CISA's Secure by Design Principles, Pledge, and Progress - Jack Cable - ASW #321
11 March 2025 - 1 hour 13 minsJust three months into 2025 and we already have several hundred CVEs for XSS and SQL injection. Appsec has known about these vulns since the late 90s. Common defenses have been known since the early 2000s. Jack Cable talks about CISA's Secure by Design principles and how they're trying to refocus businesses on addressing vuln classes and prioritizing software quality -- with security one of those important dimensions of quality.
Segment Resources:
https://www.cisa.gov/securebydesign https://www.cisa.gov/securebydesign/pledge https://www.cisa.gov/resources-tools/resources/product-security-bad-practices https://www.lawfaremedia.org/projects-series/reviews-essays/security-by-design https...
Miss Cleo, Whisperpair, Fortisiem, REDVDS, Google, Spying, Rob Allen and More... - Rob Allen - SWN #547
39 mins
16 January Finished
The Future Of Proactive Security Before Building an AI Enabled Enterprise - Erik Nost - BSW #430
55 mins
14 January Finished
Are you dead?, AI Hellscape, Copilot, Blue Delta, Quishing, Confer, Aaran Leyland... - SWN #546
36 mins
13 January Finished
The State of Cybersecurity Hiring, 2026 content plans, and the weekly news - ESW #441
1 hour 35 mins
12 January Finished