Mike Shema

Application Security Weekly (Video)

News EN ↓ 717 episodes

About all things AppSec, DevOps, and DevSecOps. Hosted by Mike Shema and John Kinsella, the podcast focuses on helping its audience find and fix software flaws effectively.

Author

Mike Shema

Category

News

Podcast website

securityweekly.com

Latest episode

Jul 7, 2026

Where to listen?

Podcasts in the app Replaio Radio Coming soon

Podcasts are coming to the app soon. Install now and be the first to see a whole new take on podcasts

Get it on Google Play Install for free Android 5M+ downloads · 4.8 rating iOS soon

Episodes

Ron Gula, Gula Tech Adventures - Application Security Weekly #33 Video 26.09.2018

Ron started his cybersecurity career as a network penetration tester for the NSA, and is the Founder of Tenable and Gula Tech Adventures. He joins Keith and April for an interview to talk about security in the upcoming elections, how to maintain separation of duties, attack simulation, and more! Full Show Notes: https://wiki.securityweekly.com/ASW_Episode33 Follow us on Twitter: https://www.twitte...

Bluebox-ng, Stock Data Breaches, and CommitStrip- Application Security Weekly #32 Video 26.09.2018

Alpine Linux hit with bug that can lead to Poisoned Containers, data breaches affect stock performance in the long run, Bluebox-ng, a Node.js VoIP pentesting framework, and CommitStrip: It's Not an App! Full Show Notes: https://wiki.securityweekly.com/ASW_Episode32 Follow us on Twitter: https://www.twitter.com/securityweekly

April Wright, ArchitectSecurity.org - Application Security Weekly #32 Video 25.09.2018

Keith Hoodlet and Paul Asadoorian interview April Wright. They discuss people connected by apps, workplace reward systems, and the importance of building/practicing the process before documenting it. Full Show Notes: https://wiki.securityweekly.com/ASW_Episode32 Follow us on Twitter: https://www.twitter.com/securityweekly

Microsoft, Equifax, MacOS, and Bug Bounties - Application Security Weekly #31 Video 13.09.2018

U.S. Government releases post-mortem on Equifax, MacOS security baseline script by Jerry Gamblin, Equifax mega-breach and nothing has changed, Docker hacking challenge, and Bug Bounties and mental health.  Full Show Notes: https://wiki.securityweekly.com/ASW_Episode31 Follow us on Twitter: https://www.twitter.com/securityweekly

Zane Lackey, Signal Sciences - Application Security Weekly #31 Video 12.09.2018

Zane Lackey is the Founder/Chief Security Officer at Signal Sciences. Zane Lackey explains how we the security industry needs to shift left when it comes to applications and patching. Full Show Notes: https://wiki.securityweekly.com/ASW_Episode31 Follow us on Twitter: https://www.twitter.com/securityweekly

Fortnite, Netflix, & Black Hat - Application Security Weekly #30 Video 30.08.2018

In the Application security news, 'Fortnite' developer had sharp words for Google after an Exploit was discovered, PHP flaw puts WordPress sites at risk, Oracle will charge for Java starting in 2019, how Netflix does Failovers in 7 minutes flat, hacking Black Hat, Burp Suite 2.0 Beta released, Windows 95 running in Electron, and more! Full Show Notes: https://wiki.securityweekly.com/ASW_Episode30...

The Apache Struts2 RCE Vulnerability - Application Security Weekly #30 Video 29.08.2018

Keith Hoodlet and Paul Asadoorian talk about The Apache Struts2 RCE Vulnerability. They cover: - CVE-2018-11776 - How the 3 Ways of DevOps can guide us toward better security practices - Shared Version Control - Test Environments - Shared Ticketing - ChatOps - Buying Time Full Show Notes: https://wiki.securityweekly.com/ASW_Episode30 Follow us on Twitter: https://www.twitter.com/securityweekly

Tom McLaughlin, ServerlessOps - Application Security Weekly #29 Video 22.08.2018

Tom is the founder of ServerlessOps (https://www.serverlessops.io/) and an experienced operations engineer. He started ServerlessOps after he asked the question, what would he do if servers went away? At a loss for an answer and interested in the future of his profession, he decided to pursue the answer. Tom is actively engaged in promoting serverless infrastructure and engaging with the community...

Matt Alderman & Paul Asadoorian, Def Con 2018 - Application Security Weekly #29 Video 21.08.2018

Matt Alderman and Paul sat down at DEF CON to talk all of the AppSec vendors that they held briefings with at our Pool Cabana. They sat down with companies like Synopsis, Signal Sciences, and discussed how their products influence the AppSec world. Full Show Notes: https://wiki.securityweekly.com/ASW_Episode29 Follow us on Twitter: https://www.twitter.com/securityweekly

Alibaba Cloud Security, Comcast, and Facebook - Application Security Weekly #28 Video 15.08.2018

Alibaba Cloud Security team discovers Apache spark rest API remote code execution exploit, Comcast security flaws exposed partial address, Hacker finds hidden 'God Mode' in old x86 CPUs, and more! Full Show Notes: https://wiki.securityweekly.com/ASW_Episode28 Follow us on Twitter: https://www.twitter.com/securityweekly

Secure Coding Practices - Application Security Weekly #28 Video 14.08.2018

After arriving back from Black Hat and DEF CON 2018, Doug joins Keith to share some of his stories about attending the world famous security conferences. They discuss, secure coding practices. Full Show Notes: https://wiki.securityweekly.com/ASW_Episode28 Follow us on Twitter: https://www.twitter.com/securityweekly

Resources, Bugs, Breaches, and Learning Tools - Application Security Weekly #27 Video 09.08.2018

Hardware-based Root of Trust, Small Trusted Computing Base, React v16.4.2, GitHub shows best practices for account security and recoverability, and the cost of JavaScript, and Food for Thought! Full Show Notes: https://wiki.securityweekly.com/ASW_Episode27 Follow us on Twitter: https://www.twitter.com/securityweekly

Galen Hunt, Microsoft - Application Security Weekly #27 Video 08.08.2018

Galen founded and lead the team building the Azure Sphere, announced at RSA Conference 2018. Our goal is to make IoT safe for society. Azure Sphere provides an end-to-end solution that enables any device manufacturer to create highly-secured devices; devices possessing all 7 Properties of Highly-Secured Devices. Full Show Notes: https://wiki.securityweekly.com/ASW_Episode27 Follow us on Twitter: h...

Spectre, OWASP, and iGoat - Application Security Weekly #26 Video 02.08.2018

New Spectre attack can remotely steal secrets, Microsoft discovers supply chain attack at unnamed maker of PDF Software, XSS filter in edge, OWASP iGoat is a vulnerable swift application for iOS, and much more! Full Show Notes: https://wiki.securityweekly.com/ASW_Episode26 Follow us on Twitter: https://www.twitter.com/securityweekly

Jessica Rozhin, Marqueta - Application Security Weekly #26 Video 01.08.2018

Jessica Rozhin is currently a Security Engineer at an Oakland Financial Tech startup called Marqeta. This is her first role in the security space, but she is no stranger to technical operations and incident response. Before Marqeta she spent several years working the the Network Operations Center at Box, focused on preventing, responding to and resolving large scale customer impacting site inciden...

Venmo, Oracle, & Linux - Application Security Weekly #25 Video 25.07.2018

Venmo caught publishing all transactions publicly, Oracle releases critical patches, Microsoft releases PowerShell Core for Linux, Health insurers are vacuuming up details about you, changing your screen to Grayscale can help fight phone addiction, when to 'purchase' a solution to your cybersecurity problem, & more on this episode of Application Security Weekly! Full Show Note: https://wiki.securi...

Joe Garcia, CyberArk - Application Security Weekly #25 Video 24.07.2018

As a Global Corporate Solutions Engineer, Joe Garcia has a strong background in DevOps, Cloud and Security and is currently focused on helping customers implement and scale effective secrets management solutions. He was previously a Solutions Architect with the CyberArk Customer Success team for the West and Southeast regions. Full Show Note: https://wiki.securityweekly.com/ASW_Episode25 Follow us...

AppSec Solutions in a DevOps World - Application Security Weekly #24 Video 19.07.2018

Application Security solutions in a DevOps world. Full Show Notes: https://wiki.securityweekly.com/ASW_Episode24 Follow us on Twitter: https://www.twitter.com/securityweekly

iOS Bugs, Burp Suite, & DevSecOps - Application Security Weekly #24 Video 18.07.2018

In the news, compromised JavaScript package caught stealing npm credentials, remote iOS bugs, a $39 device that can defeat iOS USB Restricted mode, Broadcom buys CA Technologies, Burp Suite Automation Tool, & more on this episode of Application Security Weekly! Full Show Notes: https://wiki.securityweekly.com/ASW_Episode24 Follow us on Twitter: https://www.twitter.com/securityweekly

The Hardest Problem in Application Security - Application Security Weekly #23 Video 11.07.2018

One of the hardest problems that Application Security practitioners need to solve is the problem of visibility. Not only do they need to uncover all of the different projects under development - they also need to worry about what libraries and frameworks those projects are using. Full Show Notes: https://wiki.securityweekly.com/ASW_Episode23 Follow us on Twitter: https://www.twitter.com/securitywe...

Facebook, Google, & GitLab - Application Security Weekly #23 Video 10.07.2018

In the news, Google patches critical remote code execution bugs in Android OS, A new data breach may have exposed personal information of almost every American adult, Facebook acknowledges it shared user data with 61 companies, social media apps are 'deliberately' addictive to users, & more on this episode of Application Security Weekly! Full Show Notes: https://wiki.securityweekly.com/ASW_Episode...

PHPMyAdmin, GitHub, and VS Code - Application Security Weekly #22 Video 05.07.2018

'GDPR-Lite', Testing Firefox, refactoring in VS Code, sniff network traffic from our iOS device, Gentoo GitHub organization is hacked, and what does it mean to experience fulfillment? All that and more, here on Application Security Weekly! Full Show Notes: https://wiki.securityweekly.com/ASW_Episode22 Follow us on Twitter: https://www.twitter.com/securityweekly

Thomas GX, Yelda - Application Security Weekly #22 Video 03.07.2018

Thomas GX is a French entrepreneur specialized in Automation, AI, Assistants & Bots, handling creation and development as well as project management processes. Full Show Notes: https://wiki.securityweekly.com/ASW_Episode22 Follow us on Twitter: https://www.twitter.com/securityweekly

Microsoft, JavaScript, AI Can Fire - Application Security Weekly #21 Video 28.06.2018

Apple comments on erroneous reports of iPhone brute force passcode hack, XSS, in Google Colaboratory + CSP bypass, how to deploy to Azure with Docker & VS Code, and debugging JavaScript in Google Chrome and Visual Studio Code. Full Show Notes: https://wiki.securityweekly.com/ASW_Episode21 Follow us on Twitter: https://www.twitter.com/securityweekly

Dan Kuykendall, Rapid7 - Application Security Weekly #21 Video 27.06.2018

Dan Kuykendall is the Senior Director of Application Security Products at Rapid7 where he directs the strategic vision, research and product development for the company's application security solutions. Full Show Notes: https://wiki.securityweekly.com/ASW_Episode21 Follow us on Twitter: https://www.twitter.com/securityweekly

Listen to the Application Security Weekly (Video) podcast in Replaio

Radio and podcasts in one app - free, with no sign-up. Install today and do not miss the launch

Get it on Google Play

Replaio is not a podcast publisher; show names, artwork and audio belong to their authors and are distributed through public RSS feeds.