Absolute AppSec

By: Ken Johnson and Seth Law
  • Summary

  • A weekly podcast of all things application security related. Hosted by Ken Johnson and Seth Law.
    Show more Show less
Episodes
  • Episode 273 - Josh Larsen - Ghost Security
    Jan 28 2025
    Josh Larsen, co-founder of CTO of Ghost Security, joins Seth Law and Ken Johnson on January 28th at 12 Noon Eastern time. Before Ghost Security, Josh was a co-founder and CEO of Darkbit and before that of the Blackfin Security Group. Larsen led the GTM strategy for both startups, and Darkbit and Blackfin Security Group were acquired by Aqua Security and Symantec Corporation, respectively. Ghost Security (https://ghostsecurity.com/) was founded so development shops and AppSec teams had a tool to perform autonomous application security using Agentic AI with the goal of helping teams discover, test, and mitigate risks in real time. Josh (joshlarsen on Linked In, @josh_larsen on X/Twitter) has been in the industry for 25 years working as a security program manager and consultant as well as building products that improve the security landscape. Be sure to tune in as Seth and Ken talk through his experiences in the field as well as gleaning his insights about the future of AppSec.
    Show more Show less
    Less than 1 minute
  • Episode 272 - New AI Tools, True Cost of False Positives
    Jan 21 2025
    Ken and Seth start with a demo and discussion on some newer tools that use integrated AI in both the code and workflow spaces. Specifically, use for code review and understanding is improving. This is followed by a wide-ranging discussion of false positives, where they come from, and how they affect application security. Seth gets up in arms about trying to deal with unrealistic expectations around reducing false positives.
    Show more Show less
    Less than 1 minute
  • Episode 271 - Top 10 2024 Web Hacking Techniques, Research Techniques, AppSec Careers
    Jan 17 2025
    Seth and Ken return once again to talk through the overall effectiveness and purpose of Portswigger's Top 10 Web Hacking Techniques and how it benefits the community. A short discussion on some of the current crop of techniques up for polling. Spurred by recent revelations around Snyk's approach to identifying security issues in npm packages, the duo discusses research techniques and identifying security issues without exploitation or harm. To close out, a discussion on progressing from junior to senior within the security space and challenges in the current market.
    Show more Show less
    Less than 1 minute

What listeners say about Absolute AppSec

Average customer ratings

Reviews - Please select the tabs below to change the source of reviews.