Artwork

Content provided by Matt Lawrence and Mike Karan, Matt Lawrence, and Mike Karan. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Matt Lawrence and Mike Karan, Matt Lawrence, and Mike Karan or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.
Player FM - Podcast App
Go offline with the Player FM app!

We Should Care More About Web App Security

1:03:51
 
Share
 

Manage episode 494523918 series 2402670
Content provided by Matt Lawrence and Mike Karan, Matt Lawrence, and Mike Karan. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Matt Lawrence and Mike Karan, Matt Lawrence, and Mike Karan or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.

In this episode, Matt and Mike dive deep into web app security by walking through a simple SaaS note-taking app and breaking down vulnerabilities at each layer—from frontend and backend to auth and hosting. With 16 billion credentials recently leaked and AI increasing attack complexity, even indie devs need to lock things down. They cover common security pitfalls like XSS, CSRF, IDOR, insecure cookies, and more—along with practical mitigations using tools like tRPC, Prisma, and Next.js. Whether you’re building solo or part of a team, this episode will help you build safer apps from the ground up.

Show Notes: https://www.htmlallthethings.com/podcasts/we-should-care-more-about-web-app-security

Powered by CodeRabbit - AI Code Reviews: https://coderabbit.link/htmlallthethings

Use our Scrimba affiliate link (https://scrimba.com/?via=htmlallthethings) for a 20% discount!! Full details in show notes.

  continue reading

401 episodes

Artwork
iconShare
 
Manage episode 494523918 series 2402670
Content provided by Matt Lawrence and Mike Karan, Matt Lawrence, and Mike Karan. All podcast content including episodes, graphics, and podcast descriptions are uploaded and provided directly by Matt Lawrence and Mike Karan, Matt Lawrence, and Mike Karan or their podcast platform partner. If you believe someone is using your copyrighted work without your permission, you can follow the process outlined here https://ppacc.player.fm/legal.

In this episode, Matt and Mike dive deep into web app security by walking through a simple SaaS note-taking app and breaking down vulnerabilities at each layer—from frontend and backend to auth and hosting. With 16 billion credentials recently leaked and AI increasing attack complexity, even indie devs need to lock things down. They cover common security pitfalls like XSS, CSRF, IDOR, insecure cookies, and more—along with practical mitigations using tools like tRPC, Prisma, and Next.js. Whether you’re building solo or part of a team, this episode will help you build safer apps from the ground up.

Show Notes: https://www.htmlallthethings.com/podcasts/we-should-care-more-about-web-app-security

Powered by CodeRabbit - AI Code Reviews: https://coderabbit.link/htmlallthethings

Use our Scrimba affiliate link (https://scrimba.com/?via=htmlallthethings) for a 20% discount!! Full details in show notes.

  continue reading

401 episodes

All episodes

×
 
Loading …

Welcome to Player FM!

Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.

 

Quick Reference Guide

Copyright 2025 | Privacy Policy | Terms of Service | | Copyright
Listen to this show while you explore
Play