Secure coding beyond just memory safety

Software security expert Tanya Janca, author of Alice and Bob Learn Secure Coding and Staff DevRel at AppSec company Semgrep, joins Ryan to talk about secure coding practices. Tanya unpacks the significance of input validation, the challenges of trusting data sources, and the intersection of security and law. Bonus: what she learned trying to secure a Canadian national election. https://stackoverflow.blog/2025/03/04/secure-coding-beyond-just-memory-safety/

Utworzony 9d | 4 mar 2025, 06:20:08


Zaloguj się, aby dodać komentarz

Inne posty w tej grupie

A look under the hood: How (and why) we built Question Assistant

Evaluating question quality and determining the appropriate feedback required some classic ML techniques in addition to our GenAI solution. https://stackoverflow.blog/2025/03/12/a-look-under-the-hood

12 mar 2025, 13:50:03 | StackOverflow blog
Sharing the power of the command line

Ryan welcomes Zach Lloyd, founder and CEO of Warp, to the show to talk about reimagining the terminal. They also discuss why Warp was built in Rust (“it’s definitely harder”), how AI is transforming d

11 mar 2025, 05:20:05 | StackOverflow blog
How are sandwich generation developers dealing?

More developers are sandwiched between caring for kids and older relatives. What does this mean for them and for the industry as a whole? https://stackoverflow.blog/2025/03/10/how-are-sandwich-generat

10 mar 2025, 13:10:03 | StackOverflow blog
Is Postgres the best database for GenAI?

Jeremy “Jezz” Kellway, VP of Engineering for Analytics and Data & AI at EDB (Enterprise Database), joins Ryan for a conversation about Postgres and AI. They unpack how Postgres is becoming the standar

7 mar 2025, 06:20:05 | StackOverflow blog
How can AI perform on the edge?

What are the capabilities, constraints, and benefits of running AI models of edge devices? https://stackoverflow.blog/2025/03/05/how-can-ai-perform-on-the-edge/

5 mar 2025, 07:50:05 | StackOverflow blog
Boosting collaboration and control: New features for Stack Overflow for Teams

Our latest Enterprise release brings exciting new features designed to enhance collaboration, streamline user management, and expand API capabilities. https://stackoverflow.blog/2025/03/04/boosting-c

4 mar 2025, 17:50:09 | StackOverflow blog
“Translation is the tip of the iceberg”: A deep dive into specialty models

Olga Beregovaya, VP of AI at Smartling, joins Ryan and Ben to explore the evolution and specialization of language models in AI. They discuss the shift from rule-based systems to transformer models, t

28 lut 2025, 07:20:08 | StackOverflow blog