1 godz.
    Journalists put a lot of effort into collecting information and protecting their sources, but everyone can benefit from having a digital environment that's more secure and more privacy protecting. Runa Sandvik shares her experience working with journalists and targeted groups to craft plans for how they use their devices and manage their information. And she also makes the point that the burden of security should not be just for users -- platforms and software providers should be evaluating secure defaults and secure designs that improve protections for everyone.
    Resources
    https://techcrunch.com/2025/03/13/apples-lockdown-mode-is-good-for-security-but-its-notifications-are-baffling/
    https://www.glitchcat.xyz/p/lessons-learned-from-the-2021-arrest
    https://gijn.org/resource/introduction-investigative-journalism-digital-security/
    https://cpj.org/
    Visit https://www.securityweekly.com/asw for all the latest episodes!
    Show Notes: https://securityweekly.com/asw-371
  • Application Security Weekly (Audio)

    Conducting Secure Code Analysis with LLMs - ASW #370

    17.02.2026 | 46 min.
    A major premise of appsec is figuring out effective ways to answer the question, "What security flaws are in this code?" The nature of the question doesn't really change depending on who or what wrote the code. In other words, LLMs writing code really just means there's mode code to secure. So, what about using LLMs to find security flaws? Just how effective and efficient are they?
    We talk with Adrian Sanabria and John Kinsella about the latest appsec articles that show a range of results from finding memory corruption bugs in open source software to spending an inordinate amount of manual effort validating persuasive, but ultimately incorrect, security findings from an LLM.
    Visit https://www.securityweekly.com/asw for all the latest episodes!
    Show Notes: https://securityweekly.com/asw-370

Więcej Technologia podcastów

O Application Security Weekly (Audio)

About all things AppSec, DevOps, and DevSecOps. Hosted by Mike Shema and John Kinsella, the podcast focuses on helping its audience find and fix software flaws effectively.
Strona internetowa podcastu

Słuchaj Application Security Weekly (Audio), The Pragmatic Engineer i wielu innych podcastów z całego świata dzięki aplikacji radio.pl

Uzyskaj bezpłatną aplikację radio.pl

  • Stacje i podcasty do zakładek
  • Strumieniuj przez Wi-Fi lub Bluetooth
  • Obsługuje Carplay & Android Auto
  • Jeszcze więcej funkcjonalności

Application Security Weekly (Audio): Podcasty w grupie

Media spoecznościowe
v8.8.3 | © 2007-2026 radio.de GmbH
Generated: 3/22/2026 - 5:52:16 PM