CISA's Secure by Design Principles, Pledge, and Progress - Jack Cable - ASW #321
11 March 2025 - 1 hour 13 minsJust three months into 2025 and we already have several hundred CVEs for XSS and SQL injection. Appsec has known about these vulns since the late 90s. Common defenses have been known since the early 2000s. Jack Cable talks about CISA's Secure by Design principles and how they're trying to refocus businesses on addressing vuln classes and prioritizing software quality -- with security one of those important dimensions of quality.
Segment Resources:
https://www.cisa.gov/securebydesign https://www.cisa.gov/securebydesign/pledge https://www.cisa.gov/resources-tools/resources/product-security-bad-practices https://www.lawfaremedia.org/projects-series/reviews-essays/security-by-design https...
Scam Baiting, AI, and the New Grift Economy, Part 1 - Rinoa Poison - SWN #566
35 mins
24 March Finished
Can AI help critical infrastructure, the state of the cyber market, and weekly news - Mike Privette, Kara Sprague - ESW #451
1 hour 42 mins
23 March Finished
Ahab and Peewee Herman, Zoom, Vibe Hacking, SharePoint, Meta, AgeID, Josh Marpet - SWN #565
33 mins
20 March Finished
Hacking IP KVMs & Reversing with Radare2 - Sergi Àlvarez - PSW #918
2 hours 10 mins
19 March Finished