Overview
Explore a thought-provoking conference talk from BSides Nashville 2016 that delves into the complexities of application security. Examine the challenges faced in the AppSec field, including data breaches and rapidly evolving attack methods. Analyze a real-world online shopping example to understand potential vulnerabilities. Discover the main considerations for effective AppSec practices and learn about working collaboratively with developers. Gain insights into the Open Web Application Security Project (OWASP) and its importance in the field. Engage with topics ranging from statistics on cyber threats to practical approaches for improving application security in this comprehensive presentation.
Syllabus
Intro
Who am I
Green Talk Version
Disclaimer
What is AppSec
Statistics
Data Breaches
Attackers Moving Faster
Online Shopping Example
The Problem
Order Number
Order Email
Fill in Order
My Order
Email
Cockroach
Random
Not patched
Google Response
Google Official Response
Clint Eastwood
The Good
Main Considerations
Working with Developers
Open Web Application Security
Noahs Chapter
Green Talk