Appsec Roundup - September 2024
If you say threat modeling three times, it appears!
If you say threat modeling three times, it appears!
The most important stories around threat modeling, appsec and secure by design for August, 2024.
The most important stories around threat modeling, appsec and secure by design for June, 2024.
The most important stories around threat modeling, appsec and secure by design for June, 2024.
The most important stories around threat modeling, appsec and secure by design for May, 2024.
A less busy month in appsec, AI, and regulation, but still interesting stories
Making an LLM forget is harder than it seems
A busy month in appsec, AI, and regulation.
A busy month in appsec, AI, and regulation.
A busy month+ in appsec, AI, and regulation.
2024 is bringing lots of AI, and Liability, too
A threat modeling conference, lots of government appsec guidance, and some updates from Shostack + Associates
Exciting news from the SEC, lots of AI, and lots of threat modeling.
September was a big month in appsec for both memory safety and policy
Lots of interesting work in LLMs (again)
This month runs quite heavy on AI, but the CISA Safe by Design and Default document is going to be important for the next several years.
Some diagrams to help clarify machine learning threats
Cumulus is a cloud-oriented version of Elevation of Privilege
A few tools, some thoughts on injection, some standards, and some of Adam’s appsec news.
Interesting reads this month include signals from the administration, a history of appsec by one of the originals, and a longread from Apple about kernel memory design.
Interesting appsec posts: machine learning, performance, and C4
Interesting appsec posts: machine learning, performance, and C4
Interesting appsec posts: from medical devices to bridges.
A collection of interesting appsec posts.
Adam is delivering the opening keynote for OWASP Global Appsec 2021 with a 25 year restrospective on the history of appsec and a look into its future.
Time flies and things change... A look back on the growth of this industry.
AppSec Pacific Northwest Conference is a free application security conference that will be held Saturday, June 19th. It is a virtual, online event sponsored by the OWASP chapters of Portland, Vancouver, and Victoria.