Absolute AppSec

Episode 297 - True/False Positives, Phishing Package Maintainers


Listen Later

The Absolute AppSec duo returns with an in-depth episode talking about true and false positives, where context matters and business impact must be taken into account in order to avoid rabbit holes. This discussion spurred by a recent article from signalblur of magonia.io discussing alerts in a security operations center. In short, only considering existence of a flaw (or alert) is not enough by itself. True impact comes by understanding context. Anyone want t-shirts? A discussion of the recent successful phish of an npm package maintainer, resulting in exposure of millions of projects depending on popular npm packages. It happens, folks, protect yourself.
...more
View all episodesView all episodes
Download on the App Store

Absolute AppSecBy Ken Johnson and Seth Law

  • 4.9
  • 4.9
  • 4.9
  • 4.9
  • 4.9

4.9

17 ratings


More shows like Absolute AppSec

View all
Stuff You Should Know by iHeartPodcasts

Stuff You Should Know

78,879 Listeners

Planet Money by NPR

Planet Money

30,830 Listeners

Risky Business by Patrick Gray

Risky Business

374 Listeners

Darknet Diaries by Jack Rhysider

Darknet Diaries

8,116 Listeners

Application Security Weekly (Audio) by Security Weekly Productions

Application Security Weekly (Audio)

13 Listeners