
Pokémon & Synthwave & Hair & Hats - ASW #135
𝔸𝕩𝕟𝕚𝕪𝕒>33
Description
<p>A premise of adding security to DevOps is we can "shift left" AppSec responsibilities, one of which is building apps so they're secure by design. Yet what resources does the AppSec community provide for this approach to design? We take a look at the OWASP Top 10, Web Security Testing Guide, and Application Security Verification Standard to find a way forward for DevOps teams. In the AppSec News, Microsoft purges malicious SolarWinds presence and highlights a threat model around their source code, the tl;drsec crew provides a hardening guide for Kubernetes, Apples provides a user guide for hardening accounts, and Firefox provides a new storage system to defeat side channel abuse!</p> <p> </p> <p>Show Notes: <a href= "https://securityweekly.com/asw135">https://securityweekly.com/asw135</a></p> <p>Visit <a href= "https://www.securityweekly.com/asw">https://www.securityweekly.com/asw</a> for all the latest episodes!</p> <p> </p> <p>Follow us on Twitter: <a href= "https://www.twitter.com/securityweekly">https://www.twitter.com/securityweekly</a></p> <p>Like us on Facebook: <a href= "https://www.facebook.com/secweekly">https://www.facebook.com/secweekly</a></p>
Uploader
Episodes
Pokémon & Synthwave & Hair & Hats - ASW #135
𝔸𝕩𝕟𝕚𝕪𝕒>33