Главная
Study mode:
on
1
Intro
2
About Praetorian
3
Lessons from the real world
4
Versioning
5
Broken cycle
6
Automation
7
Broken access control
8
Low noise tools
9
Command injection
10
What is LocalExec
11
The moral of the story
12
Introducing SnowCamp
13
Closing thoughts
14
Solutions
Description:
Explore why security often fails and discover practical solutions in this 24-minute OWASP Foundation talk by Richard Ford, CTO of Praetorian. Delve into real-world examples from security assessments, ranging from basic cloud misconfigurations to sophisticated nation-state level attacks. Learn valuable lessons from the field and understand how these insights can be translated into open-source products. Examine whether security truly needs to be as challenging as it often appears, or if smarter approaches can simplify the process. Gain actionable steps to enhance your security practices, including insights on versioning, automation, access control, and low-noise tools. Discover the concept of LocalExec and its implications for command injection vulnerabilities. Conclude with an introduction to SnowCamp and practical solutions to common security challenges.

Why Security Fails and How to Solve It - Lessons from Real-World Assessments

OWASP Foundation
Add to list
0:00 / 0:00