Finding Security Vulnerabilities through Code Review - The OWASP way

  Рет қаралды 20,628

OWASP DevSlop

OWASP DevSlop

Күн бұрын

▬▬▬▬▬▬ T I M E S T A M P S ⏰ ▬▬▬▬▬▬
10:11 Dr. Michaela Greiler starts her presentation
▬▬▬▬▬▬ Abstract & Bio 📝 ▬▬▬▬▬▬
In this one hour session, Michaela outlines the fundamentals of using the power of code reviews to detect security vulnerabilities. Her focus for this session is to give you an overview of the best practices and recommendations from the OWASP code review task force. In addition, Michaela will share insights from her yearslong experience helping many product teams improve their code review experience. Michaela worked with companies such as Microsoft, National Instruments, Metro Systems, Flutter, and many others to help them make code review their superpower.
OUR GUEST: DR. MICHAELA GREILER
Subscribe to her KZbin channel:
/ @seunlocked
Dr. Michaela Greiler is a leading expert on code reviews. Over the last 10 years, she extensively researched and developed test, build, and code review techniques and tools that boost the effectiveness and efficiency of engineering teams. She, for example, worked with all major product teams at Microsoft, such as Office, Windows, and Visual Studio to overcome pitfalls during code reviews. Since 2018, she also helps companies outside of Microsoft boost their code review practices. She has a Ph.D. from Delft University of Technology in Software Engineering, 15 years of experience analyzing and improving software engineering processes and tools, and runs the Software Engineering Unlocked podcast. Her research is published in several high-ranked scientific journals and she won the Google Techmaker Award in 2012.
Dr. Michaela Greiler can be found on social media here:
Twitter: / mgreiler
KZbin: / @seunlocked
Twitch: / doctormckayla
▬▬▬▬▬▬ Useful Links from Dr. Michaela Greiler 🛠 ▬▬▬▬▬▬
Michaela's slides and the vulnerable code for the code review example can be found here:
github.com/mgreiler/code-reviews
Security Code Review Checklist - Blog post
www.michaelagreiler.com/secur...
Workshops: www.michaelagreiler.com/works...
Podcast: www.software-engineering-unlo...
▬▬▬▬▬▬ Other Links 🛠 ▬▬▬▬▬▬
Introduction to the Web Security Academy Series by Rana Khalil
• Introduction to the We...
▬▬▬▬▬▬ Hosts 🎙️ ▬▬▬▬▬▬
Nancy Gariché ► / nancygariche
Nikki Becher ► / thedeadrobots
▬▬▬▬▬▬ Guest Co-Hosts 🎙️ ▬▬▬▬▬▬
Sienna Delvasto ► / s1squar3d
► www.linkedin.com/in/sdelvasto
Stefania Chaplin ► / devstefops
► / stefania-chaplin
▬▬▬▬▬▬ Connect with Us 👋 ▬▬▬▬▬▬
KZbin ► / owaspdevslop
DEV ► dev.to/devslop
INSTAGRAM ► / owaspdevslop
TWITTER ► / owasp_devslop
LINKEDIN ► / owasp-devslop
▬▬▬▬▬▬ Music 🎶 ▬▬▬▬▬▬
www.epidemicsound.com/track/c...

Пікірлер
OWASP DevSlop Show: Security Code Review 101 with Paul Ionescu!
1:01:05
I Can't Believe We Did This...
00:38
Stokes Twins
Рет қаралды 67 МЛН
Nutella bro sis family Challenge 😋
00:31
Mr. Clabik
Рет қаралды 9 МЛН
아이스크림으로 체감되는 요즘 물가
00:16
진영민yeongmin
Рет қаралды 4,9 МЛН
How to Analyze Code for Vulnerabilities using Joern
1:13:50
OWASP DevSlop
Рет қаралды 6 М.
Code Review Best Practices
58:47
JetBrains
Рет қаралды 91 М.
Explained: The OWASP Top 10 for Large Language Model Applications
14:22
How I’d learn ML in 2024 (if I could start over)
7:05
Boris Meinardus
Рет қаралды 963 М.
100+ Linux Things you Need to Know
12:23
Fireship
Рет қаралды 135 М.
How to Crack Any System Design Interview
8:19
ByteByteGo
Рет қаралды 326 М.
Fastest Way to Learn ANY Programming Language: 80-20 rule
8:24
Sahil & Sarra
Рет қаралды 767 М.
Finding IDORs with CODE REVIEWS!
4:34
Farah Hawa
Рет қаралды 11 М.
#Kritikachannel#Shorts video 🙏🙏🙏
1:00
Kritika Channel
Рет қаралды 41 МЛН
DESAFIO IMPOSSÍVEL! #trending
0:13
O Mundo da Ágata
Рет қаралды 15 МЛН
Papa yeh dila do ajse mein aapki behen 😢😊 #shorts
0:30
Sikha shorts and vlogs
Рет қаралды 138 МЛН
😆 @SantiOficialll @SantiFansshort @CAMILOAGUILLONN
0:15
Santi
Рет қаралды 4,6 МЛН