Sign up to save your podcastsEmail addressPasswordRegisterOrContinue with GoogleAlready have an account? Log in here.
A weekly podcast of all things application security related. Hosted by Ken Johnson and Seth Law.... more
FAQs about Absolute AppSec:How many episodes does Absolute AppSec have?The podcast currently has 333 episodes available.
August 26, 2021Episode 145 - Return of @cktricky, Burnout, Bumble Vuln, Brute-Forcing@cktricky is _back_ with a newfound lease on life (and application security). The duo discusses in-person vs. virtual conferences, DEF CON 29, burnout, vulnerabilities in dating apps. A demonstration of using Burp Suite to fuzz a user enumeration vulnerability and brute-force an account....more0minPlay
August 17, 2021Episode 144 - Fuzzing, Radamsa, Property TestingWith @cktricky still on hiatus, @sethlaw and @lojikil talk fuzzing, property testing, semantic analysis and demo radamsa....more0minPlay
August 10, 2021Episode 143 - HTTP/2, Black Hat/DEFCON, KubernetesWith @cktricky out adventuring, @sethlaw is joined by a familiar face (@lojikil) to dive deeply into recent research presented at Black Hat/DEF CON, HTTP/2, and how everything old is new again....more0minPlay
July 20, 2021Episode 142 - AI Code Generation, Puma Scan, HTTP Request SmugglingDreamin', Beamin', and Streamin' about using artificial intelligence (AI) to generate code (*cough*, *cough*). When and where to use automated source code analysis tools, specifically Puma Scan for .Net/C# code. Also a primer on HTTP Request Smuggling and what you should know about it....more0minPlay
July 13, 2021Episode 141 - print(), Cross-Site Scripting (XSS), RiskIQ, Amass DemoJust two grumpy old men with some AppSec sprinkled in. Topics this week include new research from portswigger using print to bypass new Chrome XSS iframe restrictions, how XSS is still the best (and worst) issue we deal with, and Microsoft's acquisition of RiskIQ....more0minPlay
June 29, 2021Episode 140 - Naomi Buckwalter - Gatekeeping, Developing AppSec ResourcesNaomi Buckwalter (@ineedmorecyber) joins Ken and Seth in a discussion about security gatekeeping, how anyone can get into application security, and the relationships between development and security....more0minPlay
June 22, 2021Episode CXXXIX - Return of the @lojikil (Stefan Edwards)Stefan returns and we pick his brain about information security degrees, format strings, and different testing methodologies. Then we spend most of the episode googling the words that come out of his mouth....more0minPlay
June 15, 2021Episode 138: RansomwareThe duo is back to talk about consulting scheduling and ransomware. Somehow this evolved to a discussion on Hipster Vulns and how auditing is the Crocs-n-SOCs of application security....more0minPlay
June 08, 2021Episode 137: CSRF, GraphQL, Kubernetes, Docker, NoSQL InjectionLive from their parent's basement and dripping with tin foil - Seth and Ken talk about how CSRF is a thing in GraphQL. Kubernetes gets an intentionally-vulnerable setup, and you should definitely check the security of your docker. Finally, some noise about the NoSQL Injection Cheat Sheet....more0minPlay
June 01, 2021Episode 136: AppSec Nihilism and BreachesBack off of a week's break, Seth and Ken catch up on breach news. A return of security nihilism is also in order based on recent breaches and exploits....more0minPlay
FAQs about Absolute AppSec:How many episodes does Absolute AppSec have?The podcast currently has 333 episodes available.