Application Security Weekly (Audio)
Episodes
Eyes Open - ASW #174
16 Nov 2021
Contributed by Lukas
This week, we welcome Ryan Lloyd, Chief Product Officer at Guardsquare, to discuss Mobile Application Security! Mobile applications have a unique atta...
Schools of Magic - ASW #173
09 Nov 2021
Contributed by Lukas
This week, Mike, John and Dan McKinney from Cloudsmith will be discussing SBOM and what that looks like for your applications. Other topics include: c...
Actual Secrets - ASW #172
02 Nov 2021
Contributed by Lukas
This week, we welcome Peter Klimek, Director of Technology, Office of the CTO at Imperva! Peter will talk to the challenges he's hearing from customer...
Horror Stories - ASW #171
26 Oct 2021
Contributed by Lukas
This week, we welcome Ashish Rajan, Head of Security & Podcast Host at Cloud Security Podcast, to discuss Security Champions in an Online First World!...
Highly Technical - ASW #170
19 Oct 2021
Contributed by Lukas
This week, we welcome Nuno Loureiro, CEO at Probely, and Tiago Mendo, CTO at Probely, to talk about Dev(Sec)Ops Scanning Challenges & Tips! There's a ...
Halloween Horror - ASW #169
12 Oct 2021
Contributed by Lukas
This week, we welcome Tom Gibson, Senior Staff Engineer at Cloudsmith, to talk about Modernizing the Management of Your Software Supply Chain! This we...
Opposite Direction - ASW #168
05 Oct 2021
Contributed by Lukas
This week, we welcome Hillary Benson, Director, Product Management of Secure & Protect at Gitlab, to discuss The Power of Developer-First Security! In...
Skills & Knowledge - ASW #167
28 Sep 2021
Contributed by Lukas
This week, we welcome Anita D'Amico, VP, Market Development at Synopsys, and Patrick Carey, Senior Director of Product Marketing at Synopsys, to discu...
Don't Hate the Player, Hate the Game - ASW #166
21 Sep 2021
Contributed by Lukas
This week, we welcome Jeff Williams, Co-Founder and Chief Technology Officer at Contrast Security, to discuss Transforming Modern Software Development...
Drive - ASW #165
14 Sep 2021
Contributed by Lukas
This week, we welcome Manish Gupta, CEO and Co-Founder of ShiftLeft, to discuss Findings From the 2021 AppSec Shift Left Progress Report! Data from th...
Magical Forest - ASW #164
31 Aug 2021
Contributed by Lukas
This week, we welcome Caroline Wong, Chief Strategy Officer at Cobalt, to discuss A DevOps Perspective on Risk Tolerance & Risk Transfer! In the segme...
Strange New Clouds - ASW #163
24 Aug 2021
Contributed by Lukas
This week, we welcome Shubhra Kar, Global CTO and GM of Products & IT at The Linux Foundation, to discuss Challenges in Open Source Application Securi...
Time Traveling - ASW #162
17 Aug 2021
Contributed by Lukas
This week, we welcome Mike Rothman, President & Co-founder at DisruptOps, to discuss DevSecOps - Making It Real! In the AppSec News, Bug bounty report...
Thinking Alike - ASW #161
10 Aug 2021
Contributed by Lukas
This week, we welcome Tom Hudson, Security Research Team Lead at Detectify, to discuss Securing Modern Web Apps: Development Techniques are Changing! ...
Shrug & Move On - ASW #160
03 Aug 2021
Contributed by Lukas
This week, we welcome Maggie Jauregui, Offensive Security Researcher at Intel, to discuss Platform Firmware Security! Firmware security is complex and...
Policy of Truth - ASW #159
27 Jul 2021
Contributed by Lukas
This week, we welcome Peter Klimek, Director of Technology, Office of the CTO at Imperva, to discuss Navigating the seas of security in serverless fun...
Fall On Our Sword - ASW #158
20 Jul 2021
Contributed by Lukas
This week, we welcome David DeSanto, Senior Director, Product Management, Dev & Sec at Gitlab! In the wake of events such as the Solarwinds breach, th...
Drink Our Own Champagne - ASW #157
13 Jul 2021
Contributed by Lukas
In the AppSec news, a password manager makes predictable mistakes, Trusted Types terminate DOM XSS, waking up from PrintNightmare, understanding hardw...
Everything Looks Crazy - ASW #156
29 Jun 2021
Contributed by Lukas
This week, we welcome Clint Gibler, Head of Security Research at r2c, to discuss Scaling Your Application Security Program! In the AppSec News: Visual...
Crawling Like a Human - ASW #155
22 Jun 2021
Contributed by Lukas
This week, we welcome Nuno Loureiro & Tiago Mendo from Probely to discuss some Challenges of DAST Scanners, and their Adoption by Developers! Then, in...
Dead Simple - ASW #154
15 Jun 2021
Contributed by Lukas
This week, we welcome Sebastian Deleersnyder, CTO at Toreon, to talk about OWASP SAMM - Software Assurance Maturity Model! In the AppSec News, Mike an...
Something's Out There - ASW #153
08 Jun 2021
Contributed by Lukas
This week, we welcome Daniel Hampton, Senior Solutions Architect at Fastly, to discuss API Security: Understanding Threats to Better Protect Your Orga...
Everybody's Looking For Something - ASW #152
25 May 2021
Contributed by Lukas
This week, we welcome Manish Gupta, CEO and Co-Founder at ShiftLeft, to discuss Bringing Appsec to a Modern CI Pipeline! Appsec in a modern CI pipelin...
Hot Potato - ASW #151
18 May 2021
Contributed by Lukas
This week, we welcome Aanand Krishnan, CEO at Tala Security, Inc., to discuss Third Party Software Risk on the Web! Web applications are highly depend...
Talking Heads - ASW #150
11 May 2021
Contributed by Lukas
While the vision for app security is relatively clear, executing on that vision is still somewhat of a work in progress. Fast-moving, interdependent p...
Alert Your Star Destroyers - ASW #149
04 May 2021
Contributed by Lukas
Rey Bango will be digging into the developer security training conundrum based on his own experiences with secure coding and security training. He'll ...
Minimum Safe Distance - ASW #148
27 Apr 2021
Contributed by Lukas
We start with the article about "Researchers Secretly Tried To Add Vulnerabilities to Linux Kernel, Ended Up Getting Banned" and explore its range of ...
That Will Bite Ya - ASW #147
20 Apr 2021
Contributed by Lukas
This week, we welcome Doug Barbin, Managing Partner at Schellman & Company, LLC, to discuss Supply Chain Management! Supply chain security isn't new, ...
Contortions - ASW #146
06 Apr 2021
Contributed by Lukas
This week, we welcome Leif Dreizler - Engineering Manager, Product Security - Segment, to talk about Shifting Right: What Security Engineers Can Learn...
Grab A Sword - ASW #145
30 Mar 2021
Contributed by Lukas
This week, we welcome Andrew van der Stock, Executive Director at OWASP Foundation, to talk about the OWASP Top 10 of 2021! The OWASP Top 10 2021 is i...
The Cure - ASW #144
23 Mar 2021
Contributed by Lukas
This week, we welcome Johanna Ydergard, VP of Detectify Crowdsource at Detectify, and Roberto Giachetta, Engineering Manager at Detectify, to discuss ...
Always Interesting - ASW #143
16 Mar 2021
Contributed by Lukas
This week, we welcome John Morello, VP of Product at Palo Alto Networks, joins us to talk about Cloud Native Security Platforms! Modern appsec demonst...
Check Your Alibis - ASW #142
09 Mar 2021
Contributed by Lukas
This week, we welcome Cynthia Burke, Compliance Manager at Capsule8, to discuss Privacy, Data Security & Compliance! In most IT shops, privacy, data s...
New Wave Post Punk Security Hour - ASW #141
02 Mar 2021
Contributed by Lukas
This week, we welcome Ted Harrington, Executive Partner at Independent Security Evaluators, to discuss Hackable; How to do Application Security Right!...
Goose Egg - ASW #140
23 Feb 2021
Contributed by Lukas
This week, we welcome Brandon Edwards, Co-Founder and Chief Scientist at Capsule8, to discuss Targeting, Exploiting, & Defending Linux! Linux is all o...
Total Recall - ASW #139
09 Feb 2021
Contributed by Lukas
This week, we welcome Alissa Knight, Partner at Knight Ink, to discuss Being a Serial Entrepreneur, Business Leader, & Hacker! Alissa Knight has spent...
The Sound of Silence - ASW #138
02 Feb 2021
Contributed by Lukas
This week, we welcome John Delaroderie, Security Solutions Architect at Qualys, to discuss Groundhog Day - It's Time to Reset the Script on Vulnerabil...
A Tree of Woe - ASW #137
26 Jan 2021
Contributed by Lukas
This week, we welcome back Taylor McCaslin, Sr. Product Manager of Secure at GitLab, to discuss Reading Industry Analyst Tea Leaves To Predict The Fut...
Breaking John - ASW #136
12 Jan 2021
Contributed by Lukas
This week, we welcome Andrei Serban, Co-Founder at Fuzzbuzz, to discuss Fuzz Testing! Fuzzing can be successful AppSec strategy for finding software b...
Pokémon & Synthwave & Hair & Hats - ASW #135
05 Jan 2021
Contributed by Lukas
A premise of adding security to DevOps is we can "shift left" AppSec responsibilities, one of which is building apps so they're secure by design. Yet ...
Dark & Scary - ASW #134
16 Dec 2020
Contributed by Lukas
This week, we welcome Ev Kontsevoy, CEO at Teleport, to discuss Freedom From Computing Environments! In the Application Security News, FireEye shares ...
A Cesspool of Images - ASW #133
08 Dec 2020
Contributed by Lukas
This week, we welcome Mike Manrod, CISO of Grand Canyon University, joined by John Delaroderie, Security Solutions Architect at Qualys, to discuss his...
Talking Cookies - ASW #132
01 Dec 2020
Contributed by Lukas
This week, we welcome back Tim Mackey, Principal Security Strategist at Synopsys, to talk about Security Decisions During Application Development! In ...
Thunderdome Technique - ASW #131
24 Nov 2020
Contributed by Lukas
This week, in the first segment, Mike, Adrian, and John discuss Threat Modeling! We threat model every day without realizing it. And, of course, we of...
Black Friday - ASW #130
17 Nov 2020
Contributed by Lukas
This week, we welcome Rickard Carlsson, Co-founder & CEO at Detectify, to talk about Automated Hacker Knowledge! In the Application Security News, The...
Snowy Clouds - ASW #129
10 Nov 2020
Contributed by Lukas
This week, we have the pleasure to welcome back Keith Hoodlet, Senior Manager, Application Experience at Thermo Fisher Scientific, and former Host of ...
Exploding Decompression - ASW #128
03 Nov 2020
Contributed by Lukas
This week, we welcome Alfred Chung, Sr. Product Manager at Signal Sciences, to discuss Azure App Service & Cloud-Native Signal Sciences Deployments! I...
The Spookiest Month - ASW #127
27 Oct 2020
Contributed by Lukas
This week, we welcome Cesar Rodriguez, Head of Developer Advocacy at Accurics, to talk about Cyber Resiliency Through Self-Healing Cloud Infrastructur...
Way Over My Head - ASW #126
20 Oct 2020
Contributed by Lukas
This week, we welcome Taylor McCaslin, Security Product Manager at GitLab, to discuss current trends in the application security testing industry! In ...
Still Raging - ASW #125
12 Oct 2020
Contributed by Lukas
This week, we welcome James Manico, CEO at Manicode Security, to talk about Application Security Best Practices! In the Application Security News, Red...
The Laughing Isn't Helping - ASW #124
06 Oct 2020
Contributed by Lukas
This week, we welcome Chris Romeo, CEO at Security Journey, to discuss Things Every Developer Should Know About Security! In the Application Security ...
Hot Off the Press - ASW #123
28 Sep 2020
Contributed by Lukas
This week, Mike, Matt, and John talk about The Difference Between Finding Vulns & Securing Apps! In the Application Security News, 6 Things to Know Ab...
One Love, One Fuzz - ASW #122
22 Sep 2020
Contributed by Lukas
This week, we welcome Justin Massey, Product Manager, Security Monitoring at Datadog, to discuss Visualizing and Detecting Threats For Your Custom App...
The Wire Stripper - ASW #121
14 Sep 2020
Contributed by Lukas
This week, we welcome Frank Catucci, Sr. Director GTP of Application Security at Gartner, to discuss The People & Process of DevOps! In the Applicatio...
Little Bit Too High - ASW #120
01 Sep 2020
Contributed by Lukas
This week, we welcome Marc Tremsal, Director of Product Management of Security at Datadog, to discuss Detecting Threats & Avoiding Misconfigs In The C...
Heavy Pressure - ASW #119
24 Aug 2020
Contributed by Lukas
This week, we welcome Sundar Krish, CEO & Co-Founder at Sken.ai, to talk about DevOps-First Application Security For Mid-Markets! In the Application S...
Positive Drift - ASW #118
17 Aug 2020
Contributed by Lukas
This week, we welcome back Cesar Rodriguez, Head of Developer Advocacy at Accurics, to discuss Immutable Security For Immutable Infrastructure! In the...
Maximum Isolation - ASW #117
04 Aug 2020
Contributed by Lukas
This week, it's Security Weekly Virtual Hacker Summer Camp 2020! In our first segment, we welcome Mike Rothman, President at DisruptOps, to discuss: H...
It Makes No Sense - ASW #116
27 Jul 2020
Contributed by Lukas
This week, we welcome John Matherly, Founder of Shodan, to talk about Fixing Vulnerabilities Effectively & Efficiently! In the Application Security Ne...
Back in the 90's - ASW #115
20 Jul 2020
Contributed by Lukas
This week, we welcome Kris Rajana, President and CTO at Biarca, and Bhasker Nallapothula, Director of Engineering at Biarca, to talk about Cloud Secur...
Absolutely Useless - ASW #114
14 Jul 2020
Contributed by Lukas
This week, we welcome Judy Ngure, Cybersecurity Engineer at Africastalking, to talk about DevSecOps! In the Application Security News, Microsoft OneDr...
Crunchy Crunchy! - ASW #113
06 Jul 2020
Contributed by Lukas
This week, we welcome Catherine Chambers and Will Hickie from Irdeto, to discuss Protecting Mobile Applications! In the Application Security News, Wou...
Completely Forgotten - ASW #112
29 Jun 2020
Contributed by Lukas
This week, we welcome Cesar Rodriguez, Head of Developer Advocacy at Accurics, to talk about Using IaC to Establish And Analyze Secure Environments! I...
The Boy Who Cried Wolf - ASW #111
15 Jun 2020
Contributed by Lukas
This week, we welcome Michelle Dennedy, CEO of DrumWave, to discuss Data Mapping & Data Value Journey! In the Application Security News, CallStranger ...
Full of Ideas - ASW #110
09 Jun 2020
Contributed by Lukas
This week, we welcome Phillip Maddux, Sr. Technical Account Manager at Signal Sciences, to talk about The Future State of AppSec! In the Application S...
Prohibitively Expensive - ASW #109
01 Jun 2020
Contributed by Lukas
This week, we speak with John Chirhart, Customer Experience Engineer at Google Cloud, to discuss How to Prevent Account Takeover Attacks! In our secon...
Shake My Head - ASW #108
18 May 2020
Contributed by Lukas
This week, we welcome Jack Zarris, Senior Sales Engineer at Signal Sciences, to talk about Using Rate Limiting to Protect Web Apps and APIs! In our se...
A Perfect Ten - ASW #107
11 May 2020
Contributed by Lukas
This week, we welcome back Joe Garcia, DevOps Security Engineer at CyberArk, to discuss How Can Security Work TOGETHER, Not Against, Developers! In th...
Swiss Cheese - ASW #106
04 May 2020
Contributed by Lukas
This week, we welcome Gareth Rushgrove, Director of Product Management at Snyk, to talk about Modern Application Security and Container Security! In t...
Blinky Lights - ASW #105
27 Apr 2020
Contributed by Lukas
This week, we welcome Avi Douglen, Founder and CEO of Bounce Security, to talk about Threat Modeling in Application Security, DevSecOps, and how Appli...
Crabby Code - ASW #104
20 Apr 2020
Contributed by Lukas
This week, we welcome Rebecca Black, Senior Staff Application Security Engineer at Avalara, to talk about Building an AppSec Ecosystem! This week in t...
Some Good Meatiness - ASW #103
14 Apr 2020
Contributed by Lukas
This week, we welcome Brad Geesaman, Co-Founder of Darkbit, to talk about Making Kubernetes a Hostile Place for Attackers! In the Application Security...
The Sky Is Falling - ASW #102
06 Apr 2020
Contributed by Lukas
This week, we welcome Grant Ongers, Co-Founder of Secure Delivery, to discuss why "You re (probably) Doing AppSec Wrong"! In the Application Security ...
Syncing of the Minds - ASW #101
23 Mar 2020
Contributed by Lukas
This week, we welcome Adam Hughes, Chief Software Architect at Sylabs Inc., to discuss Singularity: A Different Take on Container Security! In the sec...
100 Years - ASW #100
17 Mar 2020
Contributed by Lukas
This week, we welcome Clint Gibler, Research Director at NCC Group, to discuss DevSecOps and Scaling Security! In the Application Security News, Data ...
Party Like It's '99 - ASW #99
11 Mar 2020
Contributed by Lukas
This week, we welcome Guy Podjarny, Snyk's Founder and President! In the Application Security News, Revoking certain certificates on March 4 and Why 3...
Fabric of Confidence - ASW #98
03 Mar 2020
Contributed by Lukas
This week, we welcome Dan Petit, to discuss his upcoming 2-day workshop at InfoSec World 2020! The workshop is a "deep survey" into all things DevSecO...
Really Windy - ASW #97
26 Feb 2020
Contributed by Lukas
This week, live from RSAC 2020, we interview Chris Eng, Chief Research Officer at Veracode! Chris provides an update on Veracode including 2019 growth...
Over the Edge - ASW #96
18 Feb 2020
Contributed by Lukas
This week, we welcome Doug DePerry, Director of Defense at Datadog, to discuss Lessons Learned From The DevSecOps Trenches! In the Application Securit...
The Toothbrush of Trust - ASW #95
11 Feb 2020
Contributed by Lukas
This week, Mike and John interview Shaun Lamb about strategies for how to best design applications so they are "secure by default" and have fewer inci...
Totally Thrilled - ASW #94
04 Feb 2020
Contributed by Lukas
This week, Mike, John, and Matt review the presentation given by Clint Gilber at AppSec Cali, An Opinionated Guide to Scaling Your Company's Security!...
Running Out of Fingers - ASW #93
28 Jan 2020
Contributed by Lukas
This week, we welcome John Butler, Solutions Engineer at Guardsquare, to discuss Dynamically Protecting Mobile Applications with RASP! In the Applicat...
Warm & Fuzzy - ASW #92
21 Jan 2020
Contributed by Lukas
This week in our first segment, Mike, Matt, and John, discuss Protecting Data in Apps and Protecting Apps from Data! In the Application Security News,...
Carrot in the Cliff - ASW #91
14 Jan 2020
Contributed by Lukas
This week, we welcome Hillel Solow, CTO at Check Point, to discuss The Evolution of DevSecOps and AppSec Trends in 2020! In the Application Security N...
Learn & Improve - ASW #90
07 Jan 2020
Contributed by Lukas
This week on Application Security Weekly, Mike Shema and Matt Alderman discuss Privacy by Design - The 7 Foundational Principles! In the Application S...
Backup & Restore - ASW #89
17 Dec 2019
Contributed by Lukas
This week, we welcome Dave Ferguson, Director of Product Management and WAS at Qualys! Dave will discuss the issue of latent vulnerabilities and how t...
Dad Jokes - ASW #88
10 Dec 2019
Contributed by Lukas
This week, we welcome Allan Friedman, Director of Cybersecurity Initiatives at the NTIA US Department of Commerce, to talk about the Software Bill of ...
Low Hanging Fruit - ASW #87
03 Dec 2019
Contributed by Lukas
This week, we welcome Sandy Carielli, Principal Analyst at Forrester Research, to discuss the impact of good and bad bots on enterprises and how it is...
Snarky Ways - ASW #86
26 Nov 2019
Contributed by Lukas
This week, we welcome Tim Mackey, Principal Security Strategist at Synopsys! In the Application Security News, $1M Google Hacking Prize, 1.2B Records ...
Notoriously Targeted - ASW #85
19 Nov 2019
Contributed by Lukas
This week, we welcome back Pawan Shankar, Senior Product Marketing Manager of Sysdig, to announce the launch of Sysdig Secure 3.0! In the Application ...
Destroying Your Tree - ASW #84
13 Nov 2019
Contributed by Lukas
This week, in the first segment, Mike, Matt, and John talk Security Testing! In the Application Security News, Pwn2Own Tokyo Roundup: Amazon Echo, Rou...
Disrupting the Office - ASW #83
05 Nov 2019
Contributed by Lukas
This week, we interview Daniel Lowrie and Justin Dennison, Edutainers at ITProTV, to discuss how to bridge the gap between a Developer and Security! I...
The Scary World - ASW #82
29 Oct 2019
Contributed by Lukas
This week, Mike Shema, Matt Alderman, and John Kinsella talk about Bug Bounties, Pentesting, & Scanners! In the Application Security News, Top cloud s...
Exceedingly Happy - ASW #81
22 Oct 2019
Contributed by Lukas
This week, we welcome Doug Coburn, Director of Professional Services at Signal Sciences, discussing Containers, Layer 7, and Application Security! In ...
Spaghetti Code - ASW #80
15 Oct 2019
Contributed by Lukas
This week, we welcome Francois Lacelles, Field CTO of Ping Identity for an interview! In the Application Security News, Key takeaways from Imperva bre...
A Sea of Orange - ASW #79
08 Oct 2019
Contributed by Lukas
This week, Mike, Matt, and John talk about Cloud Security for Small Teams! In the Application Security News, Ex-Yahoo Engineer Abused Access to Hack 6...
The Notorious Bucket - ASW #78
01 Oct 2019
Contributed by Lukas
This week, we welcome Ryan Kelso, Application Security Engineer at 10-Sec, Inc., to discuss Information Disclosure Vulnerabilities! In the Application...
Something Should Exist - ASW #77
23 Sep 2019
Contributed by Lukas
This week, we welcome Nicolas Valcarcel, Security Engineer at NextRoll! In the Application Security News, BSIMM10 Emphasizes DevOps' Role in Software ...
Pick Your Example - ASW #76
16 Sep 2019
Contributed by Lukas
This week, we welcome Jay Durga, IT Architect at CIRCOR International, to discuss the excel tool he developed, and how it can be used to measure metri...
The Man With A Plan - ASW #75
10 Sep 2019
Contributed by Lukas
Ty Sbano is the Cloud Chief Information Security Officer of Sisense. Ty will be discussing Tools in the DevOps Pipeline, Component Analysis, and Anyth...