Discussing Useful Security Requirements with Developers - Ixchel Ruiz - ASW #313
14 January 2025 - 1 hour 7 minsThere's a pernicious myth that developers don't care about security. In practice, they care about code quality. What developers don't care for is ambiguous requirements. Ixchel Ruiz shares her experience is discussing software designs, the challenges in prioritizing dev efforts, and how to help open source project maintainers with their issue backlog.
Segment resources:
https://github.com/ossf/scorecard https://www.commonhaus.org/ https://www.hackergarten.net/ Design lessons from PyPI's Quarantine capability, effective ways for appsec to approach phishing, why fishshell is moving to Rust component by component (and why that's a good thing!), what behaviors the Cyber Trust Mark might in...
State of the AI SOC, regulating AI, and can AI agents feel pain? - Aqsa Taylor - ESW #479
1 hour 43 mins
5 October Finished
RAM, Muse, CloudSyncD, Springsteen, Software, Persistence, and Michael Jenkins - Michael Jenkins - SWN #621
37 mins
2 October Finished
Defending at AI Speed as Quantum Threats and AI Policies Won't Save You - Nolan Karpinski - BSW #467
54 mins
30 September Finished
Venus in Furs, Money Laundering, AI Hijinx, MCP, Thunderbastard, and Aaran Leyland - SWN #620
32 mins
29 September Finished
Going From Bug Bounty Bugs to More Secure Systems - Shlomie Liberow - ASW #402
1 hour 2 mins
29 September Finished