DiscoverSecurity Journey's hi/5Hi/5: WrongSecrets, IT Assets, OWASP Top 10, CORS and Password Wisdom
Hi/5: WrongSecrets, IT Assets, OWASP Top 10, CORS and Password Wisdom

Hi/5: WrongSecrets, IT Assets, OWASP Top 10, CORS and Password Wisdom

Update: 2021-11-17
Share

Description

Commonjoe/ WrongSecrets - https://github.com/commjoen/wrongsecrets
Improper secret storage is a common technology problem. Use this tool to expose your developers to how to do it wrong, so they can learn how to do it right

List of IT Assets an Attacker is most likely to Extort -https://www.helpnetsecurity.com/2021/10/13/it-assets-target/
Attackers love IT assets; here are the top things they are targeting and exploiting.

OWASP Top 10 2021: 7 action items for app sec teams https://www.securityjourney.com/post/owasp-top-10-2021-7-action-items-for-app-sec-teams
Your AppSec team has work to do with the new OWASP Top Ten for 2021.

How to win at CORS - https://jakearchibald.com/2021/cors
CORS is tough to implement correctly and develop against – but it is worth the effort. Security is often difficult.

7 Unconventional Pieces of Password Wisdom -https://www.darkreading.com/application-security/7-unconventional-pieces-of-password-wisdom 
Nice summary of NIST 800-63b.

Comments 
In Channel
loading
00:00
00:00
x

0.5x

0.8x

1.0x

1.25x

1.5x

2.0x

3.0x

Sleep Timer

Off

End of Episode

5 Minutes

10 Minutes

15 Minutes

30 Minutes

45 Minutes

60 Minutes

120 Minutes

Hi/5: WrongSecrets, IT Assets, OWASP Top 10, CORS and Password Wisdom

Hi/5: WrongSecrets, IT Assets, OWASP Top 10, CORS and Password Wisdom

Security Journey