

Lessons from 5 years of startup code audits (Changelog Interviews #494)
Jun 24, 2022
Chapters
Transcript
Episode notes
1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31
Introduction
00:00 • 4min
What's the Purpose of the Audit?
04:25 • 6min
How Would This Learning Permeate Back Into a Report?
10:22 • 4min
Is There a Law About Shipping Your Org Chart?
14:00 • 3min
Keep It Simple, You Want a Rigid Engineering Culture?
16:44 • 3min
Is Rigorosity the Enemy of Good Architecture?
19:59 • 2min
The Value of Simplicity in Engineering
21:46 • 2min
Adding Telegraph Operators to Inflex Data
24:00 • 2min
Riding Secure Saphor - What Do You Think?
25:37 • 4min
Open Source Is More Secure
29:45 • 3min
Rails, Rails on Rails - What a Blessing
32:46 • 4min
Open Source for the Wind?
36:55 • 4min
You Must Be Authoritative if You Ask for Certain Information
41:05 • 4min
Monoripo - I'm a Mono, but I Don't Have the Perspective of Someone
45:01 • 3min
Supply Chain Security - Number Eight
47:50 • 4min
The Supply Chain Attack
52:14 • 2min
The Challenge of Security Is T Just That One Hole
54:10 • 4min
Ruby Rails - Number 10 - Business Logic Flaws
57:46 • 4min
The Smart Contract Auditors Are Making Pretty Good Money
01:01:34 • 3min
Honeycomb - A Fast Analysis Tool That Finds the Truth About Your Application
01:04:29 • 2min
Custom Fussing
01:06:57 • 5min
How to Prortise Your Time?
01:11:54 • 2min
Security Enthusiast - Is There Someone in Your Team?
01:14:09 • 2min
Is There a Fee Back to the Security Team?
01:16:03 • 4min
Agile and Informal in Your Processes
01:20:17 • 2min
Don't Use J W T or Web Hooks?
01:22:00 • 2min
Is Stripe the Only Person Who Can Hit That en Point?
01:24:05 • 6min
Is It Bad to Use Encryption?
01:29:47 • 3min
Is There a Way to Defy a Secure Anaugrithm?
01:32:24 • 2min
The Scare Future - The One of the Stars
01:34:31 • 3min
How to Subscribe to the Change Log Podcast
01:37:03 • 2min