Absolute AppSec

Episode 204 - Logging, Edge Cases, Client API Exposure


Listen Later

The dynamite duopoly that is Ken and Seth are back to take the AppSec news by storm. Starting with Seth's favorite topic of Auditing or Logging, Ken brings up the recent Okta vulnerability report related to plaintext logging of usernames and passwords. This is followed by a review of Troy Hunt's recent post on edge cases when interacting with 3rd-party services, which the duo extrapolates to security edge cases and things they have seen recently. Finally, a discussion on manipulation of client single page applications to expose administrative endpoints from a recent twitter thread on reported and identified bug bounty issues of the same flavor.
...more
View all episodesView all episodes
Download on the App Store

Absolute AppSecBy Ken Johnson and Seth Law

  • 4.9
  • 4.9
  • 4.9
  • 4.9
  • 4.9

4.9

17 ratings


More shows like Absolute AppSec

View all
Stuff You Should Know by iHeartPodcasts

Stuff You Should Know

78,879 Listeners

Planet Money by NPR

Planet Money

30,833 Listeners

Risky Business by Patrick Gray

Risky Business

374 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

8,116 Listeners

Application Security Weekly (Audio) by Security Weekly Productions

Application Security Weekly (Audio)

13 Listeners