Learn how Microsoft scales Dynamic Application Security Testing (DAST) with automation. Check out Jason Geffner's blog post and BlueHat talk:
➡️MSRC blog: https://t.co/dtKuz94w7Q
➡️BlueHat talk: https://t.co/jzKf6kSb6i
To ensure the security of Microsoft's web services and protect our customers, we're using innovative solutions to automate Dynamic Application Security Testing (DAST) at scale. This effort targets thousands of internal and external API web services across Microsoft’s portfolio of 1st party services, which are applications or services that are created, owned, and managed by Microsoft itself.
Learn more in our blog post from Jason Geffner, Principal Security Architect at Microsoft: https://t.co/RUYJ2etASL
Take a rare look inside how Microsoft is working to use automated reverse engineering techniques to secure its own web services!
https://t.co/D36UyvSWXl
#BlueHat
📣SPEAKER ANNOUNCEMENT📣
Jason Geffner (@JasonGeffner), Principal Security Architect, Microsoft, will be presenting a talk titled “How Microsoft is Scaling DAST” at #BlueHat. Jason is an information security professional with an extensive history in application security, risk management, malware analysis, threat intelligence, incident response command, endpoint security, security automation, vendor security management, and security research & development.
We’re sharing our discovery & analysis of four vulnerabilities in Perforce Server, including a critical vulnerability that could give unauthenticated remote attackers complete control over unpatched systems & connected infra. Patches available: https://t.co/dGFn7rtC14
I recently discovered a new CVSS 10.0 vulnerability in Perforce Helix Core Server that allows for unauthenticated remote code execution (RCE) as LocalSystem. Read all about it and three new CVSS 7.5 vulnerabilities in my blog post below.
https://t.co/N2A1TZnoqy
So frustrated with acronyms. I asked everyone at work what IDK stands for, and they each said “I don’t know” ☹️
I guess it’ll continue to be a mystery.
DEADLINE EXTENDED!!!! ⏰⚠️🙌⏳🚨➡️
The application to attend #BlueHat October 2023 has been extended to Friday, September 8 at midnight Pacific Time. We hope you can join us from October 11-12, 2023 in Redmond, WA, US. Submit your application today: https://t.co/i92dJT5GUg
One of the great things about working for @Microsoft is the flexibility provided to move from an IC role to a management role, and to move from a management role to an IC role. After making the former move 18 months ago, I am thrilled to make the latter move this month!