
Secure Designs, UX Dragons, Vuln Dungeons - Jack Cable - ASW #328
29 April - 44 minsIn this live recording from BSidesSF we explore the factors that influence a secure design, talk about how to avoid the bite of UX dragons, and why designs should put classes of vulns into dungeons.
But we can't threat model a secure design forever and we can't oversimplify guidance for a design to be "more secure". Kalyani Pawar and Jack Cable join the discussion to provide advice on evaluating secure designs through examples of strong and weak designs we've seen over the years. We highlight the importance of designing systems to serve users and consider what it means to have a secure design with a poor UX. As we talk about the strategy and tactics of secure design, we share why framing t...

North Korea, ransomware, social engineering, AI, Apple, Drugs & Iran - SWN #491
28 mins
4 July Finished

Sony, Scattered Spider, Hikvision, Cybercrime, Iran, BSODs, Cloudflare, Josh Marpet.. - SWN #490
31 mins
1 July Finished

Simple Patterns for Complex Secure Code Reviews - Louis Nyffenegger - ASW #337
38 mins
1 July Finished

The Illusion of Control: Shadow IT, SSO Shortcomings, and the True Path to Security - Dave Lewis - ESW #413
1 hour 52 mins
30 June Finished