Application Security Weekly Episode #191 – April 04, 2022
Subscribe to all of our shows and mailing list by visiting: https://securityweekly.com/subscribe
1. Democratizing Software Security – 12:30 PM-01:00 PM
Sponsored By

Visit https://securityweekly.com/soos for more information!
Announcements
-
Security Weekly listeners, save $100 on your RSA Conference 2022 Full Conference Pass! RSA Conference will be live in San Francisco June 6th-9th, 2022. Security Weekly will be there in full force, delivering real-time, live coverage and interviewing some of the event’s top speakers and sponsors. To register using our discount code, please visit https://securityweekly.com/rsac2022 and use the code 52UCYBER. We hope to see you there!
-
Don’t miss any of your favorite Security Weekly content! Visit https://securityweekly.com/subscribe to subscribe to any of our podcast feeds and have all new episodes downloaded right to your phone! You can also join our mailing list, Discord server, and follow us on social media & our streaming platforms!
Description
Visit https://securityweekly.com/soos for more information!
Announcements
-
Security Weekly listeners, save $100 on your RSA Conference 2022 Full Conference Pass! RSA Conference will be live in San Francisco June 6th-9th, 2022. Security Weekly will be there in full force, delivering real-time, live coverage and interviewing some of the event’s top speakers and sponsors. To register using our discount code, please visit https://securityweekly.com/rsac2022 and use the code 52UCYBER. We hope to see you there!
-
Don’t miss any of your favorite Security Weekly content! Visit https://securityweekly.com/subscribe to subscribe to any of our podcast feeds and have all new episodes downloaded right to your phone! You can also join our mailing list, Discord server, and follow us on social media & our streaming platforms!
Description
Making a positive impact to how we package software to make developer’s lives easier in how they have to manage security.
Segment Resources:
– https://app.soos.io/demo
– https://soos.io/
– https://youtu.be/Y8jvhCHGQg8
This segment is sponsored by soos.io. Visit https://securityweekly.com/soos to learn more about them!
Guest(s)
|
Eric Allard – Chief Technology Officer at SOOS @soostech Eric Allard is on a mission to make software safer for everyone. As Chief Technology Officer at SOOS, Eric and his team are breaking down barriers and making it easy and affordable to identify and remediate software vulnerabilities early in the software development life-cycle. In a field crowded with convoluted pricing and cumbersome solutions, SOOS offers a straightforward pricing model and easy workflow integration. Eric brings more than fifteen years of tech and entrepreneurial leadership to the SOOS team. Trained as a software engineer, he soon realized his true passion is anticipating customer needs and bringing solutions to market. He loves building and leading teams, and is known for both his big-picture strategic skills and his eye for detail. Eric’s previous roles include start-up founder, V.P. of Research and Development for MyWebGrocer, and stay-at-home dad. Eric is Champlain College alumnus and a lifelong Vermonter. He is married and has two young children. In his freetime, he enjoys hiking, jack jumping, and photographing Vermont’s landscape. |
Hosts
John Kinsella @johnlkinsella Co-founder & CTO at Cysense |
Mike Shema @Codexatron Security Partner at Square |
2. Escaping from BlastDoor’s Sandbox, Spring RCE, Old Zlib Flaw, Startup Security – 01:00 PM-01:30 PM
Announcements
-
Do you have a specific guest or topic that you want us to cover on one of the shows? Submit your suggestions for guests by visiting https://securityweekly.com/guests and completing the form! We review suggestions monthly and will reach out to you once reviewed!
-
Join us April 14th to learn how to monitor your wifi network for attacks with Nzyme, a free and open source wireless intrusion detection system, with Lennart Koopmann, hosted by Larry Pesce and Paul Asadoorian. Then, join Alan Stacilauskas and hosts Tyler Robinson and Paul Asadoorian on April 21st to learn how to gain visibility into your enterprise with SYSMON. Finally, join Paul Asadoorian and Rich Mogull on May 4th to learn how to choose the right architecture for your application. Live attendees at all of these webcasts will have the chance to win a $100 Hacker Warehouse gift card! Register at securityweekly.com/webcasts. Don’t forget to check out our library of on-demand webcasts & technical trainings at securityweekly.com/ondemand.
Description
FORCEDENTRY implications for the BlastDoor sandbox, Spring RCE, Zlib flaw resurfaces, security for startups, verifying Rust models, two HTML parsers lead to one flaw
Hosts
John Kinsella @johnlkinsella
Co-founder & CTO at Cysense |
|
Mike Shema @Codexatron
Security Partner at Square |
|