
Appsec Roundup - Oct 2024
If you say liability three times, it appears!
If you say liability three times, it appears!
A new universal threat model - what can we learn from it?
What do we need to assess if memory safe langages are 'sufficient'?
Other people have written about the CSRB report, and I wanted to share their perspectives.
The CSRB has released its report into an intrusion at Microsoft, and...it’s a doozy.
We have a new paper at NDSS
This month runs quite heavy on AI, but the CISA Safe by Design and Default document is going to be important for the next several years.
Cumulus is a cloud-oriented version of Elevation of Privilege
NCC has released a threat model for Google Cloud Platform. What can it teach us?
This month is all about memory safety, unless you’re a standards group.
Understanding the way intrusions really happen is a long-standing interest of mine.
What have we learned and what steps can we take?
[no description provided]
[no description provided]
[no description provided]
[no description provided]