Artwork

Content provided by Omer Hamerman & Meir Gabay, Omer Hamerman, and Meir Gabay. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Omer Hamerman & Meir Gabay, Omer Hamerman, and Meir Gabay or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

#8 - Application Security

23:30
 
Share
 

Manage episode 351363566 series 3419697
Content provided by Omer Hamerman & Meir Gabay, Omer Hamerman, and Meir Gabay. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Omer Hamerman & Meir Gabay, Omer Hamerman, and Meir Gabay or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

In this episode we discussed all-things application security; from scanning, to designing with security in mind, through OWASP and sources of information we feel engineers in the world of dev / ops should be aware of and familiar with!
We talked about:

Meir's blog: https://meirg.co.il
Omer's blog: https://omerxx.com
Telegram channel: https://t.me/espressops

  continue reading

Chapters

1. Intro to the episode (00:00:00)

2. OWASP Top 10 (00:00:44)

3. Bug bounty programs (00:01:29)

4. Javascript files, leaks, BGP history leaks cleaner (00:04:10)

5. Thirdparty libraries scanning (00:09:56)

6. Security design and considerations, 12 Factor apps (00:11:16)

7. Application secrets (00:14:07)

8. Vulnerability Static Analysis for Containers (00:15:40)

9. Configuration & Secrets - should be dynamic or static? (00:17:57)

10. This week's random finding: HardenEKS (00:22:00)

46 episodes

Artwork
iconShare
 
Manage episode 351363566 series 3419697
Content provided by Omer Hamerman & Meir Gabay, Omer Hamerman, and Meir Gabay. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Omer Hamerman & Meir Gabay, Omer Hamerman, and Meir Gabay or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://player.fm/legal.

In this episode we discussed all-things application security; from scanning, to designing with security in mind, through OWASP and sources of information we feel engineers in the world of dev / ops should be aware of and familiar with!
We talked about:

Meir's blog: https://meirg.co.il
Omer's blog: https://omerxx.com
Telegram channel: https://t.me/espressops

  continue reading

Chapters

1. Intro to the episode (00:00:00)

2. OWASP Top 10 (00:00:44)

3. Bug bounty programs (00:01:29)

4. Javascript files, leaks, BGP history leaks cleaner (00:04:10)

5. Thirdparty libraries scanning (00:09:56)

6. Security design and considerations, 12 Factor apps (00:11:16)

7. Application secrets (00:14:07)

8. Vulnerability Static Analysis for Containers (00:15:40)

9. Configuration & Secrets - should be dynamic or static? (00:17:57)

10. This week's random finding: HardenEKS (00:22:00)

46 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide