Changelog Master Feed

Lessons from 5 years of startup code audits (Changelog Interviews #494)

Jun 24, 2022
Ask episode
Chapters
Transcript
Episode notes
1
Introduction
00:00 • 4min
2
What's the Purpose of the Audit?
04:25 • 6min
3
How Would This Learning Permeate Back Into a Report?
10:22 • 4min
4
Is There a Law About Shipping Your Org Chart?
14:00 • 3min
5
Keep It Simple, You Want a Rigid Engineering Culture?
16:44 • 3min
6
Is Rigorosity the Enemy of Good Architecture?
19:59 • 2min
7
The Value of Simplicity in Engineering
21:46 • 2min
8
Adding Telegraph Operators to Inflex Data
24:00 • 2min
9
Riding Secure Saphor - What Do You Think?
25:37 • 4min
10
Open Source Is More Secure
29:45 • 3min
11
Rails, Rails on Rails - What a Blessing
32:46 • 4min
12
Open Source for the Wind?
36:55 • 4min
13
You Must Be Authoritative if You Ask for Certain Information
41:05 • 4min
14
Monoripo - I'm a Mono, but I Don't Have the Perspective of Someone
45:01 • 3min
15
Supply Chain Security - Number Eight
47:50 • 4min
16
The Supply Chain Attack
52:14 • 2min
17
The Challenge of Security Is T Just That One Hole
54:10 • 4min
18
Ruby Rails - Number 10 - Business Logic Flaws
57:46 • 4min
19
The Smart Contract Auditors Are Making Pretty Good Money
01:01:34 • 3min
20
Honeycomb - A Fast Analysis Tool That Finds the Truth About Your Application
01:04:29 • 2min
21
Custom Fussing
01:06:57 • 5min
22
How to Prortise Your Time?
01:11:54 • 2min
23
Security Enthusiast - Is There Someone in Your Team?
01:14:09 • 2min
24
Is There a Fee Back to the Security Team?
01:16:03 • 4min
25
Agile and Informal in Your Processes
01:20:17 • 2min
26
Don't Use J W T or Web Hooks?
01:22:00 • 2min
27
Is Stripe the Only Person Who Can Hit That en Point?
01:24:05 • 6min
28
Is It Bad to Use Encryption?
01:29:47 • 3min
29
Is There a Way to Defy a Secure Anaugrithm?
01:32:24 • 2min
30
The Scare Future - The One of the Stars
01:34:31 • 3min
31
How to Subscribe to the Change Log Podcast
01:37:03 • 2min