Manicode

AppSec enthusiast and secure coding educator from manicode.com

Manicode boosted:
Josh Grossman (tghosth👻) :verified:JoshCGrossman@infosec.exchange
2022-12-22

DID YOU KNOW? The @owasp ASVS GitHub repo has specific issues looking for wider community input.

Filter the issues list by the "Community Wanted"/"Community Needed" labels to see these and provide your feedback and input. We need your help!

Link here 🙂:
github.com/OWASP/ASVS/issues?p

@manicode @Dcuthbert @vanderaj @elarlang

Manicode boosted:
Josh Grossman (tghosth👻) :verified:JoshCGrossman@infosec.exchange
2022-12-19

Interesting program related to OWASP (M)ASVS projects from Google.

Those involved in #AppSec (especially with mobile apps in the @GooglePlay store or working with Google APIs) should read these links carefully:

security.googleblog.com/2022/1
appdefensealliance.dev/

@Dcuthbert @manicode @elarlang@twitter.com @vanderaj

Manicode boosted:
2022-12-17

From my experience all software developers are now security engineers wether they know it, admit to it or do it. Your code is now the security of the org you work for. #GoldenAgeOfDefense

2022-12-17

@axleyjc yup, sender constrained tokens where the client id and client secret is also required in addition to the access token for resource access!

2022-11-21
2022-11-19

@schmidt hello and happy to be here!

2022-11-19

From my experience all software developers are now security engineers wether they know it, admit to it or do it. Your code is now the security of the org you work for. #GoldenAgeOfDefense

Client Info

Server: https://mastodon.social
Version: 2025.04
Repository: https://github.com/cyevgeniy/lmst