Episode 81

Understanding AppSec Part 3: Testing Your Code – DAST, Pentesting and Red Teaming

The next installment of our 𝘜𝘯π˜₯𝘦𝘳𝘴𝘡𝘒𝘯π˜₯π˜ͺ𝘯𝘨 𝘈𝘱𝘱𝘚𝘦𝘀 mini-series. Mark and Rohan explore testing methodologies for securing applications in deployment. This episode we cover Dynamic Application Security Testing (DAST), penetration testing, red teaming, and bug bounty programs; explaining how each function uncovers vulnerabilities at different levels. Our hosts highlight the evolution of testing from automated scanners to human-augmented techniques and ethical hacking, and introduce Interactive Application Security Testing (IAST) as a bridge between black-box and white-box testing, emphasizing its value in runtime analysis. The importance of correlating findings across multiple tools to streamline remediation takes center stage, showcasing how integrated approaches reduce time-to-remediate and enhance security strategies.

Resources

Subscribe for updates

Please enter a business email
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Please enter a business email
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
By clicking β€œAccept All Cookies”, you agree to the storing of cookies on your device to enhance site navigation, analyze site usage, and assist in our marketing efforts. View our Privacy Policy for more information.