DevSec Station
DevSec Station is a security focused podcast for software developers who want to create amazing applications. Hosted by Tanya Janca, also known as SheHacksPurple, these short lessons will help you level up.
DevSec Station
Latest Episodes
Your AI Worked 59 Times. What About the 60th?
What happens when your AI assistant does exactly what you expect 59 times... and then does something completely bananas on the 60th?While teaching a secure coding class, I watched nearly 60 students use the same AI assistant, programmin...
Security Requirements: What They Are and How to Add Them to Your Project
Security problems don't generally happen because developers 'don't care' or lack skill. They happen because no one clearly defined what "secure" meant in the first place. When security expectations are left implicit, developers are forced to gu...
Threat Modeling for Developers (How To)
Threat modeling has a reputation for being complicated, full of diagrams, and requiring long meetings. In reality, most developers already do it, they just don't realize it. The difference is that doing it intentionally helps you catch...
How to Do Secure Code Review (When You’re Not a Security Expert)
Secure code review isn't about finding obscure vulnerabilities or thinking like an elite hacker. It's about verifying that the security controls your application depends on are actually present, in the right place, and correctly implemented.
The Most Common Secure Coding Mistakes Good Devs Make
Security bugs aren't usually caused by 'bad developers'. More often, they're the result of good developers making rational decisions under deadlines, competing priorities, and imperfect systems.This episode is sponsored by Maze.In...