Empathy-led Product Security with Christian Frichot
OWASP DevSlop
Empathy-led Product Security with Christian Frichot
1:05:29
Growing pains: How security changes as your startup develops
OWASP DevSlop
Growing pains: How security changes as your startup develops
1:11:51
Guardrails: who, what, why, when
OWASP DevSlop
Guardrails: who, what, why, when
1:21:43
Hacking Mobile Games with Alex Rosenzweig
OWASP DevSlop
Hacking Mobile Games with Alex Rosenzweig
1:30:32
Hacking with Documentation with Heidi Waterhouse
OWASP DevSlop
Hacking with Documentation with Heidi Waterhouse
1:19:04
Yellow Team + Blue Team = Green Team
OWASP DevSlop
Yellow Team + Blue Team = Green Team
1:17:53
Top 10 CI/CD Security Risks
OWASP DevSlop
Top 10 CI/CD Security Risks
1:18:56
Demystifying the SBOM’s impact on Secure Software Deployment
OWASP DevSlop
Demystifying the SBOM’s impact on Secure Software Deployment
1:09:06
Project “Make ISO Happen 2022” - The Octopus Deploy Adventure Towards 27001 Certification
OWASP DevSlop
Project “Make ISO Happen 2022” - The Octopus Deploy Adventure Towards 27001 Certification
1:09:50
Learning from AWS (Customer) Security Breaches with Rami McCarthy
OWASP DevSlop
Learning from AWS (Customer) Security Breaches with Rami McCarthy
1:19:53
Privilege Escalation in the Cloud with Carlos Polop
OWASP DevSlop
Privilege Escalation in the Cloud with Carlos Polop
1:01:56
Diving Deeper into Subdomain Takeovers & Mitigations with Shubham Shah
OWASP DevSlop
Diving Deeper into Subdomain Takeovers & Mitigations with Shubham Shah
1:03:26
Finding bugs with Nuclei with PinkDraconian (Robbe Van Roey)
OWASP DevSlop
Finding bugs with Nuclei with PinkDraconian (Robbe Van Roey)
1:04:57
Github Actions Security Best Practices with Reethi Kotti
OWASP DevSlop
Github Actions Security Best Practices with Reethi Kotti
1:08:34
Don't Get Got! How to Avoid a Privacy Disaster with Samantha Floreani
OWASP DevSlop
Don't Get Got! How to Avoid a Privacy Disaster with Samantha Floreani
1:03:24
Software Security Education with the OWASP Secure Coding Dojo
OWASP DevSlop
Software Security Education with the OWASP Secure Coding Dojo
1:00:33
Building Modern Access-Control for Cloud Applications
OWASP DevSlop
Building Modern Access-Control for Cloud Applications
1:16:00
Account Security beyond 2FA with Neil Matatall
OWASP DevSlop
Account Security beyond 2FA with Neil Matatall
1:37:15
Let’s Write Security Unit Tests! with Eric Johnson
OWASP DevSlop
Let’s Write Security Unit Tests! with Eric Johnson
1:04:31
Attacking JSON Web Tokens with Louis Nyffenegger
OWASP DevSlop
Attacking JSON Web Tokens with Louis Nyffenegger
1:23:49
Secure Your Code With GitHub Code Scanning
OWASP DevSlop
Secure Your Code With GitHub Code Scanning
1:25:05
OAuth 2.0 Hacking for Beginners with Farah Hawa
OWASP DevSlop
OAuth 2.0 Hacking for Beginners with Farah Hawa
45:38
Fixing OSS Security Vulnerabilities at Scale!
OWASP DevSlop
Fixing OSS Security Vulnerabilities at Scale!
1:11:38
Threats Against Application Identities in the Microsoft Cloud
OWASP DevSlop
Threats Against Application Identities in the Microsoft Cloud
52:20
Security in Kubernetes - How to do it right!
OWASP DevSlop
Security in Kubernetes - How to do it right!
1:10:19
Testing Your Assumptions with Red Teaming
OWASP DevSlop
Testing Your Assumptions with Red Teaming
1:24:27
OAuth and OpenID Connect Clearly Explained
OWASP DevSlop
OAuth and OpenID Connect Clearly Explained
1:28:32
Containers in a nutshell — ähm pod! Containers in a pod
OWASP DevSlop
Containers in a nutshell — ähm pod! Containers in a pod
1:20:33
Cloud Security Tooling for the Sole Practitioner
OWASP DevSlop
Cloud Security Tooling for the Sole Practitioner
1:15:33
Demystifying Mobile Security With a COVID App
OWASP DevSlop
Demystifying Mobile Security With a COVID App
51:43
How to Analyze Code for Vulnerabilities using Joern
OWASP DevSlop
How to Analyze Code for Vulnerabilities using Joern
1:13:50
Vulnerability Writeups: The Magical 5 Minute Formula
OWASP DevSlop
Vulnerability Writeups: The Magical 5 Minute Formula
56:36
DevSecOps wins with Security Unit Tests
OWASP DevSlop
DevSecOps wins with Security Unit Tests
1:28:49
Software Security at Rocketship Pace with Alex Rosenzweig
OWASP DevSlop
Software Security at Rocketship Pace with Alex Rosenzweig
1:30:09
Fuzzing, DevOps, and You: Getting to Know Fuzzing
OWASP DevSlop
Fuzzing, DevOps, and You: Getting to Know Fuzzing
59:22
How to do Code Review - The Offensive Security Way
OWASP DevSlop
How to do Code Review - The Offensive Security Way
58:58
Handling software architecture shifts with Victoriya Kalmanovich
OWASP DevSlop
Handling software architecture shifts with Victoriya Kalmanovich
41:13
The Dark Side of DevSecOps with Yasmin Taylor
OWASP DevSlop
The Dark Side of DevSecOps with Yasmin Taylor
57:22
YOUR Career in AppSec with Tanya Janca
OWASP DevSlop
YOUR Career in AppSec with Tanya Janca
1:54:51
Occupy Babel! Langsec Explained in a Few Slogans
OWASP DevSlop
Occupy Babel! Langsec Explained in a Few Slogans
1:07:13
How to Analyze Code for Vulnerabilities
OWASP DevSlop
How to Analyze Code for Vulnerabilities
1:19:49
Codify Workflows for Security and Speed
OWASP DevSlop
Codify Workflows for Security and Speed
1:09:02
Workshop: Exploring Policy as Code for Cloud Infrastructure
OWASP DevSlop
Workshop: Exploring Policy as Code for Cloud Infrastructure
2:01:18
How to Implement an Effective Cloud Resource Tagging Strategy Using IaC
OWASP DevSlop
How to Implement an Effective Cloud Resource Tagging Strategy Using IaC
55:34
Hunting for IDORs with Katie Paxton-Fear
OWASP DevSlop
Hunting for IDORs with Katie Paxton-Fear
1:21:05
Workshop: Scaling your AppSec Program with Semgrep
OWASP DevSlop
Workshop: Scaling your AppSec Program with Semgrep
2:10:15
Javascript Security with Sherif Koussa
OWASP DevSlop
Javascript Security with Sherif Koussa
1:13:21
Shifting Cloud Security Left: Scanning Infrastructure as Code for Security Issues
OWASP DevSlop
Shifting Cloud Security Left: Scanning Infrastructure as Code for Security Issues
1:05:59
Cloud Security and IAM for Developers
OWASP DevSlop
Cloud Security and IAM for Developers
1:07:21
Secrets Management: A Developer's View with Rob Barnes
OWASP DevSlop
Secrets Management: A Developer's View with Rob Barnes
1:29:59
Security & Compliance for Cloud Infrastructure with CloudQuery
OWASP DevSlop
Security & Compliance for Cloud Infrastructure with CloudQuery
1:00:44
DevSlop Game Day : Closing Briefing
OWASP DevSlop
DevSlop Game Day : Closing Briefing
26:09
DevSlop Game Day : Deploying a Microservice Application to Kubernetes
OWASP DevSlop
DevSlop Game Day : Deploying a Microservice Application to Kubernetes
28:09
Finding Security Vulnerabilities through Code Review - The OWASP way
OWASP DevSlop
Finding Security Vulnerabilities through Code Review - The OWASP way
1:16:38
5 Steps to Establish the Foundation of Your AWS Security Program with AJ Yawn
OWASP DevSlop
5 Steps to Establish the Foundation of Your AWS Security Program with AJ Yawn
1:22:50
SCA: Understanding and securing what's in your software supply chain with Maya Kaczorowski
OWASP DevSlop
SCA: Understanding and securing what's in your software supply chain with Maya Kaczorowski
1:09:20
Teaching the OWASP Top 10 to Beginning Developers with Olivia Liddell!
OWASP DevSlop
Teaching the OWASP Top 10 to Beginning Developers with Olivia Liddell!
1:08:18
Introducing Threats Manager Studio with Simone Curzi
OWASP DevSlop
Introducing Threats Manager Studio with Simone Curzi
1:08:33
Automating Application Security Testing is Hard - Improvisational Episode
OWASP DevSlop
Automating Application Security Testing is Hard - Improvisational Episode
1:08:27
DevSlop Game Day Recap & Solution with Renan Dias
OWASP DevSlop
DevSlop Game Day Recap & Solution with Renan Dias
2:12:19
DevSlop Game Day: A DevOps CTF ( Introduction to Containerization and Docker)
OWASP DevSlop
DevSlop Game Day: A DevOps CTF ( Introduction to Containerization and Docker)
3:50:05
Serverless Observability in AWS : A Learner's Journey with Kiki Morgan!
OWASP DevSlop
Serverless Observability in AWS : A Learner's Journey with Kiki Morgan!
58:28
Compromised Compilers - A new perspective of supply chain cyber attacks
OWASP DevSlop
Compromised Compilers - A new perspective of supply chain cyber attacks
57:35
Practical DevSecOps Workshop - is DAST the gift or bane? with Mohammed A. Imran
OWASP DevSlop
Practical DevSecOps Workshop - is DAST the gift or bane? with Mohammed A. Imran
1:57:38
Embrace Secure Defaults, Block Anti-patterns, and Kill Bug Classes with Semgrep with Clint Gibler
OWASP DevSlop
Embrace Secure Defaults, Block Anti-patterns, and Kill Bug Classes with Semgrep with Clint Gibler
1:47:49
The Act of Balancing: Burnout in Cybersecurity with Chloé Messdaghi!
OWASP DevSlop
The Act of Balancing: Burnout in Cybersecurity with Chloé Messdaghi!
1:09:45
AppSec at the Speed of DevOps: 3 Common Mistakes  with Erica Anderson!
OWASP DevSlop
AppSec at the Speed of DevOps: 3 Common Mistakes with Erica Anderson!
1:10:41
Hacking JWTs for Beginners with Farah Hawa
OWASP DevSlop
Hacking JWTs for Beginners with Farah Hawa
58:40
Automate, Audit and Codify Your AWS IAM Configuration With Bridgecrew's AirIAM
OWASP DevSlop
Automate, Audit and Codify Your AWS IAM Configuration With Bridgecrew's AirIAM
1:59:47
Healthy Posture and You Are in the Clouds with Marina Segal!
OWASP DevSlop
Healthy Posture and You Are in the Clouds with Marina Segal!
1:07:07
GitOps and Best Practices for Managing Infrastructure with Javeria Khan!
OWASP DevSlop
GitOps and Best Practices for Managing Infrastructure with Javeria Khan!
1:07:23
Orchestration with Nomad from A(rtifacts) to Z(ones) with Jacquie Grindrod!
OWASP DevSlop
Orchestration with Nomad from A(rtifacts) to Z(ones) with Jacquie Grindrod!
1:09:01
Knock Your SOCs Off: Modernizing Security Operations with Kat Sweet!
OWASP DevSlop
Knock Your SOCs Off: Modernizing Security Operations with Kat Sweet!
1:06:48
Ceci n'est pas une Pipeline: is it CI/CD or WHAT?
OWASP DevSlop
Ceci n'est pas une Pipeline: is it CI/CD or WHAT?
58:57
Checkov: Security & Compliance for Your Infrastructure-as-Code
OWASP DevSlop
Checkov: Security & Compliance for Your Infrastructure-as-Code
1:43:01
Automating Cloud Security with Open Policy Agent with Josh Stella! - OWASP DevSlop
OWASP DevSlop
Automating Cloud Security with Open Policy Agent with Josh Stella! - OWASP DevSlop
1:00:37
Secure-er Code Reviews with Seth & Ken! - OWASP DevSlop
OWASP DevSlop
Secure-er Code Reviews with Seth & Ken! - OWASP DevSlop
1:46:16
Practical Application of the API Security Top 10 with Rajni Hatti! - OWASP DevSlop
OWASP DevSlop
Practical Application of the API Security Top 10 with Rajni Hatti! - OWASP DevSlop
49:59
Logging & Monitoring on AWS 101 with Veliswa Boya! - OWASP DevSlop
OWASP DevSlop
Logging & Monitoring on AWS 101 with Veliswa Boya! - OWASP DevSlop
1:07:00
Securing your code with CodeQL with Sasha Rosenbaum! - OWASP DevSlop
OWASP DevSlop
Securing your code with CodeQL with Sasha Rosenbaum! - OWASP DevSlop
58:33
API hacking for the Actually Pretty Inexperienced hacker with Katie Paxton-Fear - OWASP DevSlop
OWASP DevSlop
API hacking for the Actually Pretty Inexperienced hacker with Katie Paxton-Fear - OWASP DevSlop
1:16:55
An AWSome Guide to DevOps with Zainub Amod
OWASP DevSlop
An AWSome Guide to DevOps with Zainub Amod
1:01:28
Secure your serverless! Offense and Defensive Measures with Teri Radichel - OWASP DevSlop
OWASP DevSlop
Secure your serverless! Offense and Defensive Measures with Teri Radichel - OWASP DevSlop
1:01:10
Security & Policy Configurations for Infrastructure as Code with Rosemary Wang - OWASP DevSlop
OWASP DevSlop
Security & Policy Configurations for Infrastructure as Code with Rosemary Wang - OWASP DevSlop
57:07
Compliance as Code - The Why, What and How with Mario Platt - OWASP DevSlop
OWASP DevSlop
Compliance as Code - The Why, What and How with Mario Platt - OWASP DevSlop
1:09:43
GitHub Actions: Beyond CI/CD with Pierre-Nicolas Durette - OWASP DevSlop
OWASP DevSlop
GitHub Actions: Beyond CI/CD with Pierre-Nicolas Durette - OWASP DevSlop
1:08:02
Google Cloud Platform Security with Dominique West - OWASP DevSlop
OWASP DevSlop
Google Cloud Platform Security with Dominique West - OWASP DevSlop
1:35:38
OWASP DevSlop: OWASP ModSecurity Core Rule Set (CRS) with Franziska Bühler and Christian Folini!
OWASP DevSlop
OWASP DevSlop: OWASP ModSecurity Core Rule Set (CRS) with Franziska Bühler and Christian Folini!
1:00:56
Azure Cloud Native Security Workshop with Tanya Janca
OWASP DevSlop
Azure Cloud Native Security Workshop with Tanya Janca
2:37:36
Tanya fixes the Content Security Policy header that has broken DevSlop.co
OWASP DevSlop
Tanya fixes the Content Security Policy header that has broken DevSlop.co
1:01:02
OWASP DevSlop Show: Catching Secrets in the Cloud with Pawel Rzepa!
OWASP DevSlop
OWASP DevSlop Show: Catching Secrets in the Cloud with Pawel Rzepa!
1:10:20
OWASP DevSlop Show: Security Code Review 101 with Paul Ionescu!
OWASP DevSlop
OWASP DevSlop Show: Security Code Review 101 with Paul Ionescu!
1:01:05
OWASP DevSlop Show: Rapid Threat Model Prototyping with Geoffrey Hill!
OWASP DevSlop
OWASP DevSlop Show: Rapid Threat Model Prototyping with Geoffrey Hill!
1:34:17
Containerized Adventures with Kaslin Fields
OWASP DevSlop
Containerized Adventures with Kaslin Fields
1:05:31