π’ Announcing DevSec Station, my new podcast! π
If you write code, this is for you.
Short, practical #AppSec lessons. No scare tactics. Very little homework. π
https://t.co/9LFLzOpJ7N
https://t.co/dXv6zPz39w
Announcement: I'm the keynote for Sikkerhetsfestivalen (Security Festival) 2026, in Lillehammer, Norway! August 24 - 26, 2,000 of us will take over that tiny town to learn, party, and connect! Check out the link below to learn more. :-D
https://t.co/x3Y5M7Mj91
Supply chain attacks have entered their βnew tricks, same awfulnessβ era. If your security defenses are stuck a few years back, this mini-lesson is for you. Episode 3 is LIVE!
Watch: https://t.co/EJ3h1lcLO0
Listen: https://t.co/xDScIHka4t
Join myself and Gavin Klondike on July 2nd, 9 am PT, for Chapter 4 of Alice and Bob Learn Secure Coding!
We will cover:
ββ’ secure design
ββ’ dependency and supply chain security
ββ’ trusted vs untrusted systems
ββ’ secure defaults
ββ’ allowlists vs blocklists
https://t.co/SGq1mBJr3x
I was on Smashing Security, episode 470: This AI security flaw might be impossible to fix! With the charming, hilarious, and brilliant Graham Cluely!
List on any podcast platform, or grab it at the link below:
https://t.co/0MAr08qzOi
I was on the RedMonk podcast with host Kate Holterhoff: AI Slop, Vibe Coding, & the Future of AppSec. What an amazing conversation!
Watch here, or listen on any podcast platform: https://t.co/ZzAbUTmEYc
Topics:
β’ API security
β’ mobile app security
β’ WebSocket security
β’ serverless security
β’ IoT security
Katie is brilliant, practical, funny, and incredibly good at explaining complicated security topics! Come ask questions and learn with us π
2/2
Iβm excited for the next book stream π For Chapter 5 of *Alice and Bob Learn Secure Coding*, Iβll be joined by Katie Paxton-Fear to cover technology-specific security practices and what secure coding looks like across different architectures and platforms.
RSVP: https://t.co/rghHIaf8BG
1/2
If you're interested in application security, web security, security engineering, or just enjoy hearing smart people talk about building safer systems, I think you'll enjoy this one.
https://t.co/72JoWOdH2p
2/2
Yesterday I had the pleasure of hosting a book stream with Scott Helme, and it was GREAT.
We talked about encryption, security headers, lessons learned from running Report URI, and plenty of practical advice for developers and security professionals alike.
https://t.co/LBGRIC3E8T
1/2
Itβs #CyberMentoringMonday!!!! Are you looking for a professional mentor or to learn more about InfoSec? Are you experienced and willing to βgive backβ? Use this thread and hashtag to connect
Vienna, Iβm coming.
Iβm teaching a 1-day training at OWASP Global AppSec EU (Jun 22β26) on API Security. Hands on, practical, and very βyou can use this at work on Monday.β
If you have ever shipped an API and thought βI hope this is fine,β this class is for you! π
Registration here: https://t.co/TumSqNHf6K
More information on my session here: https://t.co/DyXN2nnnPl
#OWASP #OWASPGLOBALAPPSECEU
The sneakiest supply chain attacks are not loud. They are boring-looking, easy to miss, and often invisible at first. Which is honestly what makes them so effective. Watch the full episode at DevSec Station to learn more.
https://t.co/6846HcbMCq
Itβs #CyberMentoringMonday!!!! Are you looking for a professional mentor or to learn more about InfoSec? Are you experienced and willing to βgive backβ? Use this thread and hashtag to connect