Cloud Security Podcast cover image

Building an Engineering Security Culture - Failure stories included - Edwin Kwan, Tyro Payments

Cloud Security Podcast

00:00

Stack or Flow Copy Paste, It's Not Just Copy and Paste

We're using a lot of open source libraries and those open source libraries are also using open source libraries too. So you might be pulling something in that does, that helps you with, I guess, your logging functionality. You want some logging, so you just put this library in. But that is also pulling other bits of stuff in there. And all you find is that 85% is not written by you, but you're only using a small subset of that. That's quite bad. Especially when people do that, they don't upgrade the version. Use the version that's available in that kind of case. Some of these applications are actually pretty old, so they haven't been really

Transcript
Play full episode

The AI-powered Podcast Player

Save insights by tapping your headphones, chat with episodes, discover the best highlights - and more!
App store bannerPlay store banner
Get the app