Go offline with the Player FM app!
Checking in on the State of Appsec in 2025 - Sandy Carielli, Janet Worthington - ASW #338
Fetch error
Hmmm there seems to be a problem fetching this series right now. Last successful fetch was on July 09, 2025 03:04 ()
What now? This series will be checked again in the next day. If you believe it should be working, please verify the publisher's feed link below is valid and includes actual episode links. You can contact support to request the feed be immediately fetched.
Manage episode 493410328 series 72776
Appsec still deals with ancient vulns like SQL injection and XSS. And now LLMs are generating code along side humans. Sandy Carielli and Janet Worthington join us once again to discuss what all this new code means for appsec practices. On a positive note, the prevalence of those ancient vulns seems to be diminishing, but the rising use of LLMs is expanding a new (but not very different) attack surface. We look at where orgs are investing in appsec, who appsec teams are collaborating with, and whether we need security awareness training for LLMs.
Resources:
- https://www.forrester.com/blogs/application-security-2025-yes-ai-just-made-it-harder-to-do-this-right/
Show Notes: https://securityweekly.com/asw-338
4573 episodes
Fetch error
Hmmm there seems to be a problem fetching this series right now. Last successful fetch was on July 09, 2025 03:04 ()
What now? This series will be checked again in the next day. If you believe it should be working, please verify the publisher's feed link below is valid and includes actual episode links. You can contact support to request the feed be immediately fetched.
Manage episode 493410328 series 72776
Appsec still deals with ancient vulns like SQL injection and XSS. And now LLMs are generating code along side humans. Sandy Carielli and Janet Worthington join us once again to discuss what all this new code means for appsec practices. On a positive note, the prevalence of those ancient vulns seems to be diminishing, but the rising use of LLMs is expanding a new (but not very different) attack surface. We look at where orgs are investing in appsec, who appsec teams are collaborating with, and whether we need security awareness training for LLMs.
Resources:
- https://www.forrester.com/blogs/application-security-2025-yes-ai-just-made-it-harder-to-do-this-right/
Show Notes: https://securityweekly.com/asw-338
4573 episodes
All episodes
×Welcome to Player FM!
Player FM is scanning the web for high-quality podcasts for you to enjoy right now. It's the best podcast app and works on Android, iPhone, and the web. Signup to sync subscriptions across devices.