Главная
Study mode:
on
1
Defensive Coding Bootcamp
2
Plan to rotate your keys
3
Be skeptical about the new library on the block
4
Challenge the status quo
5
Your stack can obfuscate reality
6
ORM
7
Know what tests cover security
8
Secure app!= secure data
9
There is more than one way to approach auth
10
Incorrect encoding & serializations are an issue
11
Validate everything, every time
12
Don't assume the user will follow your use case
13
the same threat issues
14
80% of security is a common body of knowledge.
15
Get your head out of the code
16
Have a trusted person take a look
17
Verify that your environment has bare minimum security
18
Be transparent immediately
19
What do YOU wish you had known about coding defensively?
Description:
Save Big on Coursera Plus. 7,000+ courses at $160 off. Limited Time Only! Grab it Learn essential defensive coding techniques to enhance software security in this 45-minute conference talk from NDC Oslo 2022. Explore common vulnerabilities and evasive coding strategies applicable across programming languages. Discover the importance of key rotation, library vetting, and challenging conventional practices. Understand how ORMs can obscure security risks, the significance of security-focused testing, and the distinction between secure applications and secure data. Delve into authentication approaches, encoding and serialization pitfalls, and the critical need for thorough input validation. Gain insights on threat modeling, seeking external security reviews, and maintaining transparency in security incidents. Suitable for developers of all levels, this code-centric presentation offers practical examples and fundamental principles to fortify your software against potential attacks.

Defensive Coding Bootcamp

NDC Conferences
Add to list
0:00 / 0:00