Application Security Weekly (Video) artwork

Tech News · Mike Shema

Application Security Weekly (Video)

by Mike Shema

About all things AppSec, DevOps, and DevSecOps. Hosted by Mike Shema and John Kinsella, the podcast focuses on helping its audience find and fix software flaws effectively.

Latest episodes

Showing 20 · updated from the feed

Understanding Prompt Injection In Order to Contain It - Julie Brunias - ASW #401

Prompt injection demonstrates one of the major challenges in securing LLMs and agents -- how do you ensure an agent ignores attackers and only does what you instructed it

Sep 22
1 h 00 min

The AI Threat Multiplier: Securing Mobile Apps in the Automated Era - Ryan Lloyd, Jason Cortlund - ASW #400

While agents and LLMs haven't fundamentally changed core mobile vulnerability types, they have supercharged speed, scale, and accessibility—democratizing threats like aut

Sep 15
52 min

Security Conversations on AI, Agents, and Emerging Threats from Black Hat 2026 - Michael Leland, Sean Murphy, Idan Plotnik, Ido Geffen - ASW #399

We showcase recordings from this year's Black Hat. The Hidden Risks of the AI Supply Chain - Black Hat interview with Michael Leland, VP and Field CTO of Island Agent

Sep 8
1 h 09 min

Fixing Software Weaknesses Rather Than Just Finding More Flaws - Nidhi Aggarwal, Gil Geron, Braden Russell - ASW #398

AppSec has always emphasized techniques and tools for discovering vulns, along with taxonomies and lists for describing them. But just piling up more CVEs into a prioriti

Sep 1
1 h 08 min

Applying Zero Trust Principles to Agents - Kieran Human - ASW #397

Sandboxing, least privilege, and monitoring are well-established controls in terms of the defenses they provide against unexpected and unauthorized actions. But being wel

Aug 25
1 h 06 min

Augmenting Threat Intel Analysis with Agents - Sai Kiran Uppu, Chris Wallis, Ramin Farassat - ASW #396

All sorts of cybersecurity disciplines are adopting agents to help humans save time and automate routine activities. Sai Kiran Uppu describes his work on creating a platf

Aug 18
1 h 09 min

Using LLMs for Vuln Discovery - Rishi Sharma - ASW #395

Finding flaws has always been a focus of appsec. And now with open source projects and open weight models orgs have modern tools to review code and conduct pentests. Rish

Aug 11
1 h 09 min

Prompting for Patches That Fix Vulns Without Adding New Ones - Keith Hoodlet - ASW #394

There's already an increase in volume of security flaws found by LLMs. And orgs are already turning to LLMs to write code. So, what happens when orgs lean on LLMs to crea

Aug 4
1 h 03 min

Inside the OWASP Agent Security Regression Harness Project - Mert Satilmaz - ASW #393

Orgs need to be able to use agents, MCPs, and LLMs in ways that don't lead to unexpected actions and undesirable outcomes. The OWASP Agent Security Regression Harness pro

Jul 28
1 h 09 min

MacOS Security Design Features, Flaws, And Futures - Patrick Wardle - ASW #392

Appsec often frames usability and security as at odds with each other. Apple's software has famously emphasized the importance of usability while also creating a solid se

Jul 21
1 h 12 min

Discovering & Securing Your AI Agent Attack Surface - Jeremy Snyder - ASW #391

While LLMs and agents are new to appsec and everyone else, a lot of AI security requirements translate to well-known API security requirements. Jeremy Snyder helps us fra

Jul 14
1 h 07 min

Defense-in-depth strategies for securing mobile applications - Ryan Lloyd - ASW #390

Mobile applications have unique risks and threat models compared to server-side applications and infrastructure. Consequently, they need different strategies to ensure th

Jul 7
47 min

Reducing Attack Surface & Evaluating Efficiency in Agents - Itamar Apelblat, David Goldschlag - ASW #389

SquidBleed reveals another vuln that's been lurking for decades, but its real lesson is in managing an attack surface. Regardless of whatever programming language you use

Jun 30
1 h 12 min

How AI Is Reshaping Identity Security at the Infrastructure Layer - Ev Kontsevoy, Neha Duggal, Amit Masand - ASW #388

Appsec has seen machine identities from daemons and processes to services, microservices, and cloud accounts. And now we have agents. Ev Kontsevoy talks about what it mea

Jun 23
1 h 10 min

Why Does It Matter Who or What Created the Code? - Matias Madou - ASW #387

Agents and LLMs are creating and reviewing code. They're a new tool to help developers write software and they're a new abstraction layer for expressing what code should

Jun 16
1 h 06 min

Scanner Results Are a Starting Point. Here's What Comes Next. - Federico Kirschbaum - ASW #386

Most AppSec teams are working through more findings than their teams can validate. SAST surfaces thousands of potential issues. DAST generates alert volume that outpaces

Jun 9
1 h 16 min

BadHost, Dead CTFs, Exploding NPMs, and the Verizon DBIR - ASW #385

We dedicate an episode to catching up on appsec news with Kalyani Pawar. We see parsing problems that led to the BadHost vuln, which exposed lots of LLMs, MCPs, and agent

Jun 2
45 min

AppSec Conversations on Agents, LLMs, and OWASP from RSAC - Scott Clinton, Janet Worthington, Merritt Maxim - ASW #384

We showcase recordings from this year's RSAC. At RSAC Conference 2026, Scott Clinton, Co-Chair and co-founder of the OWASP GenAI Security Project, shares insights from

May 26
59 min

The State of AI & AppSec - Keith Hoodlet - ASW #383

This year has been a dichotomy of established secure design fundamentals and burgeoning chaos of LLM-driven vuln discovery. Keith Hoodlet returns to share his latest obse

May 19
1 h 02 min

Why Basic Security Practices Still Work - Rob Allen - ASW #382

If you have to ditch your entire appsec strategy because you expect 2026 to bring more vulns more quickly, then you probably didn't have a good strategy in the first plac

May 12
1 h 11 min

Chart positions

Where Application Security Weekly (Video) ranks today in each Apple Podcasts chart (US, Sep 26, 2026).

#163 NEW Tech News US

More podcasts like Application Security Weekly (Video)

Popular shows in Tech News, for your next listen.

Browse charts by category

Daily updated Apple Podcasts rankings for the United States.

About Application Security Weekly (Video) on Reason.fm

Here you find the Apple Podcasts chart positions of Application Security Weekly (Video), its latest episodes to listen to directly, and reviews from listeners. Rankings are updated daily for the United States.

Contact

Questions or issues? Reach us at hello@reason.fm

0:000:00